Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Downloader Trojans

Status
Not open for further replies.

mcsereed

MIS
Aug 11, 2001
58
US
We have had a rash of these downloader trojans that has been hitting our company. We have managed NAV but it only sees it as a downloader trojan. They keep coming back! I have used Bazooka, Adaware, Spybot and seek&Destroy. They still seem to come back. I am asking if there are tools that other IT staff use and recommend. Norton gave me some information on this and Macafee was the same response; Not Helpfull!
It is easier to rebuild the machines but it can be troublesome with the cut in staff. Any suggestions will be appreciated.
 
If you can isolate the process, there is an app called killbox that works well. I'll see if I can find a link . . .
 
Okay, here it is. It may or may not help, depending on what is actually causing the problem, but Killbox is always a handy tool to have in your arsenal.

(KillBox is a small app that deletes troublesome files on Boot before they are grabbed and used by Windows)

 
mcsereed

Are you running XP in your environment? If so, are you disabling system restore before cleeanup? If not, you're simply allowing the problems to repopulate on reboot.

Tired of waiting for an answer? Try asking better questions. See: faq222-2244
 
Carr,
We do not have any XP machines as of yet. I am aware of the XP restore. Thank you for the response.

Jbrackett,
I will look into the Killbox app. Thank you.
 
Maybe it is time consider running a dedicated Trojan Cleaner such as 'The Cleaner' from .

I would also cleanout all TEMP file locations (including Internet cache) as an added step before doing the Trojan Scan.
 
VOP,
I always delete the internet Cache as well as the temp filed and Internet Temp files. The common registry entries are also deleted. I will try the trojan cleaner as you suggested. Thank you for the response. This was much appreciated.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top