June 25, 200521 yr Hi, I have recently set up my system with windows XP Pro X64, upon running Xoftspy 4.13 through my system it has picked up a trojan named Backdoor.Graybird, eachtime I remove it and re-scan it comes back again, however symantec antivirus x64 is not detecting this trojan.Does anyone know how to manually remove this trojan, I dont know where it came from as I have a wireless router with a built in firewall, I also use windows firewall, and symantec antivirus x64 client.
June 25, 200521 yr Are you sure it's not a false positive? Any way doing a search in googlefound many links to remove it. Here's onehttp://securityresponse.symantec.com/avcen...r.graybird.html
June 25, 200521 yr Author Hi, sorry im new to the world of trojans, what's a faulse pos......, I have just downloaded a couple of other trojan removers from a link at the bottom of this main screen and one picked it up as my doom trojan, and another picked it up as a key logger, all in explorer.exeThanks for the link but like I said Symantec Antiviurs is not detecting it. Edited June 25, 200521 yr by Seanie's Show
June 25, 200521 yr Author Thanks for your help anyway, managed to get rid of it now, re-started in safe mode and re-ran xoftspy which detected and removed it perm. this time, restarted again into normal mode and re-ran xoftspy again just to double check and its definatly gone.
June 26, 200521 yr False positive is when the virus scanner is telling you, you have a problemwhen you don't. The reason I gave you that link is it had instructions toremove it manually. Also you could check an see if you had the files andthing it mentioned on you PC. But I'm glad you got it fixed
July 11, 200521 yr Beware xoftspy reports false positives as a goad to purchase.http://www.spywarewarrior.com/rogue_anti-spyware.htm
July 11, 200521 yr xoftspy is crap, use HijackThis for your trojans.If HijackThis picks stuff up after a fresh install then you must have got a warez copy of windows that somebody infected. Edited July 11, 200521 yr by dale5605
Create an account or sign in to comment