TechSpot

Virus

By lmarkie
Apr 21, 2009
  1. I am using ESET NOD32 and it show in the quarantine log that it has quarantined c:\windows\explorer.exe Win32/Virut.NBM with a count of 520 times.

    What does this mean?

    System is running fine.
     
  2. touch

    touch TS Rookie Posts: 978

    Hello Imarkie

    It can mean this ->
    "Your system is infected with a polymorphic file infector called Virut. Virut is capable of infecting all the machine’s executable files (.exe) and screensaver files (.scr). However, the problem is that the virus has a number of bugs in its code, and as a result, it may misinfect a proportion of executable files and therefore, the files are corrupted beyond repair. As of now, security experts suggest that a format and clean install, or destructive recovery if you have an OEM recovery partition, is the best way to clean the infection and it is the best and safest way to return the machine to its normal working state."

    But if you like, let's check and see how infected it is ->

    Please download Combofix:
    http://subs.geekstogo.com/ComboFix.exe

    And save to the desktop.

    Close all other browser windows.

    Please connect all your external hard drive/flash drive before running Combofix, if you have any

    Double-click on the combofix icon found on your desktop.

    Please note, that once you start combofix you should not click anywhere on the combofix window as it can cause the program to stall. In fact, when combofix is running, do not touch your computer at all and just take a break as it may take a while for it to complete.
    When finished, it will produce a logfile located at C:\combofix.txt.

    Please attach it to your next post
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...