|  RSS

PC World Forums: Virus - "Antivirus System Pro" - PC World Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Virus - "Antivirus System Pro"

#1 User is offline   rbristow Icon

  • Newbie
  • Pip
  • Group: Members
  • Posts: 6
  • Joined: 07-March 08

Posted 08 May 2009 - 10:24 AM

Cannot remove "Antivirus System Pro". Updating and running Norton and Malwarebytes Anti-Malware does not help.
Ideas please.
Thanks
0

#2 User is offline   techie4fun Icon

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 2,838
  • Joined: 18-October 06

Posted 08 May 2009 - 11:18 AM

Have you tried scanning in Safe Mode? It is possible that you're going to need more than your current scanners to defeat this, but please specifiy if you've tried running Safe Mode, and if you want instructions on how to do so.
0

#3 User is offline   coastie65 Icon

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 10,334
  • Joined: 02-April 07
  • Location:Richmond Va.

Posted 08 May 2009 - 11:44 AM

Hi, I am familiar with that thing. I ran across it the other day on a site that had been Hijacked. It wouldn't let me navigate out of the site without downloading, which i didn't. had to do a shut down through the device manager. Anyway, download, upadate, and run the following: www.malwarebytes.org & www.SUPERantispyware.com . coastie
0

#4 User is offline   rbristow Icon

  • Newbie
  • Pip
  • Group: Members
  • Posts: 6
  • Joined: 07-March 08

Posted 08 May 2009 - 01:04 PM

Tried Safe Mode but no results. It did however discover trojian.vundo. I am trying to deal with that also. Will let you know.

thanks
0

#5 User is offline   rbristow Icon

  • Newbie
  • Pip
  • Group: Members
  • Posts: 6
  • Joined: 07-March 08

Posted 08 May 2009 - 01:09 PM

Downloading now and will try it.

New problem - trojan.vundo. Have you dealt with that?

Thanks
0

#6 User is offline   coastie65 Icon

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 10,334
  • Joined: 02-April 07
  • Location:Richmond Va.

Posted 08 May 2009 - 01:27 PM

Yep. SUPERantispyware should take care of it. Don't forget to update the stuff before you run it.
0

#7 User is offline   rbristow Icon

  • Newbie
  • Pip
  • Group: Members
  • Posts: 6
  • Joined: 07-March 08

Posted 08 May 2009 - 03:04 PM

Yea! The Superantispyware worked.

Thanks
0

#8 User is offline   rbristow Icon

  • Newbie
  • Pip
  • Group: Members
  • Posts: 6
  • Joined: 07-March 08

Posted 08 May 2009 - 03:05 PM

Thanks again for the help. I had forgotten Safe Mode.
0

#9 User is offline   coastie65 Icon

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 10,334
  • Joined: 02-April 07
  • Location:Richmond Va.

Posted 08 May 2009 - 03:10 PM

Hi, It's best not use safe mode when running scans. The one possible exception is if it is a memory resident type thing. You might want to run a scan with malwarebytes as well. coastie
0

#10 User is offline   bbvammy Icon

  • Advanced Member
  • PipPipPipPip
  • Group: Members
  • Posts: 393
  • Joined: 19-January 09

Posted 08 May 2009 - 04:05 PM

When you are in a site that you "HAVE TO" download, unplug the internet. ]:)
0

#11 User is offline   coastie65 Icon

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 10,334
  • Joined: 02-April 07
  • Location:Richmond Va.

Posted 08 May 2009 - 04:13 PM

With that thing, the only way to do it is through the Task Manager and doing a restart. It would not let you navigate from the site without first downloading it. I guess a hard shutdown will work in a pinch.
0

#12 User is offline   techie4fun Icon

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 2,838
  • Joined: 18-October 06

Posted 08 May 2009 - 04:17 PM

Glad to hear that everything is sorted out.
0

#13 User is offline   smax013 Icon

  • Moderator
  • PipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 9,083
  • Joined: 28-January 07
  • Location:Southeast Michigan

Posted 08 May 2009 - 10:27 PM

coastie65 said:

Hi, It's best not use safe mode when running scans. The one possible exception is if it is a memory resident type thing. You might want to run a scan with malwarebytes as well. coastie


I will agree and disagree. In general, you should not need to run scans in Safe Mode...until you find something. Once you find something in a scan, it is generally a good idea to boot up in Safe Mode and scan again after you run the initial scan and have tried to remove stuff in "regular mode".
0

#14 User is offline   Flashorn Icon

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 2,848
  • Joined: 19-May 07
  • Location:Canada

Posted 09 May 2009 - 03:39 AM

Hey Everyone !!



It is always easier to remove such Rogues with the right tools.

It is also easier to remove them in Normal mode for the simple

reason that the scanners that we use rely on the active processes.



In this case, when a Trojan Vundo is found , VundoFix should

have been used to remove all of the infected processes , files and

registry keys.



If a .TDSS extension is found, then you would need the help of specialized tools

such as ComboFix or SDFix .

A few words of caution!! These are Not toys and should be used with the help

of a trained malware removal expert. Both of these tools are NOT to be used with Vista.

They will leave you without a Operating System.



FLASHORN. !http://forums.pcworld.com/legacyimages/
1!
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users