Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Unable to remove Mal/Generic-L using new free Virus Removal Tool

I just installed the new Sophos free Virus Removal Tool, ran a scan and it id'd the malware Mal/Generic-L on my machine but was unsuccessful in removing it.  It told me to go to the Free Tools Forum for cleanup advice.  It is an older HP Pavilion machine I use mainly for games and occasionally backu[p access online.  It is running XP.  Can anyone tell me how to get rid of it.

:23929


This thread was automatically locked due to age.
  • Hello herb,

    although everything prefixed with Mal/ is supposed to be 100% malicious cleanup is prudent when dealing with Mal/Generic types (the "specific" cleanup routine for  generic threats is logically delete - and therefore in some cases the final decision is left to the user).

    This said, do you know what the file is and where it belongs to (if unsure, please post name and path here)? If you are sure you don't need it you can simply delete it.

    Christian 

    :23951
  • The new free Sohpos Virus Removal Tool scan results details page id's two files on the Threat Details page:

    C:\System Volume Information\_restore{F20DC62-5212-4F33-8959-AB7D05D4CDB6}\RP1115\A0081391.exe and

    C:\System Volume Information\_restore{F20DC62-5212-4F33-8959-AB7D05D4CDB6}\RP1115\A0081392.exe .

    Can they 'just be deleted" as Christian suggests? 

    Or should I work my way through what Sandy (replying for the Product Manager) recommended?

    I am definitely not a computer geek so I hope the first suggestion is workable.  

    Herb 

    :23985
  • Believe it or not, the files are gone.

    I ran the scan again and it still ID'd the same two files as malware.  When it asked if I wanted them cleaned out, I said go.  This time they were removed.  I ran the san a third time and it came up with no threatening files.

    So thank you for your time and suggestions but the tool finally worked its magic,

    Again, thank you!!

    Herb

    :24015
  • Hello Herb,

    fine to hear they are gone. As the threat was found in an obviously older restore point it posed no imminent danger (and it would have been safe to delete but not easy to do so unless you really know what you are doing).
    To get an idea what a restore point is please see the short (and IMO not really high-quality) article in Wikipedia

    Christian

    :24029