Solved

virus/ toraj on the database server

Posted on 2011-09-04
8
594 Views
Last Modified: 2013-11-22
hi
i have a virus name Wind32.Nbdd.azz  and others
this infected my db server and it made many problems
i found 1.exe file on c: drive / and many jobs created inside the sql server from this virus

symantec didnot remove it and also kasbersky

what i have to do; can any one guide me to a torjan horse remover even if it's pain i'll buy it
0
Comment
Question by:Sawyer
  • 3
  • 2
  • 2
  • +1
8 Comments
 
LVL 38

Expert Comment

by:younghv
ID: 36480781
speed15,
That appears to be a generic 'backdoor' trojan that is relatively old (in malware terms).

Which of the Kaspersky programs did you try to use against this?

You should have better success using RogueKiller and Malwarebytes (both server safe). Follow the instructions here:
Rogue-Killer-What-a-great-name
0
 
LVL 10

Expert Comment

by:SuperTaco
ID: 36480806
Super anti-spyware and combofix work well too.

http://www.superantispyware.com/download.html

http://www.bleepingcomputer.com/download/anti-virus/combofix

if it give you any problems installing, and you can't fix it try running rkill

http://rkill.net
0
 
LVL 23

Expert Comment

by:phototropic
ID: 36481137
According to the developers of Combofix, it is not designed to be run on a server os:

"...At this time ComboFix can only run on the following Windows versions:

•Windows XP (32-bit only)
•Windows 2000 (32-bit only)
•Windows Vista (32-bit/64-bit)
•Windows 7 (32-bit/64-bit)..."

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

I would be very cautious about trying to run it on your server.
 
0
 

Author Comment

by:Sawyer
ID: 36485621
what best to use under windows server 2003???
0
What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

 
LVL 38

Expert Comment

by:younghv
ID: 36485645
Did you try the suggestions I made in my first post?
0
 
LVL 10

Expert Comment

by:SuperTaco
ID: 36492986
@ phototropic

You can run it on servers, but you are correct.  i would be very careful.  have you tried any of the anti malware we have suggested?
0
 
LVL 38

Expert Comment

by:younghv
ID: 36494525
speed15,
The developer of ComboFix (sUBS) says that his product should not be run on any server platform and we would all do well to follow his guidelines.
0
 
LVL 23

Accepted Solution

by:
phototropic earned 500 total points
ID: 36541454
speed15,

What is your status?  Do you still require assistance?
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Windows 7 keeps blocking Antivirus 11 69
dma locker 3 query 7 171
iOS vulnerability (9.3.5) 5 80
Ransomware 9 83
These are on the increase and getting more common these days. Users who use the Google search engine may complain of having their search redirected to unwanted sites, regardless of what browser is used. This happens when the system is infected with…
The System Center Operations Manager 2012, known as SCOM, is a part of the Microsoft system center product that provides the user with infrastructure monitoring and application performance monitoring. SCOM monitors:   Windows or UNIX/LinuxNetwo…
In this video I am going to show you how to back up and restore Office 365 mailboxes using CodeTwo Backup for Office 365. Learn more about the tool used in this video here: http://www.codetwo.com/backup-for-office-365/ (http://www.codetwo.com/ba…
With the power of JIRA, there's an unlimited number of ways you can customize it, use it and benefit from it. With that in mind, there's bound to be things that I wasn't able to cover in this course. With this summary we'll look at some places to go…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now