netz.exe

??? what is netz.exe …it is running as windows service , if a virus then is not detected by avast

Search for the file in your system & submit it to Jotti http://virusscan.jotti.org/

thank you :slight_smile:

OK, I’m curious, give us some feedback after you check :wink:

File: netz.exe
Status:
INFECTED/MALWARE
MD5 0b1c86fd439df1a80ca641e21d1814d8
Packers detected:
PE_PATCH.MORPHINE, MORPHINE, UPX
AntiVir Found Worm/Wootbot.302080
Avast Found nothing
AVG Antivirus Found BackDoor.Wootbot.8.A
BitDefender Found Backdoor.SDBot.48E00642
ClamAV Found nothing
Dr.Web Found Win32.HLLW.ForBot
F-Prot Antivirus Found W32/Spybot.KGL
Fortinet Found W32/ForBot.F294
Kaspersky Anti-Virus Found Backdoor.Win32.Wootbot.gen
mks_vir Found Trojan.Wootbot.Gen
NOD32 Found probably unknown NewHeur_PE (probable variant)
Norman Virus Control Found W32/SDBot.GIA
VBA32 Found Backdoor.Win32.Wootbot.gen

:cry:

Can you send us the file, mayday? (virus@avast.com)
Thanks.

yes , just a minute !!

I had found on the internet that it probably was a backdoor, but I wanted to be sure. Now, we are. Don’t worry mayday, they might give it your name now that you’ve discovered it :wink:

mayday, if you can zip and password protect (‘virus’, will do) the suspect file and send it to virus @ avast.com (no spaces).

Give a brief outline of the problem (jotti detection, etc.), the fact that you believe it to be an undetected trojan and include the password in the body of the email. Some info on the avast version and VPS number (see about avast {right click avast icon}) will also help.

i sent the file :slight_smile: