Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works

a bit of help please

  • Please log in to reply



    New Member

  • Member
  • Pip
  • 1 posts
hi guys

hope you can help. im new to this site and not sure if im posting this in the right part! im not too good with computers but my pc seems to have been in a bit of a mess. i downloaded Normal Malware cleaner and it has came up with the following results. im not to sure how good a programe this is but i am kind of worried with the amount of threats it seems to have found.......any help would be greatful !!!!

Norman Malware Cleaner
Copyright © 1990 - 2008, Norman ASA. Built 2009/01/23 07:50:27

Norman Scanner Engine Version: 5.93.01
Nvcbin.def Version: 5.93.00, Date: 2009/01/23 07:50:27, Variants: 2614638

Running pre-scan cleanup routine:
Operating System: Microsoft Windows XP Professional 5.1.2600 Service Pack 2
Logged on user: ROADWEST\Craig

Set registry value: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLS = "rcmsua.dll,avgrsstx.dll" -> ""
Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> NoDispBackgroundPage = 0x00000001
Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> NoDispScrSavPage = 0x00000001

Scan started: 24/01/2009 17:31:03

Scanning running processes and process memory...

C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE (Infected with W32/WebSearch.OC)
Terminated process
Removed registry value: HKLM\Software\Microsoft\Windows\CurrentVersion\Run -> MyWebSearch Email Plugin = "C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe"
Removed registry value: HKCU\Software\Microsoft\Windows\CurrentVersion\Run -> MyWebSearch Email Plugin = "C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe"
Deleted file

Number of processes/threads found: 2112
Number of processes/threads scanned: 2112
Number of processes/threads not scanned: 0
Number of infected processes/threads terminated: 1
Total scanning time: 1m 1s

Scanning file system...

Scanning: C:\*.*

C:\Documents and Settings\Administrator\My Documents\Craig\programes\Nero_Burning_ROM_v6.6.0.13_+_Vision_Express_v3.1.0.7_+_Codecpack_+_Key_+_AC
E\Nero_Burning_ROM_v6.6.0.13\keygen.exe (Infected with W32/Packed_FSG.C)
Deleted file

C:\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL (Infected with W32/WebSearch.OE)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056271.EXE (Infected with W32/WebSearch.OC)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056277.scr (Infected with W32/Websearch.OG)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056285.SCR (Infected with W32/Websearch.OG)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056302.EXE (Infected with W32/Spyware.EU)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056303.EXE (Infected with W32/Spyware.ET)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056305.DLL (Infected with W32/WebSearch.OD)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056306.EXE (Infected with W32/Spyware.EV)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056316.DLL (Infected with W32/WebSearch.OE)
Deleted file

C:\WINDOWS\system32\tDdeLRqr.ini (Infected with INI/Vundo.A)
Deleted file

Scanning: c:\System Volume Information\*.*

c:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056319.ini (Infected with INI/Vundo.A)
Deleted file

Running post-scan cleanup routine:

Number of files found: 124835
Number of archives unpacked: 2337
Number of files scanned: 124756
Number of files not scanned: 79
Number of files skipped due to exclude list: 0
Number of infected files found: 12
Number of infected files repaired/deleted: 12
Number of infections removed: 12
Total scanning time: 40m 50s
  • 0


Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP