win32host.exe and win32bootcfg.exe

Discussion in 'Software Q&A' started by karankalaria, May 15, 2006.

Thread Status:
Not open for further replies.
  1. karankalaria

    karankalaria New Member

    Joined:
    Sep 10, 2005
    Messages:
    3
    Likes Received:
    0
    Trophy Points:
    0
    Location:
    Rajkot
    win32host.exe and win32bootcfg.exe are there in my processes list and the are creating troubles for me like if i dont end their process I can't visit anywebsite and when i end its process it appears back after 5 sec or so.Even my fully updated norton antivirus cant detect it as a virus.What r they and how to get rid of them.If i delete it from its place(c:windows/system32 and c:windows/prefetch) it appears back.
     
  2. anandk

    anandk Distinguished Member

    Joined:
    Mar 8, 2005
    Messages:
    3,786
    Likes Received:
    106
    Trophy Points:
    0
    Location:
    Pune
  3. Desmond David

    Desmond David Destroy Erase Improve

    Joined:
    Apr 9, 2005
    Messages:
    5,779
    Likes Received:
    80
    Trophy Points:
    48
    Location:
    Pune
  4. QwertyManiac

    QwertyManiac Commander in Chief

    Joined:
    Jul 17, 2005
    Messages:
    6,656
    Likes Received:
    10
    Trophy Points:
    0
    ^^
    Are you sure these are root kits? :|
    Research first...
     
  5. anandk

    anandk Distinguished Member

    Joined:
    Mar 8, 2005
    Messages:
    3,786
    Likes Received:
    106
    Trophy Points:
    0
    Location:
    Pune
    even i dont think they r rootkits...they are our good old (un)friendly neigborhood trojans.
     
  6. Desmond David

    Desmond David Destroy Erase Improve

    Joined:
    Apr 9, 2005
    Messages:
    5,779
    Likes Received:
    80
    Trophy Points:
    48
    Location:
    Pune
    All right All right, slipped on that,

    They are trojans, but removable with HijackThis.
     
  7. anandk

    anandk Distinguished Member

    Joined:
    Mar 8, 2005
    Messages:
    3,786
    Likes Received:
    106
    Trophy Points:
    0
    Location:
    Pune
    i had just said that in my first post
     
Thread Status:
Not open for further replies.

Share This Page