Solved

virus/ toraj on the database server

Posted on 2011-09-04
8
589 Views
Last Modified: 2013-11-22
hi
i have a virus name Wind32.Nbdd.azz  and others
this infected my db server and it made many problems
i found 1.exe file on c: drive / and many jobs created inside the sql server from this virus

symantec didnot remove it and also kasbersky

what i have to do; can any one guide me to a torjan horse remover even if it's pain i'll buy it
0
Comment
Question by:Sawyer
  • 3
  • 2
  • 2
  • +1
8 Comments
 
LVL 38

Expert Comment

by:younghv
Comment Utility
speed15,
That appears to be a generic 'backdoor' trojan that is relatively old (in malware terms).

Which of the Kaspersky programs did you try to use against this?

You should have better success using RogueKiller and Malwarebytes (both server safe). Follow the instructions here:
Rogue-Killer-What-a-great-name
0
 
LVL 10

Expert Comment

by:SuperTaco
Comment Utility
Super anti-spyware and combofix work well too.

http://www.superantispyware.com/download.html

http://www.bleepingcomputer.com/download/anti-virus/combofix

if it give you any problems installing, and you can't fix it try running rkill

http://rkill.net
0
 
LVL 23

Expert Comment

by:phototropic
Comment Utility
According to the developers of Combofix, it is not designed to be run on a server os:

"...At this time ComboFix can only run on the following Windows versions:

•Windows XP (32-bit only)
•Windows 2000 (32-bit only)
•Windows Vista (32-bit/64-bit)
•Windows 7 (32-bit/64-bit)..."

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

I would be very cautious about trying to run it on your server.
 
0
 

Author Comment

by:Sawyer
Comment Utility
what best to use under windows server 2003???
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 
LVL 38

Expert Comment

by:younghv
Comment Utility
Did you try the suggestions I made in my first post?
0
 
LVL 10

Expert Comment

by:SuperTaco
Comment Utility
@ phototropic

You can run it on servers, but you are correct.  i would be very careful.  have you tried any of the anti malware we have suggested?
0
 
LVL 38

Expert Comment

by:younghv
Comment Utility
speed15,
The developer of ComboFix (sUBS) says that his product should not be run on any server platform and we would all do well to follow his guidelines.
0
 
LVL 23

Accepted Solution

by:
phototropic earned 500 total points
Comment Utility
speed15,

What is your status?  Do you still require assistance?
0

Featured Post

6 Surprising Benefits of Threat Intelligence

All sorts of threat intelligence is available on the web. Intelligence you can learn from, and use to anticipate and prepare for future attacks.

Join & Write a Comment

I have put this article together as i needed to get all the information that might be available already into one general document that could be referenced once without searching the Internet for the different pieces. I have had a few issues where…
Many people tend to confuse the function of a virus with the one of adware, this misunderstanding of the basic of what each software is and how it operates causes users and organizations to take the wrong security measures that would protect them ag…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now