[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1259
  • Last Modified:

Not cleaning malware

Hey folks!

Wish I knew how it started but anyway... now McAfee pops up several times a day warnings on 3 files. Here are screen shots of the messages:
http://mudshark.com/prockill-an.jpg
http://mudshark.com/euniverse.jpg
http://mudshark.com/tightvnc.jpg

The message reads: Potentially Unwanted Program Detected.
Here are the names of the 3 files as per McAfee:
Adware-eUniverse
ProcKill-AN
RemAdm-TightVNC

All 3 files are locked files in a temp directory.

I always choose "Remove the program" and press OK

The next window that opens says: To remove these programs using the McAfee uninstaller, click OK. Or, click Cancel and then manually remove them using the vendor's uninstaller. Programs that may have been installed as a bundle or suite are about to be removed. You may have accepted a license agreement for these programs.

I always press OK.

The next window that opens says: The Potentially Unwanted Program cannot be removed. McAfee recommends that you try to remove the program using Add or Remove Programs in Windows.

I always press OK.

At any rate these programs are still hiding (?) on my PC and UI'd like to get rid of them. Any ideas?

I have Windows XPsp2 and I also do have, and use, UltraVNC. AVG does not complain about these files.

Thx much, all...
Rich
0
joerockhead
Asked:
joerockhead
5 Solutions
 
psyclown-Commented:
Well, you could try and boot in "safe mode", and then run your antivirus or adaware 2007, which should make it possible for you to remove most of the spyware, malware etc.
0
 
rindiCommented:
For those you want removed, do as mcafee says, remove them through control panel, add/remove programs. If they aren't listed there, reboot into safe mode and try using mcafee to remove them from there.
0
 
jvuzCommented:
Install www.superantispyware.com, make sure it has the matest updates and then let it scan your pc.
0
New Tabletop Appliances Blow Competitors Away!

WatchGuard’s new T15, T35 and T55 tabletop UTMs provide the highest-performing security inspection in their class, allowing users at small offices, home offices and distributed enterprises to experience blazing-fast Internet speeds without sacrificing enterprise-grade security.

 
scotttchtcCommented:
Try rebooting the computer in "Safe Mode" and delete all files in "temp" folder listed in the error message.
0
 
nobusCommented:
i would run ALL these - updated :
     adaware :      http://www.lavasoftusa.com/
     Spybot :        http://www.download.com/3000-8022-10122137.html
http://housecall.trendmicro.com/                                                               online scan for trojans
http://www.spychecker.com/program/hijackthis.html                                   download
http://www.hijackthis.de/index.php?langselect=english                                check the log

then - it may be a good idea to uninstall / reinstall your AV, or use AVG free :
http://www.google.be/url?q=http://free.grisoft.com/doc/28415/lng/us/tpl/v5&sa=X&oi=smap&resnum=1&ct=result&cd=1&usg=AFQjCNFSp1-r1AEoexUPByI7SZPvo-rQug
0
 
burrcmCommented:
If you follow the above excellent suggestions, but find the problem returns, the next step is to turn off system restore and ensure all restore points have been deleted, then run the removal processes again. Why? Because often you will find that the droppers for such items will hide in the protected restore files. Of course, taking this action means you cannot restore to an earlier point, so be reasonably sure that you will have no reason to do so. Once the issue is resolved, turn system restore back on.

Chris B
0
 
joerockheadAuthor Commented:
None of the above worked.  Since System Restore was disabled too (!) I did have to reimage the pc.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Tackle projects and never again get stuck behind a technical roadblock.
Join Now