Re: TrojanDownloader



On Fri, 9 Nov 2007 07:23:03 -0800, Greg wrote:

Hello -

While examining Administrative Tools ->Event Viewer->System, I noticed two
entries that said Windows One Care (v1.6.2111.38) detected changes. These
unspecified changes were due to the file TrojanDownloader:Win32.Zlob.gen!dll
(threatid 2147472480 - (another?) filename jtj8mt2o.exe - severity severe -
status suspend). When I scanned the system three times with One Care it
reported no unwanted or harmful software - status green. Also, when
submitting this from the Event Viewer to Microsoft for more information
(event 3004), it replied that no further information was available.

I'd like to believe that One Care was right and the system is clean, but
this error message makes me wonder. All updates are current. How can I be
sure the system has no virus?

Clear your Tracks
http://blogs.msdn.com/ie/archive/2006/01/12/512232.aspx

Download David H. Lipman's MULTI_AV.EXE from the URL:
http://www.pctipp.ch/downloads/sicherheit/35905/multi_av_scanning_tool.html
Further information can be found here:
http://www.elephantboycomputers.com/page2.html#Multi-AV
Additional Instructions:
http://pcdid.com/Multi_AV.htm

Good luck :)
.



Relevant Pages

  • RE: TrojanDownloader
    ... not 2147472480 as stated in the original message. ... entries that said Windows One Care detected changes. ... submitting this from the Event Viewer to Microsoft for more information ...
    (microsoft.public.security.virus)
  • Re: Solving suspend-level confusion
    ... > probably being given the wrong device-level suspend state, ... care, as long as BIOS can work with the devices after the reboot. ... > earlier driver model PM changes goofed up. ... PCI suspend routines need more detailed info than D0..D3. ...
    (Linux-Kernel)
  • Re: [linux-usb-devel] [PATCH] USB: Only enable autosuspend by default on certain device clas
    ... to switch it off" results in them wondering why it was switched on in ... Many of our users aren't technical - they don't care ... they just care about their printer working when they ... it certainly will suspend all devices when the system goes ...
    (Linux-Kernel)
  • Re: phoenix instant boot bios
    ... but that's often from the apple logo or the chime). ... in  world where sleeping and suspend to disk exist. ... But what do I care? ... Sure, it uses a little more battery power, but the machine can ...
    (comp.sys.mac.advocacy)
  • Re: "C:WINNTSYSTEM32w3ctrs.dll" for the "W3SVC" service
    ... > I have this that just showed up in the event viewer and some services also ... Maybe taking care of this will take ... > care of the service problem. ... > trusted performance library information stored in the registry. ...
    (microsoft.public.inetserver.iis)