This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Malware Removal Forums

CA Anti-Virus picks up Slenfbot!Generic

1 min read

✨ The volunteers who helped with this thread aren't active anymore, but you can still get a personalized answer — click Ask AI below.

This thread's last reply is from July 28, 2009, 6:16 AM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

wghorne
Hello,

I would be grateful for any help out there. Here is my situation:

My pc started acting funny (logon errors, browsers not working) so I ran CA Virus Scan and Microsoft malicious software removal tool (MRT) both of which detected viruses and cleaned them. My profile was corrupt, according to a techie friend, so I created a new profile and migrated my data to the new profile. I then deleted the old data, but there is a folder I cannot delete, even though it appears empty.

I still get a virus alert from CA saying they have detected and deleted the virus at startup. But it pops up again at the next startup. CA Anti-virus picks up a Win32/Slenfbot!Generic Virus at in C:\WINDOWS\TEMP\BN8.tmp, but there is no such file in that directory. (I checked the View Hidden Files option)

Any ideas on how to clean out the infection?? I have attached my HijackThis log for reference. Thank you.

Bill

Ps. Not sure if it matters, I have a Intel Dual Core processor running Windows XP Pro sp3.
NonSuch Administrator
In order for us to help you it is necessary that you provide us with a HijackThis log. Please follow the guideline at the link below to start a new topic and post your HijackThis log by pasting it into your post. Do not utilize attachments.

This topic is now closed. Please start a new topic by following the HijackThis Guideline posted here: >Guideline for posting your HijackThis log<

✨ Ask AI about this thread

No ads, no affiliate links — generated on request from this thread's own archived content, not written by forum staff. Never run a scan/removal tool as a self-service step if the original thread describes it being done under a helper's direct supervision, and don't include your name, email, or other personal details in a follow-up question. See our privacy page for details on how this works.