What is this?

Discussion in 'Software' started by pedobear702, Oct 20, 2010.

  1. pedobear702

    pedobear702 Private E-2

    This thing pops up when i startup my computer.
    It's located in Microsoft\Templates\nvdisp.exe
    Can i put pictures in here so i can show it better?
     
  2. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    Hi and welcome to MGs.:)

    Yes, you can either attach it as a file from your computer: http://forums.majorgeeks.com/showthread.php?t=86880

    Or host it on a photo site and use the "Insert Image" button (square button in the tool bar with the mountain and sun) which is an option each time you make a new post. You would use the web URL for this option.
     
  3. pedobear702

    pedobear702 Private E-2

    Here is the picture :)
     

    Attached Files:

  4. pedobear702

    pedobear702 Private E-2

    I'm sorry but it's in Danish :S
     
  5. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    Hi. It might be helpful if you can translate. I'm assuming that's microsoft's UAC popping up to ask you if you want to allow the file to make changes. I will tell you that after doing a quick search on nvdisp.exe, it looks like it is part of a Trojan, which means you are are most likely infected.

    Have you run a scan on your computer with your Antivirus?

    I would suggest following all steps in this thread: READ & RUN ME FIRST. Malware Removal Guide
     
  6. pedobear702

    pedobear702 Private E-2

    I have been running a scan with avast free edition, malwarebytes anti-malware and superantispyware, but none of them could remove it.
    -----------
    And i will try to translate it to English :)
    -----------------
    And i will try to do what it's says in "READ & RUN ME FIRST. Malware Removal Guide"
     
  7. pedobear702

    pedobear702 Private E-2

    Here is the translation for the thing popping up:
    -------------------------------------------------------------------------
    the publisher could not be confirmed. are you sure you want to run this software?

    Name: ...ming\Microsoft\Windows\Templates\nvdisp.exe
    Publisher: unknown publisher
    File Type: Program
    From: C:\Users\derp\AppData\Roaming\Microsoft\Win...

    and below where the red cross on the shield is, it says:

    This file does not have a valid digital signature that confirms its publisher.
    you should only run software from publishers you trust.
    ----------------------------------------------------------------------------

    And the thing with the "READ & RUN ME FIRST. Malware removal Guide.
    Should i post all the logs in here?
    And if yes, which logs should i post from MGlogs.zip?
     
  8. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    Hi

    You should start a new thread in the Malware Forum with all your logs: http://forums.majorgeeks.com/forumdisplay.php?f=35

    Make sure you follow all the instructions from start to finish and post the logs whether they found anything or not. You post the logs the same way you did your picture you attached. The instructions will tell you where to find the log file for each tool.
     
  9. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, pedobear702.

    <snip> Laura beat me in replying...again! :-D
    dr.m
     
  10. pedobear702

    pedobear702 Private E-2

    Haha dr.moriarty :p
    -------------------------
    Okay i'll make a new thread in there :)
    But in the cleaning it told me to be sure to post the right MGtools logs.
    Do you know which logs it is?
    Because their is 13 logs.
     
  11. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    ;)

    Please attach the entire C:\MGlogs.zip, as each log contains info we need to review.

    dr.m
     
  12. pedobear702

    pedobear702 Private E-2

    Okay :)

    Thanks for helping :)

    Should we close this thread then?
     
    Last edited by a moderator: Oct 20, 2010
  13. LauraR

    LauraR MajorGeeks Super-Duper Administrator Staff Member

    :) You're welcome and good luck with it.

    Nope on closing the thread. We always leave them open.


    Heh...just quicker on the draw. :-D
     
    Last edited: Oct 20, 2010
  14. pedobear702

    pedobear702 Private E-2


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds