MajorGeeks Support Forums

Go Back   MajorGeeks Support Forums > ----------= PC, Desktop and Laptop Support =---------- > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 04-11-06, 11:31
squiggles squiggles is offline
Private First Class
 
Join Date: Jan 2005
Posts: 31
Thanks: 0
Thanked 0 Times in 0 Posts
Question Normal Windows process or trojan ?

I noticed the process rundll32.exe in my Task Manager the other day,so I look it up at the processlibrary.com database and it said that rundll.exe is a normal Windows process, but that it is also registered as the W32.Miroot.Worm/Trojan.How do I know which one it is ? Thanks in advance.
Reply With Quote
Sponsored links
  #2  
Old 04-11-06, 15:17
DavidGP's Avatar
DavidGP DavidGP is offline
MajorGeeks Forum Administrator - Grand Pooh-Bah
 
Join Date: Jan 2002
Location: UK
Posts: 38,832
Thanks: 3,008
Thanked 3,105 Times in 2,819 Posts
Default Re: Normal Windows process or trojan ?

if rundll32.exe is located in this C:\Windows\System32 location then its a legitimate windows file, in another then suspect a possible a virus, BUT DO NOT DELETE until confirmed otherwise windows will fail as this is a crucial system file.
Reply With Quote
  #3  
Old 04-11-06, 20:29
squiggles squiggles is offline
Private First Class
 
Join Date: Jan 2005
Posts: 31
Thanks: 0
Thanked 0 Times in 0 Posts
Cool Re: Normal Windows process or trojan ?

Thanks for your reply to my thread Halo. Besides C:\Windows\System32, I also found rundll32.exe in C:\Windows\ServicePackFiles\i386, C:\Windows\$NtServicePackUninstall$, and C:\I386. What do you think I should do with these ? Thanks again.
Reply With Quote
  #4  
Old 04-11-06, 20:50
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Normal Windows process or trojan ?

Nothing! They are all valid.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter
Reply With Quote
  #5  
Old 04-11-06, 21:47
squiggles squiggles is offline
Private First Class
 
Join Date: Jan 2005
Posts: 31
Thanks: 0
Thanked 0 Times in 0 Posts
Default Re: Normal Windows process or trojan ?

Chaslang, you da man! Thanks!
Reply With Quote
Sponsored links
  #6  
Old 04-12-06, 00:53
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Normal Windows process or trojan ?

You're welcome!

You may find the below to be of interest:

ProcessLibrary.Com Quick Access InfoBar
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -5. The time now is 18:50.

MajorGeeks.Com Menu

MajorGeeks.Com \ All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ NEW! PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads

MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds


All content Copyright MajorGeeks.com source code Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger