Win32/Dialer process stopped but no virus found

Discussion in 'ESET NOD32 Antivirus' started by dsotm, Nov 7, 2008.

Thread Status:
Not open for further replies.
  1. dsotm

    dsotm Registered Member

    Joined:
    Nov 7, 2008
    Posts:
    1
    Every 20 min or so I am getting the following 2 entries:

    07/11/2008 12:54:42
    Real-time file system protection
    file C:\DOCUME~1\*****\LOCALS~1\Temp\BIT59.tmp probably a variant of Win32/Dialer.U trojan cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred on a file modified by the application: C:\WINDOWS\System32\svchost.exe.

    07/11/2008 12:54:42
    HTTP filter file h**p://78.157.143.198/lm/engine.exe
    probably a variant of Win32/Dialer.U trojan connection terminated - quarantined NT AUTHORITY\SYSTEM Threat was detected upon access to web by the application: C:\WINDOWS\system32\svchost.exe.

    However when I run a scan no virus is found - any ideas?

    Thanks
     
  2. Kosak

    Kosak Registered Member

    Joined:
    Jul 25, 2007
    Posts:
    711
    Location:
    Slovakia
    Hello, the best will be, when you send log from ESET SysInspector to support[at]eset.com. There can be undetected downloader, e.g.
     
Thread Status:
Not open for further replies.