Wilders Security Forums  

Go Back   Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET NOD32 Antivirus
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old June 12th, 2011, 09:19 PM
weezyrider weezyrider is offline
Infrequent Poster
 
Join Date: Jan 2003
Posts: 35
Default Eset caught it, but????

Eset caught Tracur trying to install itself. Eset quarantined it and we supposedly deleted the trojan.
According to another AV - Tracur is supposed to install dpwsock32, dll and some registry keys. Searched for these and didn't find these files. Ran a full scan with Eset.

However - FF4.01 and IE (6) simply will no longer connect to the internet. I downloaded Google Chrome for the user, and he was able connect to the internet. However, ESET went NUTS! I typed in one IP addy, and just found out that that was the trojan. Eset blocked that. But then Eset started complaining about Google Analytics and a few other tracking cookies which it usually ignores. Everything typed into the Google Chrome bar gave us a complaint from ESET. This included Yahoo, Unisys Weather, etc.

We downloaded MBAM and it found quite a few suspicious files, including Trojan A (I have the log file.) It also found something called DPMODEMX32.exe - What kind of file is that? One search told us it was malware. Plus we told MBAM to clean. Can post log. And most of these were from Oct. 2010

And while Eset does quarantine the Tracur F, where is it coming from? User does not click any strange links, pop-ups or from emails. Has not received and fake AV offers. I have the IP addy that Eset and Chrome banned.

We tried removing and reinstalling FF and it still will not connect.

We also scanned with Super Anti Spyware which showed nothing.

What else do we have to do?
  #2  
Old June 13th, 2011, 12:31 AM
Spooony's Avatar
Spooony Spooony is offline
Frequent Poster
 
Join Date: Apr 2011
Posts: 514
Default Re: Eset caught it, but????

When last did you update your java?

First download rkill and malware bytes and Combofix from bleepingcomputer.com.

run rkill first then follow up with malware bytes.. Then with Combofix.

Its Vundo.
Best is follow this guide
http://www.overclock.net/networking-...ide.html#links
__________________
I've discovered that people on IRC don't get offended or riled up by racism, nor politically incorrect jokes, nor feminism, nazism, nor goatse, or even tubgirl, not even jokes about 9/11 get a rise out of anybody but as soon as I tell somebody that macs are better than PCs, things get ugly.

Last edited by Spooony : June 13th, 2011 at 12:48 AM.
  #3  
Old June 13th, 2011, 01:33 AM
Marcos Marcos is offline
Eset Moderator
 
Join Date: Nov 2002
Posts: 14,193
Default Re: Eset caught it, but????

I'd suggest contacting customer care and supplying them with a SysInspector log for perusal.
  #4  
Old June 19th, 2011, 04:45 AM
volvic volvic is offline
Regular Poster
 
Join Date: Aug 2009
Posts: 168
Default Re: Eset caught it, but????

this sort of stuff should be automated - click here to....

catch up Eset.
 

Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET NOD32 Antivirus « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 08:22 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums