NOD32 - Virus problem? Not sure how to interpret result/what to do

  • Thread starter Thread starter Pee Wiglet
  • Start date Start date
P

Pee Wiglet

I'd be grateful for help with this.

I have NOD32 running on Windows XP. It's set to automatic update, and
it updates at least once daily.

Earlier this afternoon I re-booted and when Windows opened NOD32 told
me it had found 2 viruses. Rather stupidly I didn't write down the
names, but simply clicked on "delete". Both warning boxes closed
immediately, but another box (not a warning box) was left with a line
or so of apparently random type at the top. Within the random type,
though, I noticed a sentence that said something like: "...shit that I
had to put in here, " - something like that.


I've just run a virus scan with NOD32 and when it was over the screen
showed that the program was unable to open about 70 files. There's a
line of text re: each file, which says (to take one example):

C:\WINDOWS\$NtUninstallKB839645$\shell32.dll - (error opening) access
denied [4]

There are about 70 of these, all (except 2) referring to the same
location as far as:

C:\WINDOWS\$NtUninstall but they're all a little different after
that.

On completing the scan, NOD32 says at the bottom of the screen:

"Notes.
[4] file cannot be open. It is being exclusively used by another
application or operating system."

At the same time - presumably not by coincidence - I've had what
purport to be Windows messages telling me that spyware activity has
been detected on my PC/network (the PC is connected to one other PC,
but the other PC hasn't been switch on for a couple of months) and
inviting me to d/load software. I haven't done.

This sounds wrong to me. Can anyone please tell me what might be
happening, and what I could do about it?

Many thanks for any help.

PW
 
On Sat, 15 Jan 2005 15:19:19 +0000, Pee Wiglet

I've checked again with another reboot, and the box still opened. It
seems to be opening from C:\Documents and Settings\ All Users\Start
Menu\Programs\Startup\Microsoft.hta, and the line of text says:


TG!
¶’ò?²Ï?#ª_þX

!Ò­cö
ëÏ°ãª?

ÿÿÿÿ@
¾"µÈó\έåªDw=


IÁ<Ž¶ëmÐ?öª_þXc€

#meaning less shit i had to put here?ÿÿÿhÿÿÿ# crap="

Any ideas, anyone?

PW
 
I've checked again with another reboot, and the box still opened. It seems
to be opening from C:\Documents and Settings\ All Users\Start
Menu\Programs\Startup\Microsoft.hta, and the line of text says:


TG!
¶’ò?²Ï?#ª_þX

!Ò­cö
ëÏ°ãª?

ÿÿÿÿ@
¾"µÈó\έåªDw=


IÁ<Ž¶ëmÐ?öª_þXc€

#meaning less shit i had to put here?ÿÿÿhÿÿÿ# crap="

Any ideas, anyone?

PW

Google?

http://computercops.biz/postp419481.html
http://help.lockergnome.com/index.php?showtopic=29959
 
Back
Top