Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

a bit of help please


  • Please log in to reply

#1
craigeyrdwest

craigeyrdwest

    New Member

  • Member
  • Pip
  • 1 posts
hi guys

hope you can help. im new to this site and not sure if im posting this in the right part! im not too good with computers but my pc seems to have been in a bit of a mess. i downloaded Normal Malware cleaner and it has came up with the following results. im not to sure how good a programe this is but i am kind of worried with the amount of threats it seems to have found.......any help would be greatful !!!!


Norman Malware Cleaner
Copyright © 1990 - 2008, Norman ASA. Built 2009/01/23 07:50:27

Norman Scanner Engine Version: 5.93.01
Nvcbin.def Version: 5.93.00, Date: 2009/01/23 07:50:27, Variants: 2614638

Running pre-scan cleanup routine:
Operating System: Microsoft Windows XP Professional 5.1.2600 Service Pack 2
Logged on user: ROADWEST\Craig

Set registry value: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLS = "rcmsua.dll,avgrsstx.dll" -> ""
Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> NoDispBackgroundPage = 0x00000001
Removed registry value: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System -> NoDispScrSavPage = 0x00000001

Scan started: 24/01/2009 17:31:03


Scanning running processes and process memory...

C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE (Infected with W32/WebSearch.OC)
Terminated process
Removed registry value: HKLM\Software\Microsoft\Windows\CurrentVersion\Run -> MyWebSearch Email Plugin = "C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe"
Removed registry value: HKCU\Software\Microsoft\Windows\CurrentVersion\Run -> MyWebSearch Email Plugin = "C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe"
Deleted file

Number of processes/threads found: 2112
Number of processes/threads scanned: 2112
Number of processes/threads not scanned: 0
Number of infected processes/threads terminated: 1
Total scanning time: 1m 1s


Scanning file system...

Scanning: C:\*.*

C:\Documents and Settings\Administrator\My Documents\Craig\programes\Nero_Burning_ROM_v6.6.0.13_+_Vision_Express_v3.1.0.7_+_Codecpack_+_Key_+_AC
E\Nero_Burning_ROM_v6.6.0.13\keygen.exe (Infected with W32/Packed_FSG.C)
Deleted file

C:\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL (Infected with W32/WebSearch.OE)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056271.EXE (Infected with W32/WebSearch.OC)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056277.scr (Infected with W32/Websearch.OG)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056285.SCR (Infected with W32/Websearch.OG)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056302.EXE (Infected with W32/Spyware.EU)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056303.EXE (Infected with W32/Spyware.ET)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056305.DLL (Infected with W32/WebSearch.OD)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056306.EXE (Infected with W32/Spyware.EV)
Deleted file

C:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056316.DLL (Infected with W32/WebSearch.OE)
Deleted file

C:\WINDOWS\system32\tDdeLRqr.ini (Infected with INI/Vundo.A)
Deleted file

Scanning: c:\System Volume Information\*.*

c:\System Volume Information\_restore{2F8877F6-2BEC-424B-B0A2-4B858297E913}\RP114\A0056319.ini (Infected with INI/Vundo.A)
Deleted file


Running post-scan cleanup routine:

Number of files found: 124835
Number of archives unpacked: 2337
Number of files scanned: 124756
Number of files not scanned: 79
Number of files skipped due to exclude list: 0
Number of infected files found: 12
Number of infected files repaired/deleted: 12
Number of infections removed: 12
Total scanning time: 40m 50s
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP