Antivirus XP 2008


trbon2001 wrote:

Hi, I have followed the instructions just as Astinkilgj did down to the item#4 which is deleting registry entries and subkeys.  At this part I cannot see any reg entries that resemble the ones mentioned and there are many entries.  I am stumped!  Could it be that items 1-3 in the cleanup process were sufficient enough?  Please advise me as I am desperate to rid myself of this virus.  Thanks Teri


 

Have you Updated your Norton Product via LiveUpdate and Run a Full System Scan in Safe Mode as well as trying the Web Link?

Hi Floating_Red,

Apologies if I confused you.  As per my earlier response...

 

Believing the offending image to be a desktop background I searched the Windows background folder and all .jpg files on my computer...no luck.  Searched for all .bmp files and sorted the files for date created.  The image was the last .bmp file created on the computer.  Deleted the file and all is now OK.

Thanks again to everyone for your help.

 

My PC is clean and operating normally.  Thanks again.


Astinkilgj wrote:

Hi Floating_Red,

Apologies if I confused you.  As per my earlier response...

 

Believing the offending image to be a desktop background I searched the Windows background folder and all .jpg files on my computer...no luck.  Searched for all .bmp files and sorted the files for date created.  The image was the last .bmp file created on the computer.  Deleted the file and all is now OK.

Thanks again to everyone for your help.

 

My PC is clean and operating normally.  Thanks again.


 

Hello,

   So the Desktop Image has gone that you had from the Mis-leading Application...?

Yes I ran liveupdate after I downloaded 2008 yesterday and ran a full system scan in safe mode as well.  I followed the 4 step clean up instructions but I cannot find any of the offending registries at all.  But when I restore my system to normal mode etc, I still cannot access any norton however the Warning image is gone.  I think my next step is to try malware download, would you agree?

You could try Norton AntiBot Trailware, or you could Download and Install the Anti-Malware Download that Phil_D Posted.

Hi again, I downloaded/installed malwarebytes and ran it, it found 9 issues, mostly trojans and deleted them successfully.  Many were in the registry which I did not find.  I’m unclear what do do now!  I’m still in safe mode, what would you recomm as the next step?  Thanks SO much for your advice. 

Boot in to Normal Mode.  If your computer still runs un-smoothly, follow the rest of the Steps in the Removal of AntiVirusXP2008.

trbon2001,

 

I just want to confirm that when you followed the earlier link provided by Floating_Red, you would have been instructed to TURN OFF System Restore. That is a crucial part of the fix in that link.  System Restore may have backed up the infected files and they could resurface again. By turning off System Restore, you delete all previous restore points (and any subsequent infections that may have been backed up there).

 

Best Wishes,

 

Phil

How do you know if your computer has been successfully cleaned?  Thanks

trbon2001,

 

Someone else may have a more definitive answer, however IMHO there are a few things you can do.

 

1) Be sure you have erased all previous restore points by turning off system restore. Once you are sure everything is cleaned, you can turn System  Restore back on again.

2) Again, delete all temporary internet files, cookies and history.

3) Go to "START" >"Run" and type in:   %temp%   click Okay and delete all of those temporary files.

4) Manually Run Live Update for NIS 2008 and do another full system scan in both Safe Mode and Normal Mode.

5) Update the definitions for Malwarebytes and do another full system scan in both Safe Mode and Normal Mode.

6) If all scans report that your computer is clean, then:

7) Observe your computer over the next few days making sure that everything is performing normally.

 

I generally advise against using your computer for any online purchases or financial transactions until you are certain there are no more issues left.

 

The folks on this forum have suggested reliable and proven removal tools,  so don't be tempted to download something else to check your computer - you may be asking for more trouble.

 

At the first sign of any suspicious behavior i.e. Website redirects, sluggish functioning, high CPU usage or anything else unusual get back to us and we'll try to help.

 

Last, but not least - do not click on unknown warnings which may appear in the future. The infection you had, Antivirus XP 2008 is user initiated.  A fake message appears notifying the user that they are infected and that the cure is just a "click away".  As soon as the user clicks, the infection is downloaded.

 

Best Wishes,

 

Phil

Message Edited by Phil_D on 08-22-2008 10:46 PM