Windows 7 Forums

Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: themeui.dll infected with Win32.HLLM.Graz.based

04 Jan 2009   #1
MegaFixer

Microsoft Windows 6.1 (Build 6801)
 
 
themeui.dll infected with Win32.HLLM.Graz.based

Recently run DrWeb and got this message on Build 7000 :/

Anyone else?


My System SpecsSystem Spec
.
04 Jan 2009   #2
Airbot

Windows 7 Ultimate x64 SP1
 
 

Quote   Quote: Originally Posted by MegaFixer View Post
Recently run DrWeb and got this message on Build 7000 :/

Anyone else?

Hi megafixer,

I just looked the file name up on dr web. It says it's a mass mailing worm. I suggest if you have a Antivirus program installed I would run a full scan now. If you don't have one, Avast Home is good. You can run a boot time scan and the program itself scans emails as well as everything else.

I will run dr web on my computer to see if I get it, it may be a false positive.

The themeui.dll is a system file pertaining to Themes.
My System SpecsSystem Spec
04 Jan 2009   #3
Airbot

Windows 7 Ultimate x64 SP1
 
 

My scan turned up zero. So you may have this infection. Read this and see if anything is relevant. This appears to be a very serious worm.

Dr.Web - innovative technologies for information security. Antivirus & antispam protection. / Information

Please post back with any news.
My System SpecsSystem Spec
.

04 Jan 2009   #4
MegaFixer

Microsoft Windows 6.1 (Build 6801)
 
 

Hi,

Thanks for your prompt reply. I did the upgrade from previous build and seems I cought it somewhere on the net. Just restored the original one with "sfc /scannow" command and doing the full hard drive virus scanning...
My System SpecsSystem Spec
04 Jan 2009   #5
Airbot

Windows 7 Ultimate x64 SP1
 
 

Well, sometimes it comes to that. Did you have an active AV monitoring when you got it?
My System SpecsSystem Spec
Reply

 themeui.dll infected with Win32.HLLM.Graz.based




Thread Tools




Similar help and support threads
Thread Forum
This week my main pc was infected with Ransom:win32/Croti
This week my main pc was infected with Ransom:win32/Croti. My main protection program is MS Security Essentials. I was a bit surprised since I routinely keep my virus def.s up to date & stay off of any risky (??) sites. (You’ve heard it all many timesJ) No other PC’s on my Home Network appear to...
System Security
Infected by virtool.win32/obfuscator.XZ
Hi Got up this morning to a message that I had a problem. I scanned with MSE and it found virtool.win32/obfuscator.XZ but when I tried to 'clean' the system it seemed to fail. I found a similar post in this forum and so I ran F-secure and here is the report (I think this is what you...
System Security
How can I be sure if I am still infected with "Win32/Small.CA" virus".
Hi I got a "Solve PC Issues" (white flag) saying "Remove the Win32/Small.CA virus". I am running MSE (Microsoft Security Essentials) on Windows 7 Pro (x64). So I did an update followed by a full scan using MSE. I then ran - Malware Anti-Virus - SUPERAntispyware - Microsoft Safety Scanner...
System Security
Infected by virtool.win32/obfuscator.XZ on Windows 7
Hi All, My last MSE scan was in October of 2012, did a scan last night and found that I'm infected with virtool.win32/obfuscator.XZ. I tried to do some research before posting and found these two threads that are relatively recent: 1. Solved: Please help removing virtool:win32/obfuscator.XZ...
System Security
Win 7 Action Center reports pc is infected with win32/Small.ca trogan
Hello, My Windows 7 action center has told me to "remove the Win32/Small.CA virus from your computer". Although it provides very little assistance in removing the virus. The message first appeared on the 26 Dec 2012. My computer has blue screened several times over the last month although...
System Security
Warning! Glary Utilites/Iobit infected with Win32.Induc
Avast and Microsoft's MSE new updates are detecting Win32.Induc virus in Glary Utilites, Iobit and possible other programs compiled with Delphi. They're not false positives. More info here.. avast! blog Win32:Induc, new concept of file infector? Infection Win32:Induc Glary Utilities Pro...
System Security


Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 20:03.

Twitter Facebook Google+



Windows 7 Forums

Seven Forums Android App Seven Forums IOS App