my McAfee personal firewall has an application that repeatedly keeps popping up... xbgtvfy.
its found in C:\WINDOWS\xbgtvfy.exe
i keep blocking it but it keeps coming back.
Are you sure this is the EXACT spelling, as it appears on your screen tinman?. I have run a few searches and they come back with nothing at all.
In the meantime i would run your antivirus in safe mode (press f8 repeatedly while rebooting until you get to the boot screen and select safe mode.)
It is also worth running a couple of online scans too.
Panda active scan (http://www.pandasoftware.com/activescan/com/activescan_principal.htm) is the best online virus scanner i know of.
Windows security Trojan scan (http://www.windowsecurity.com/trojanscan/) should pick up any trojans lurking on your computer too.
Hope this helps :thumbsup:
yes i'm sure it's the correct spelling, as i copied and pasted.
i'm doing a scan at the moment, but not in safe mode. Does that matter.
it will do.
also turn off system restore.
right click my computer, system restore, turn off system restore
Originally posted by tinman
yes I'm sure it's the correct spelling, as i copied and pasted.
I'm doing a scan at the moment, but not in safe mode. Does that matter.
If it is a virus that has buried itself in one of the processes running on your computer, McAfee will not be able to remove it. There is a chance that it is buried in one of your restore points too. It may be worth turning off system restore although you will loose all your restore points at this stage.
Right click on 'My Computer' , select properties and then select System Restore. Turn System Restore off here and reboot in to safe mode and perform your scans. The turn System Restore on again.
This is presuming your using Windows XP :?.
[EDIT] Vidster needs to type faster ;)
if its a system file mcafee.........
oh he he, im mean!
good minds vidster!
my scan has finished and found these ADWARE viruses:
Xxlllb.exe
temp.frDE52
SAHUninstall_.exe
SahHtml_.exe
SAHAgent_exe
optimise.exe
C:/WINDOWS/system32/msexreg.exe
C:/WINDOWS/system32/msbe.dll
C:/WINDOWS/system32/mgexdlm.srg
C:/WINDOWS/system32/javexulm.vxd
C:/WINDOWS/system32/exul.exe
C:/WINDOWS/system32/exdl.exe
dealhelper.exe
Dc315.exe
Dc168.srg
C:/ProgramFiles/BullsEyeNetwork/bin/bargains.exe
C:/ProgramFiles/BullsEyeNetwork/bin/adx.exe
C:/ProgramFiles/BullsEyeNetwork/bin/adv.exe
They can't be deleted. I should have taken my PC to the docs for a flu jab.
I'll tell you this... the guy who invents the software that prevents ALL types of virus from even getting into the sysytem will be a VERY rich man.
Was this scan done in safe mode?.
Have you had the chance to run Panda active scan yet?
You may as well turn of system restore too, if you haven't already ;).
It may also be worth installing CWShredder (http://www.spywareinfo.com/~merijn/downloads.html)