Endpoint Protection Small Business Edition

 View Only
  • 1.  Symantec Endpoint Protection and malware

    Posted Jan 18, 2010 01:51 PM
    I have a Win SBS 2003 server and it seems to have been inftected by malware. I find that the server boots up and then the diskette drive continually buzzes and the light flashes. Symatec dat is 8/1/10 but doesnt find anything. Also seems to stop me running liveupdate. I have used malwarebytes whch picks up trajans and security.risk and says it clears them but when I boot up the same appears. Is ther any Magic Bullet or similar that Symantec offer to eradicate this. It is causing grief !.


  • 2.  RE: Symantec Endpoint Protection and malware

    Posted Jan 18, 2010 02:05 PM
     ftp://ftp.symantec.com/AVDEFS/symantec_antivirus_corp/rapidrelease/sequence
    inside this location go to the 3rd folder and download and run
     
    symrapidreleasedefsv5i32.exe
     
    Once you have run this run a scan in safe mode..
     
    IF you are not able to download this file from the server then download it on a diffrent computer and bring it on this server using a flash disk..
     


  • 3.  RE: Symantec Endpoint Protection and malware

    Posted Jan 18, 2010 02:24 PM
    Vikram

    Thanks. The server will not boot in safe mode when I select that option after F8 It just keeps rebooting and will only load windows sbs 2003. Do you know of a rescue CD that may be f=created using Symantec products ?.


  • 4.  RE: Symantec Endpoint Protection and malware

    Posted Jan 18, 2010 02:47 PM
    If server is able to access Internet, install Hitman Pro and do a full scan with EWS turned on. If it's dead, create a LiveCD (scroll or search for "Rescue CD") from either Kaspersky or Dr. Web and boot server with it and scan it that way. Make sure you have a backup before you remove/quarantine anything.
    As far as I know, Symantec has no such offline repair functionality.


  • 5.  RE: Symantec Endpoint Protection and malware

    Posted Jan 18, 2010 02:56 PM
     Well with these updated deifinitons first try scanning in normal mode and check if things get detected and deleted..


  • 6.  RE: Symantec Endpoint Protection and malware

    Posted Jan 19, 2010 11:38 AM
    Vikram & others

    Thanks for the replies and suggestions. This dude/malware has a right grip on the server. I have used scanners AVIRA and Bitdefender and they both identify malware but as soon as I clean and boot up the diskette drive light comes on as if it is trying to read a disk and unless I stop the smtp service the machine is very slow.