This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

MAL/behav-102

Hello,

I would like to know how to remove a virus on to a Windows server 2008 R2, this is a virtual machine on VMware and it is used as Domain controler.

Sophos detects the virus into c:\Windows\SysWOW6\rasauts.dll but said that it was partially removed

 

Thanks

 



This thread was automatically locked due to age.
Parents
  • Hello Akamon,

    the detailed analysis of Mal/Behav-102 bluntly states Mal/Behav-102 is a malicious program. The Summary nevertheless suggests it's a generic detection and that you should perhaps send a sample (which is naturally only possible if the offending file is still there). You should also check the AV log as there might have been additional detections.
    Partially removed is usually followed by please restart ... , necessary e.g. to remove locked files.

    Christian

Reply
  • Hello Akamon,

    the detailed analysis of Mal/Behav-102 bluntly states Mal/Behav-102 is a malicious program. The Summary nevertheless suggests it's a generic detection and that you should perhaps send a sample (which is naturally only possible if the offending file is still there). You should also check the AV log as there might have been additional detections.
    Partially removed is usually followed by please restart ... , necessary e.g. to remove locked files.

    Christian

Children
No Data