Everytime I run "scan my computer" using the webroot secureanywhere complete I get "4" threats removed (see image). How can I find out which "threats" were removed. I have saved the scan log. Can somebody help me?
Best answer by RetiredTripleHelixView original
If you open WSA by double left clicking on the Tray Icon and click on PC Security Tab and then Click on the Quarantine Tab and then click on View Quarantine you will see what's Listed There!
Mon 06-08-2012 23:31:50.0034 Infection detected: c:usersdanieldownloads20120806-200635_amazon_invoice_n882835.zip/amazon_invoice_n88238835.exe [MD5: 3E70A1E265CD3069D989A92D7072B302] [3/00000021] [W32.Malware.Gen]
Great screen shot.. it tells me a lot. The number of infected PC's is 0, while the number infected over the last 24 hours is 1. That means WSA DID remove the infection.
As for finding what the threat was.. you are very close to it right there on that screen shot. Log back into your Console, and click that button PC Security on your screen shot.
In here, click on the computer that was infected.
A new mini window will open. At the top tabs, click on Scan Information.
In this tab, there will be sub-tabs. Click on Recent Malicious Filed Detected.
This will show you the history of the last 10 infected files removed by WSA, both the file name and the infection removed.
I hope this helps. If you have any questions, please let us know!
To add what David said you can always Save a Scan Log to see what infections were removed at the bottom of the log.
ProTruckDriver's response, I believe, should be answering your other question regarding "which threats" those were.
I'm aware of what I'm seeing is the scan results screen. I guess you didn't really read my question:
>>How can I find out which "threats" were removed. I have saved the scan log. Can somebody help me?
so I'm worry about these 4 threats comming back and not showing in the quarantine section.... any ideas?
ohhhhh! I didn't know that the "threats removed" were historical information... I always thought it was based on the scan results! this is nice to know!!!!
I'm still curious of ProTruckDriver tip... I will save the log and look into it. I will post my findings later on....
Thanks JimM and ProTruckDriver
I downloaded a file this morning that had W32.Malware.Gen in it, and Webroot says it removed it. I go to the web console, though, and I see this:
Does this mean that my computer is infected? I've seen the threat in the web console log, but it's not showing up in the quarantine and I'm more than a little bothered. Can someone tell me if W32.Malware.Gen has been removed from the computer??