Hello all,
My RAV scan report this morning detected the following:
/home/e-smith/files/users/admin/home/backup2ws/wrar310.exe->(RARSfx)->Default.SFX->(UPXW) Infected: Backdoor:Win32/BBD.A.Drop
What's going on here? How could this file have become infected? It's not in a publicly accessible area of the server and my SME 5.6 box runs in server-only mode inside our network, primarily as a mail server and small intranet server.
Doing a Google for "Win32/BBD.A.Drop" yeilded no results.
Anybody else had this and know a) how did this happen and b) how do I clean it?
Thanks in advance for your assistance!
[%sig%]