TROJAN HORSE HELP!!!!

Discussion in 'Trojan Defence Suite' started by boomansion, Aug 5, 2004.

Thread Status:
Not open for further replies.
  1. boomansion

    boomansion Registered Member

    Joined:
    Jul 5, 2004
    Posts:
    6
    :'( Iv got the virus Trojan Horse in C:\WINDOWS\inetdat\services.exe
    Norton cannont get acess. It says "Acess Denied".
    Iv never had a virus over the damage of low, this one is medium HELP!!!!!!!
     
  2. dvk01

    dvk01 Global Moderator

    Joined:
    Oct 9, 2003
    Posts:
    3,131
    Location:
    Loughton, Essex. UK
    Are you using TDS

    If so then run it & post the scandump text so we can see what else is found
     
  3. boomansion

    boomansion Registered Member

    Joined:
    Jul 5, 2004
    Posts:
    6
    Im useing Window XP.. It show up on my task manager.. But It wont let me end its task.
     
  4. Gavin - DiamondCS

    Gavin - DiamondCS Former DCS Moderator

    Joined:
    Feb 10, 2002
    Posts:
    2,080
    Location:
    Perth, Western Australia
    Try scanning from Safe Mode

    Doesn't NAV remove it if you choose "Quarantine" ?
    If you cant kill the process with Task Manager yourself, you could always try TaskMan+ to make Task Manager more effective

    http://www.diamondcs.com.au/index.php?page=taskman
     
  5. dvk01

    dvk01 Global Moderator

    Joined:
    Oct 9, 2003
    Posts:
    3,131
    Location:
    Loughton, Essex. UK
    It probably won't

    the services.exe you are seeing in task manager is most likely the genuine windows service that is needed and windows will NOT let you stop that one otherwise windows doesn't work

    I think we need to see a hjt log or an asviewer log here and see what else is running

    But first as you have posted in the TDS support forum, I assume you have TDS3 antitrojan so run TDS3 and see what it finds

    If you haven't already got TDS then
    TDS3 from http://tds.diamondcs.com.au/

    download & install the 30 day free trial, update it manually as described here http://tds.diamondcs.com.au/index.php?page=update as the trial version doesn't have auto update enabled

    then press scan control & tick all the little boxes in the bottom part of that window, press save configuration and then close that window by pressing the red X in top right corner, then select system testing and select full system scan

    sit back with a cup of coffee and watch what it finds

    NOTE:

    Unlike set and forget av's TDS works with you, it doesn't auto delete anything but puts a list of found suspect files in the bottom window

    right click any file it finds and it gives you options on dealing with it, the normal selection would be delete , but first select "save as text", that will create a logfile of all the found suspect files and put it in the TDS directory called scandump.txt.

    post back with the tds log after running please, just copy & paste the entries from the scandump.txt
     
  6. Jooske

    Jooske Registered Member

    Joined:
    Feb 12, 2002
    Posts:
    9,713
    Location:
    Netherlands, EU near the sea
    Hi there!
    In addition to the good advices: diring install and scanning with TDS please make sure you have your Norton and possible other scanners closed completely, so TDS can access every file.
    Looking forward to your scandump.txt.
     
Thread Status:
Not open for further replies.