Read the forum guidelines
I was sitting here reading emails when suddenly I got an alert that I may have the Zeus Bot Network virus from Cox.
I have ran scans all day and nothing has come up.
Can someone at Cox tell me what exactly triggered this?
It can be many things. Cox detected traffic to your modem from a IP that is known to be used by Malware.The most common programs are registry cleaners and programs that "speed up your PC". You should start with a Malwarebyte scan and Norton Power Eraser.
Hi Swiliocub, Cox notifies customers when their computers may be infected with malicious software. Zeus is a Trojan horse virus that has been designed to steal confidential information from the computers it compromises. There are many forms and versions of this malicious software. In addition to the recommendations provided by WiderMouthOpen, Cox also recommends AVG Removal Tool and Microsoft Security Scanner. Select the removal tool that best suits your needs and scan all computers that are connected to your network. -Becky, Cox Support Forums Moderator
Just keep in mind you aren't looking for the Zeus Trojan exactly, but similar malware. I have seen threads that people get the report when they have no windows PC on the network, so it can't just be a Trojan issue.
@Becky Can you comment on what Cox watches for to determine if a customer's network is infected? Is it a certain IP range? Even if you can't give specifics, can you give us a vague idea?
What's interesting to me is that I have read many threads about this but not once has anyone with this popup actually had the Zeus virus. Many have had other malware, but some have none and I haven't seen one with the actual Zeus virus. I have actually spent a complete day running 30+ scans with anti-rootkit software, and I even went as far as to check my registry manually for any changes by the original Zeus bot, coming up with nothing. When I emailed Cox for an answer on what caused me to receive the notification, they were vague and unwilling to answer, only telling me the connection occurred at around 9:00 AM on July 28th, 2018