Solved

virus/ toraj on the database server

Posted on 2011-09-04
8
618 Views
Last Modified: 2013-11-22
hi
i have a virus name Wind32.Nbdd.azz  and others
this infected my db server and it made many problems
i found 1.exe file on c: drive / and many jobs created inside the sql server from this virus

symantec didnot remove it and also kasbersky

what i have to do; can any one guide me to a torjan horse remover even if it's pain i'll buy it
0
Comment
Question by:Sawyer
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2
  • +1
8 Comments
 
LVL 38

Expert Comment

by:younghv
ID: 36480781
speed15,
That appears to be a generic 'backdoor' trojan that is relatively old (in malware terms).

Which of the Kaspersky programs did you try to use against this?

You should have better success using RogueKiller and Malwarebytes (both server safe). Follow the instructions here:
Rogue-Killer-What-a-great-name
0
 
LVL 10

Expert Comment

by:SuperTaco
ID: 36480806
Super anti-spyware and combofix work well too.

http://www.superantispyware.com/download.html

http://www.bleepingcomputer.com/download/anti-virus/combofix

if it give you any problems installing, and you can't fix it try running rkill

http://rkill.net
0
 
LVL 23

Expert Comment

by:phototropic
ID: 36481137
According to the developers of Combofix, it is not designed to be run on a server os:

"...At this time ComboFix can only run on the following Windows versions:

•Windows XP (32-bit only)
•Windows 2000 (32-bit only)
•Windows Vista (32-bit/64-bit)
•Windows 7 (32-bit/64-bit)..."

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

I would be very cautious about trying to run it on your server.
 
0
Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

 

Author Comment

by:Sawyer
ID: 36485621
what best to use under windows server 2003???
0
 
LVL 38

Expert Comment

by:younghv
ID: 36485645
Did you try the suggestions I made in my first post?
0
 
LVL 10

Expert Comment

by:SuperTaco
ID: 36492986
@ phototropic

You can run it on servers, but you are correct.  i would be very careful.  have you tried any of the anti malware we have suggested?
0
 
LVL 38

Expert Comment

by:younghv
ID: 36494525
speed15,
The developer of ComboFix (sUBS) says that his product should not be run on any server platform and we would all do well to follow his guidelines.
0
 
LVL 23

Accepted Solution

by:
phototropic earned 500 total points
ID: 36541454
speed15,

What is your status?  Do you still require assistance?
0

Featured Post

The Ultimate Checklist to Optimize Your Website

Websites are getting bigger and complicated by the day. Video, images, custom fonts are all great for showcasing your product/service. But the price to pay in terms of reduced page load times and ultimately, decreased sales, can lead to some difficult decisions about what to cut.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This is a fairly complicated script that will install the required prerequisites to install SCCM 2012 R2 on a server.  It was designed under the functional model in order to compartmentalize each step required, reducing the overall complexity.  The …
If you are looking at this article, you have most likely been hit by some version of ransomware and are trying to find out if there is anything you can do, or what way you should react - READ ON!
Established in 1997, Technology Architects has become one of the most reputable technology solutions companies in the country. TA have been providing businesses with cost effective state-of-the-art solutions and unparalleled service that is designed…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question