AV Security Suite

View previous topic View next topic Go down

AV Security Suite

Post by craigzworld on 24th June 2010, 8:30 pm

Please help me with the AV Security Suite problem. I am not able to follow any of your downloads that you recommend before posting. A security warning pop up blocks any movement that I attempt. I have to get on line through Mozilla as a browser instead of IE. It totally blocks me on IE from doing anything on it with warnings about security alerts. My IE does pop up on its own with different porn sites and ads. When I attempt to do anything on the control panel pop up security warnings keep me from going any further. Any suggestions? My download attempts were your otl , JavaRa, and Adobe and all have been blocked by the security warning box. I have not tried any other downloads that are posted with other forums and will await your direction.

craigzworld
Beginner
Beginner

Posts Posts : 3
Joined Joined : 2010-06-23
Gender Gender : Male
OS OS : windows xp
Protection Protection : Yahoo / Mozilla
Points Points : 23623
# Likes # Likes : 0

View user profile

Back to top Go down

Re: AV Security Suite

Post by Belahzur on 24th June 2010, 9:18 pm

Download [You must be registered and logged in to see this link.] by OldTimer to your Desktop.

  • Close all windows and double click OTL.exe
  • Click Run Scan and let the program run uninterrupted
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
  • You may need to use two posts to get it all.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245079
# Likes # Likes : 1

View user profile

Back to top Go down

AV Security Suite

Post by craigzworld on 24th June 2010, 10:49 pm

Thanks for the reply. I am not able to open the OTL file on my desktop either. A pop up box says: C:\ Documents and Settings \ Administrator Desktop \ Otl.exe is not a valid win32 application. Just so you know I am not able to open almost any thing on here right now. Any alternative suggestions? javascript:emoticonp('Let me think')

craigzworld
Beginner
Beginner

Posts Posts : 3
Joined Joined : 2010-06-23
Gender Gender : Male
OS OS : windows xp
Protection Protection : Yahoo / Mozilla
Points Points : 23623
# Likes # Likes : 0

View user profile

Back to top Go down

Re: AV Security Suite

Post by Belahzur on 25th June 2010, 7:43 pm

Hello.

We need to use the RKill Tool by Grinler

[You must be registered and logged in to see this link.]

  • Please Download Rkill.com. Save it to your Desktop.
  • Before we begin, you should disable your anti-malware softwares you have installed so they do not interfere RKill running as some anti-malware softwares detect RKill as malicious. Please refer to this [You must be registered and logged in to see this link.] if you are not sure how.

  • NOTE: If you are unable to connect to the site to download rkill, then you should download it to a clean computer and copy it to the infected one via a USB flash drive or CDROM.

  • Once it is downloaded, double-click on the rkill.com in order to automatically attempt to stop any processes associated with Rogue programs.
  • Please be patient while the program looks for various malware programs and ends them.
  • When it has finished, the black window will automatically close and you can continue with the next step.
NOTE: If you get a message that rkill is an infection, do not be concerned. This message is just a fake warning given by the rogue program, when it terminates programs that may potentially remove it. If you run into these infections warnings that close Rkill, a trick is to leave the warning on the screen and then run Rkill again. By not closing the warning, this typically will allow you to bypass the malware trying to protect itself so that rkill can terminate the rogue program. So, please try running Rkill until the malware is no longer running. You will then be able to proceed with the rest of the steps.

If you continue having problems running rkill.com, you can download:
[You must be registered and logged in to see this link.] or [You must be registered and logged in to see this link.]
which are renamed copies of rkill.com, and try them instead.

Try OTL now.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245079
# Likes # Likes : 1

View user profile

Back to top Go down

Av Security Suite

Post by craigzworld on 26th June 2010, 3:44 am

Ok...finally got the rkill to kick in after a couple hours of downloading several versions to flash drive and numerous attempts to get it to work. You are correct about having to trick the malware. Now trying to get the OTL to work is the problem. I have downloaded it also on a flashdrive and attempted it in the same manner as the rkill but still no luck. Any suggestions on how to get the OTL info to you other than what I have attempted? The same above message just keeps reappearing C:\ Documents and Settings \ Administrator Desktop \ Otl.exe is not a valid win32 application. Thanks.

craigzworld
Beginner
Beginner

Posts Posts : 3
Joined Joined : 2010-06-23
Gender Gender : Male
OS OS : windows xp
Protection Protection : Yahoo / Mozilla
Points Points : 23623
# Likes # Likes : 0

View user profile

Back to top Go down

Re: AV Security Suite

Post by Belahzur on 26th June 2010, 5:05 pm

Hello.

  • Download combofix from here
    [You must be registered and logged in to see this link.]
    [You must be registered and logged in to see this link.]

    1. If you are using Firefox, make sure that your download settings are as follows:

    * Tools->Options->Main tab
    * Set to "Always ask me where to Save the files".

    2. During the download, rename Combofix to Combo-Fix as follows:





    3. It is important you rename Combofix during the download, but not after.
    4. Please do not rename Combofix to other names, but only to the one indicated.
    5. Close any open browsers.
    6. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

  • We need to disable your local AV (Anti-virus) before running Combofix.
  • See [You must be registered and logged in to see this link.] for how to disable your AV.
  • Double click on ComboFix.exe.
  • Follow the prompts. NOTE:
  • ComboFix will check to see if the Microsoft Windows Recovery Console is installed.
    ***It's strongly recommended to have the Recovery Console installed before doing any malware removal.***

    **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will automatically proceed with its scan.


  • The Recovery Console provides a recovery/repair mode should a problem occur during a Combofix run.



  • Allow ComboFix to download the Recovery Console.
  • Accept the End-User License Agreement.
  • The Recovery Console will be installed.
  • You will then get this next prompt that asks if you want to continue the malware scan, select yes



  • Allow combofix to run
  • Post C:\combofix.txt back here.

    Note:
    Do not mouseclick combofix's window whilst it's running. That may cause it to stall.


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245079
# Likes # Likes : 1

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum