Inactive PSW.Generic10.BNPN

Status
Not open for further replies.
So I see a few others have posted on techspot so I'm adding my name to the list. PSW.Generic10.BNPN causing some grief for a friend of mine.

C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
C:\Windows\WinSxS\amd64_adobe-flash-for-windows_31bf3856ad364e35_6.2.9200.16472_none_84725ca8f34d7848\FlashUtil_ActiveX.exe
C:\Windows\WinSxS\amd64_microsoft-windows-audio-audiocore_31bf3856ad364e35_6.2.9200.16420_none_cfa64bd16e36e5f6\audiodg.exe

All show as being infected. Had him system restore to about two weeks ago and then after an AVG update the threat notifications start. False positive perhaps or legitimate threat?
 
Welcome aboard

Please, complete all steps listed here: https://www.techspot.com/community/...lware-removal-preliminary-instructions.58138/
Make sure, you PASTE all logs. If some log exceeds 50,000 characters post limit, split it between couple of replies.
Attached logs won't be reviewed.

Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.
 
Status
Not open for further replies.
Back