Re: ZoneAlarm Infected
Available news archives: comp.lang.tcl - comp.lang.python - comp.security.firewalls - sci.crypt - comp.lang.php - comp.lang.javascript
Google
 
Web news.hping.org


comp.security.firewalls archive

Re: ZoneAlarm Infected

From: Brian <nospam@spamaway.com>
Date: Wed Nov 16 2005 - 05:49:45 CET

 

"Kerodo" <loopback@localhost.com> wrote in message
news:MPG.1de43c25a056d09c989683@news.west.cox.net...
> In article <UCwef.2137$Rb.913@trndny04>, nospam@spamaway.com says...
>>
>> Hi,
>> I have ZoneAlarm Pro 6.0667 and NAV 2006. I have a netgear router and
>> with
>> my DSL modem off I turned on ZA to prep for going online. I recieved the
>> following alert from NAV 2006:
>> Rule "Default Block Shiva Burka Trojan horse" blocked communication.
>> Local address: All local network adapters(1600).
>> Process name is "C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe".
>>
>>
>> Any comments would be welcome. Is my True Vector infected? I did have one
>> incidence where the ZA icon turned red with a yellow X on it a few days
>> back.
>
> Most likely it is just NAV being ridiculous.. What happens when you run
> a full scan on your HD?
>
> --
> Kerodo
>
Kerodo I ran a full scan with NAV 2006 and it found no problem. Since the
alleged malware was a trojan I also ran scans with A Squared and Webroot's
Spysweeper with clean results.

Brian
Received on Mon Nov 21 02:41:37 2005