This HP Community is for Customer to Customer Product Support. First Time Here? Check Out Videos on How to Search, Register, Post and More.

Re: Win32/Anomaly.gen!A in D: (recovery partition) (239 Views)
Reply
Student
ablereach
Posts: 1
Registered: ‎02-08-2012
Message 1 of 2 (264 Views)

Win32/Anomaly.gen!A in D: (recovery partition)

Microsoft Security Essentials finds Win32/Anomaly.gen!A on my HP G72-C55DX Windows 7 notebook, over and over again. There is some talk in the Microsoft Security Essentials help area about it possibly being a false positive, but I want more information before I accept a best-guess answer about "Severe" threat that is "dangerous and executes commands from an attacker."

 

Microsoft Security Essentials says it's here:

 

containerfileD:\preload/base.wim

fileD:\preload\base.wim-> (Image58595)\SwSetup\HGUS\WT\src\bits\WT\games\plantsvzombies-oem.exe->(nsis-3-Plants vs. Zombies-WT.exe)->(EXEEmb)->(EXEEmb)->(EXEEmb)->(EXEEmb)->(EXEEmb)->(EXEEmb)->(EXEEmb)->(EXEEmb)

file:smileyvery-happy:\preload\base.wim->(Image7328)\Program Files (x86)\HP Games\  (last part of this line removed so this form would let me post)

 

I've normally been a build-your-own person, so I have some basic questions about recovery partitions.  I haven't even looked in there.

 

Is it possible to delete games from the recovery partition?

 

If not, is there anything wrong with deleting the whole D drive?  Other needing to do a fresh backup without it, I mean. 

 

Could I still restore a backup that is taken without the D drive being present... or does what's in D include whatever tells Microsoft my installation of Windows is genuine?

 

Otherwise, I have OS install discs that are not OEM. 

Please use plain text.
Regents Professor
Mumbodog
Posts: 10,849
Registered: ‎01-11-2010
Message 2 of 2 (239 Views)

Re: Win32/Anomaly.gen!A in D: (recovery partition)

Its a false positive, I see this for many scanners, HP games uses Wild Tangent which is considered spyware by most scanners, but is in essence harmless.

 

Make your recovery discs, then it is ok to delete the D partition.

 

W7 recovery discs

http://h10025.www1.hp.com/ewfrf/wc/document?cc=us&lc=en&docname=c01895783#WhenCreate

 

Vista Recovery discs

http://h10025.www1.hp.com/ewfrf/wc/document?lc=en&dlc=en&cc=us&lang=en&rule=69&product=3696841&docna...

Please use plain text.