Trojan horse

Discussion in 'Malware Help (A Specialist Will Reply)' started by neo246, Aug 2, 2006.

  1. neo246

    neo246 Private E-2

    Hallo,

    This morning during a full system scan, my NAV 2003 (with latest updates etc) reported that the file c:\winnt\system32\winzbd32.dll is infected or is a trojan horse but its not possible to repair it and access to this file is denied...etc...

    But to my surprise, it doesn;t report this finding in the statistics under detected, infected, repaired, section of the report. It shows 0 under each of the headings.

    What could be wrong? I ran an online scanner via the website of SARC (Norton), and it detected nothing, special, except a spyware program in the Temp directory...etc...

    There were no viruses detected in memory, nor any malpractises. Nothing in the usual directories just the temporary directories and the temp download directories used by browsers.

    Is there a trojan horse or is it a hoax or is it false-alarm on the part of NAV?

    Could someone explain whats happening? Has someone experienced this? How can i be damn sure that there is no-spyware / malware/adware or virsuses or trojan horses on my pc?

    A reply would be appreciated, maybe someone else might be alerted in advance.

    Regards,
    Neo
    PS: By the way is the Anti-Trojan Shield program any good? Does it protect from Trojan horse situations?
     
    Last edited: Aug 2, 2006
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Welcome to MajorGeeks.com, please follow our standard cleaning procedures:

    http://www.majorgeeks.com/images/grenade.gif Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support

    • Make sure you check version numbers and get all updates.
    http://www.majorgeeks.com/images/grenade.gif Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    http://www.majorgeeks.com/images/grenade.gifAfter doing ALL of the above and you still have a problem, make sure you have booted to normal mode and run the steps in the below thread to properly use HijackThis and attach the log:

    http://www.majorgeeks.com/images/grenade.gif Downloading, Installing, and Running HijackThis
    • Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around..
    http://www.majorgeeks.com/images/grenade.gif In your next post, please make sure you attach the following logs and that you have run these scans in the following order:
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • CounterSpy - ONLY IF you were not able to run Windows Defender
    • Bitdefender (Step 6)
    • Panda Scan (Step 6)
    • HijackThis
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds