need help with threat message

Discussion in 'ESET NOD32 Antivirus' started by dtran, Jan 26, 2009.

Thread Status:
Not open for further replies.
  1. dtran

    dtran Registered Member

    i was doing a virus scan when this message popped up about a treat.

    File C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RVRI31NJ\upgrade[1].cab is infected with a variant of Win32/Adware.OneStep application. The file can be deleted. It is strongly recommended that you back up any crucial data before you proceed.


    I backed up my data like it said and then i did another scan and it showed up again but it would only let me choose the option leave. What do i do about this threat? Please Help.
     
  2. Thankful

    Thankful Savings Monitor

    Since this is a temporary file, it can be removed by hand. You can go into the folder and delete the file.
     
  3. dtran

    dtran Registered Member

    i have no idea where to find this file
     
  4. Thankful

    Thankful Savings Monitor

  5. dtran

    dtran Registered Member

    i did what you said and i did another scan just to be safe and it came up again.
     
  6. Thankful

    Thankful Savings Monitor

    Did you click 'Run Cleaner'?
     
  7. elapsed

    elapsed Registered Member

  8. dtran

    dtran Registered Member

    yes i did run the cleaner
     
  9. dtran

    dtran Registered Member

    and i also did run the cleaner in safe mode.
     
  10. elapsed

    elapsed Registered Member

    I'm going to assume it didn't work, in which case you're probably infected with something at startup re-creating the file.
     
  11. dtran

    dtran Registered Member

    so what do i do about?
     
  12. Thankful

    Thankful Savings Monitor

  13. elapsed

    elapsed Registered Member

  14. dtran

    dtran Registered Member

    i downloaded the malwarebytes and updated it and scanned but it did not find any infected files so idid another scan on nod32 and the infected file showed up again. i also sent the file them.

    thanks for the suggestions so far if you have any more i am still open to them
    and if it comes to my last resort i will take it somwhere to get it fixed.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice