Announcement

Collapse
No announcement yet.

Antivir got my desktop

Collapse
This topic is closed.
X
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Antivir got my desktop

    I need help this damn thing has changed proxy settings, killed any way to access the computer and made all files "infected". Managed to stop it once when loading but it reinfected quickly. My backup drive even got it so wiping the machine will cost Mom and I a lot in programs. What else can I do?

    It runs winXP but for right now that's all I know.

  • #2
    Do a rollback.

    Start menu, programs, accessories, system tools, restore.

    Go back about a week
    this rolls back registry settings, some data, but not much

    Do you have a copy of CCleaner handy? Use that to clean out temp files/fix registry
    Also get AntiMalwareBytes
    In my heart, in my soul, I'm a woman for rock & roll.
    She's as fast as slugs on barbituates.

    Comment


    • #3
      Ran ccleaner when I managed to stop antivir from starting once. Dang did it find a lot of stuff.


      Cross your fingers for me I need the luck

      Comment


      • #4
        Desktop works somewhat, cleaner and AMB keep going back and forth finding new stuff after the other runs. Good news it's down to six minuets for startup.

        Comment


        • #5
          Try running SUPER antispyware.
          SC: “Yeah, Bob’s Company. I'm Bob. It's my company.” - GK
          SuperHotelWorker made my Avi!!

          Comment


          • #6
            Did you run these cleaners in Safe Mode?

            Start, F8, Safe mode, run the cleaners.
            In my heart, in my soul, I'm a woman for rock & roll.
            She's as fast as slugs on barbituates.

            Comment


            • #7
              Try running MalwareBytes and and SUPERAntiSppyware in safe mode.

              BTW, the rogue you got infested with is officially known as "AntiVir System Pro." Must really gall the makers of the legit Antivir.

              Comment


              • #8
                Quoth sld72382 View Post
                Try running MalwareBytes and and SUPERAntiSppyware in safe mode.

                BTW, the rogue you got infested with is officially known as "AntiVir System Pro." Must really gall the makers of the legit Antivir.
                Two different suggestions for this, but I thought this was a phony program, kind of like the Antivirus 20xx versions.

                I've looked at the site google pulls up for it, and it looks like they have a portable version, which would be a nice addition to my tools.

                Make me feel better and say it's a good thing.


                Eric the Grey
                In memory of Dena - Don't Drink and Drive

                Comment


                • #9
                  I was gonna say...

                  AntiVir, referred to by the newer name, Avira, is one kick-butt AV package, developed by one kick-butt bunch of Herrs und Fraus!

                  You know you've made the big time when:
                  - Weird Al parodies your song
                  - You get a DMCA take-down notice about your YouTube video
                  - Your server gets Slashdotted
                  - There's a fake AV named after yours

                  So, in a way, "It's a Good Thing®"!

                  Now, as for the Avira Rescue CD, I've had some hit-and-miss issues with it. Sometimes, I've had it boot with scrambled video, had it lockup trying to load the network driver, and just plain had it fail to boot. Otherwise, the only caveat was that it defaults to German (click on the Union Jack to set English). My luck so far has been about 50/50. I'm hoping for a flash drive version, soon.

                  My preferred method is to take the infected drive out, pop it on a USB-SATA/IDE cable, and use a clean machine with the latest Avira/MBAM to scan. It takes longer (USB 2.0 speeds), but it gets the job done.

                  barcode

                  Comment

                  Working...
                  X