Outline ·
[ Standard ] ·
Linear+
Trojan program Backdoor.Win32.Rbot.bnb?, Running module: svchost.exe\svchost.exe
|
TSGTR
|
Nov 1 2006, 10:35 PM, updated 20y ago
|
|
Hi all,
i'm using kaspersky anti-virus 6.
Just now the alarm went off with a warning window that says:
detected: Trojan program Backdoor.Win32.Rbot.bnb Running module: svchost.exe\svchost.exe
i left it untreated for now while i google it out as there's no info for such trojan on viruslist.com, but i'm confuse...i thought we should never delete svchost.exe, how come its a threat to my pc now? should i delete or not?
This post has been edited by GTR: Nov 1 2006, 10:36 PM
|
|
|
|
|
|
TSGTR
|
Nov 2 2006, 05:24 PM
|
|
any advice is most welcome
|
|
|
|
|
|
bean_man
|
Nov 3 2006, 09:39 AM
|
|
QUOTE(GTR @ Nov 2 2006, 05:24 PM) any advice is most welcome the Rbot virus is actually using the svhost.exe file as the medium of infection. Delete the file or quarantine it. I used NOD32 and it manage to scanned it and isolate it. Worst case, upload the file suspect file to Jotti for online scanning. Hope this helps.....
|
|
|
|
|
|
TSGTR
|
Nov 3 2006, 08:23 PM
|
|
QUOTE(bean_man @ Nov 3 2006, 09:39 AM) the Rbot virus is actually using the svhost.exe file as the medium of infection. Delete the file or quarantine it. I used NOD32 and it manage to scanned it and isolate it. Worst case, upload the file suspect file to Jotti for online scanning. Hope this helps..... ya, i neutralised it already. So far, my system is ok. 10s for the advice.
|
|
|
|
|