Reply
Newbie
roger_parette
Posts: 1
Registered: ‎06-26-2008

Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

Need help in removing the Vista Antivirus 2008 from our pc running XP.

 

Need your suggestions.

 

Why can't Norton 360 find and remove?

 

Best regards,

 

Roger Parette

Tony_Weiss
Posts: 7,361
Topics: 499
Kudos: 1,523
Solutions: 280
Registered: ‎04-07-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

Firstly, I would review the steps listed in How To Troubleshoot a Suspected Malware Infection and follow them until the malware was removed:

 

http://community.norton.com/norton/board/message?board.id=Announcements&thread.id=9&jump=true

 

Then, I would review the website below for information on Misleading Applications:

 

http://www.symantec.com/norton/theme.jsp?themeid=mislead

 

Many times, Misleading Applications are blended threats that deliver other malware to your system, that are designed to try to disable your current security software. Without knowing the specifics of your situation, it's difficult to speculate how this happened, except that you saw a popup for the VistaAntivirus2008 and installed this program. Please let me know if you have questions about the above steps, or if you have already tried these steps and the problem still exists. Thanks!

Tony Weiss
Norton Forums Global Community Manager
Symantec Corporation
Newbie
nabman
Posts: 7
Registered: ‎07-26-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

I have followed these instructions, along with the Vista Antivirus 2008 manual removal instructions found elsewhere on this forum. I am not having any luck though as the virus has disabled task manager on me. Norton 360 says that it has detected a threat that needs me to perform some manual tasks to remove it. When I click on the button for details, or for help with this task, nothing happens. I have had this virus on my system for over a week now and am at my witts end. Please, can anyone give me any more suggestions?
Super Spam Squasher
johna
Posts: 918
Registered: ‎07-01-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

[ Edited ]
Can you run a Kaspersky Onlin Scan and send me the logs in a PM  please? We will try to resolve this for you.

Message Edited by johna on 07-26-2008 05:03 AM
Super Spam Squasher
cgoldman
Posts: 2,929
Registered: ‎06-25-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

[ Edited ]

Follow Johna's advice and look for a Private Message at the top right of the thread

Also worth looking here

external link

If there is something you cannot do in any of the instructions, these or others, just let us know.

Message Edited by cgoldman on 07-26-2008 01:43 PM
Newbie
nabman
Posts: 7
Registered: ‎07-26-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

I am running Kaspersky's Online Scanner as I type this message... I am not feeling to positive about it working however. I have found various other sets of manual removal instructions during my searches... the problem is that this Vista Antivirus 2008 has somehow disabled all my administrative powers on my machine and made itself a "Super User". I seem to have less control over my system than if I were logged in on the guest account. :(

 

If anyone else has any other suggestions I, and I am sure there are others out there too, would love to hear them.

 

Thanks again for the help 

Newbie
nabman
Posts: 7
Registered: ‎07-26-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

I just got home and Kapersky is finished with it's scan. It found one threat on my F: drive, but nothing serious. I thought this was sort of odd but then I noticed that my C: no longer shows up. I know that it is there because that is where my OS is installed, but once again it would seem my privileges have been removed by this extremely frustrating virus. Has anyone else out there been able to best this virus yet?
Super Spam Squasher
johna
Posts: 918
Registered: ‎07-01-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

[ Edited ]

We should be able to get rid of this for you. Did you mean the Kaspersky scan would not scan your C drive? Did you click on My Computer for the scan? If so, can you please go into 'Safe Mode with Networking' and run the Kaspersky Online Scan again, then save the logs to your desktop, where you can retrieve them.

 

Let us know if you are unable to perform the above. Thanks

 

Edit: Try the solution in my post below before trying the above.

Message Edited by johna on 07-27-2008 11:10 PM
Super Spam Squasher
cgoldman
Posts: 2,929
Registered: ‎06-25-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

If you take the external link I provided and follow the instructions for removal, can you advise if you were succcessfuly or not, and/or where you had trouble. If you cannot rely upon a scanner or its does not work, you have to do this manually or try another scanner. You did not make clear whether you tried Microsoft onecare.

 

I appreciate how difficult this is. A virus has either got to be loaded on reboot or it has infected a core file.

 

Try installing procexp and autoruns from Microsoft. Procexp should kill processes and autoruns can kill anything loaded at reboot programs or services.

Super Spam Squasher
johna
Posts: 918
Registered: ‎07-01-2008

Re: Vista Antivirus 2008 - How to remove this virus? Why can't 360 find and remove?

[ Edited ]

OK, here is another solution you may try in the meantime. Method: Link . Note: Do full scan not quick scan as advised. You can perform this in Safe Mode with Networking if you like.

 

This should fix the problem. You may also want to check for and delete the associated files and registry values shown at the end of the written instructions if they are still present on your PC.

 

Also, you may want to download and run Hijack this and delete these values if they are still present::

 

O4 - HKCU\..\Run: [Antivirus] C:\Program Files\Antivirus 2008\Antvrs.exe
O4 - HKCU\..\RunOnce: [3P_UDEC] "C:\Documents and Settings\forensics\Desktop\AtnvrsInstall.exe" 0;C;
O4 - HKCU\..\Run: [Antivirus2008y] C:\Program Files\Antivirus2008y\antvrs.exe

 

Let us know.

 

  .

Message Edited by johna on 07-27-2008 11:05 PM