You are viewing our Forum Archives. To view or take place in current topics click here.
C:\Windows\SysWOW64\grpconv.exe
Posted:

C:\Windows\SysWOW64\grpconv.exePosted:

0141
  • Blind Luck
Status: Offline
Joined: Feb 03, 201014Year Member
Posts: 8,036
Reputation Power: 1128
Status: Offline
Joined: Feb 03, 201014Year Member
Posts: 8,036
Reputation Power: 1128
So I ran rkill and when it finished I got this in the log.

This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 13/07/2011 at 18:58:45.
Operating System: Windows 7 Home Premium


Processes terminated by Rkill or while it was running:

C:\Windows\SysWOW64\grpconv.exe


Rkill completed on 13/07/2011 at 18:58:57.


Anything to worry about it? I'm not sure what it is...
#2. Posted:
TicketCat
  • TTG Fanatic
Status: Offline
Joined: Aug 22, 201013Year Member
Posts: 4,426
Reputation Power: 261
Status: Offline
Joined: Aug 22, 201013Year Member
Posts: 4,426
Reputation Power: 261
I dontbthink it will hurt your computer mate.
#3. Posted:
TicketCat
  • TTG Fanatic
Status: Offline
Joined: Aug 22, 201013Year Member
Posts: 4,426
Reputation Power: 261
Status: Offline
Joined: Aug 22, 201013Year Member
Posts: 4,426
Reputation Power: 261
The site may be infected but it's not a Trojan when downloaded sorry for misleading info


Last edited by TicketCat ; edited 2 times in total
#4. Posted:
skatertg
  • Retired Staff
Status: Offline
Joined: Jan 20, 201014Year Member
Posts: 8,013
Reputation Power: 2165
Status: Offline
Joined: Jan 20, 201014Year Member
Posts: 8,013
Reputation Power: 2165
If you can't find the answer on the internets, ask this user ohara - RDCAx

He knows a lot about removing malware.
#5. Posted:
Didact
  • TTG Contender
Status: Offline
Joined: May 12, 200914Year Member
Posts: 3,544
Reputation Power: 190
Status: Offline
Joined: May 12, 200914Year Member
Posts: 3,544
Reputation Power: 190
Rkill Stops Malware on Computer for Removal by Anti-Malware.

grpconv.exe is a Windows Operating System tool. It is used to convert Windows 3.1 groups to folders when upgrading to Windows 95 or later. This program is important for the stable and secure running of your computer and should not be terminated.
grpconv.exe is a system process that is needed for your Windows system to work properly. It should not be removed.

Source:
[ Register or Signin to view external links. ]
#6. Posted:
Chunkuh
  • TTG Senior
Status: Offline
Joined: Mar 21, 201113Year Member
Posts: 1,659
Reputation Power: 111
Status: Offline
Joined: Mar 21, 201113Year Member
Posts: 1,659
Reputation Power: 111
I've added this process to my list of processes in the sticky topic.

Forums/p=11729234.html#11729234

It doesn't seem as if this is anything to worry about but my top tip is always if you ever have a thought you might be infected, do a scan. It'll be better in the long run if you do have one.

I suggest downloading MalwareByte's Anti-Malware, it's a really useful tool.

Hope I helped.
#7. Posted:
Stealth
  • 1000 Thanks
Status: Offline
Joined: Aug 07, 200914Year Member
Posts: 4,469
Reputation Power: 316
Status: Offline
Joined: Aug 07, 200914Year Member
Posts: 4,469
Reputation Power: 316
[ Register or Signin to view external links. ] This is a scan and it actually works.
Also:
Sometimes RKill terminates processes that interfere with it.
Just download it and run a scan. Then once complete simple delete the file in control panel>uninstall/delete program files.
Hope I helped.
#8. Posted:
bigwu
  • New Member
Status: Offline
Joined: Aug 23, 201112Year Member
Posts: 1
Reputation Power: 0
Status: Offline
Joined: Aug 23, 201112Year Member
Posts: 1
Reputation Power: 0
here is the message i got from rKil:

This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.

Rkill was run on 08/23/2011 at 22:24:12.
Operating System: Windows 7 Home Premium


Processes terminated by Rkill or while it was running:

C:\Windows\SysWOW64\InfDefaultInstall.exe
C:\Windows\SysWOW64\runonce.exe


Rkill completed on 08/23/2011 at 22:24:16.

I assume that whatever this is it is preventing me from booting up in anything other than safe mode. I have Spybot S&D, Malwarebytes..., Webroot Anitvirus..., nothing works. About every third scan from Webroot picks up some trojan virus and claims it is quarantined, but it comes right back. I don't know what else to. Please help if you can.
Jump to:
You are viewing our Forum Archives. To view or take place in current topics click here.