Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: XP Antivirus  (Read 21692 times)

0 Members and 1 Guest are viewing this topic.

evilfantasy

  • Malware Removal Specialist
  • Moderator


  • Genius
  • Calm like a bomb
  • Thanked: 493
  • Experience: Experienced
  • OS: Windows 11
Re: XP Antivirus
« Reply #45 on: August 22, 2008, 01:36:21 PM »
The program files can be backed up onto a CD or flash drive.

Try to download and run this.

Download Dial-a-Fix by djlizard, save it to the desktop then extract it to it's own folder.
  • Open the folder and run Dial-a-fix.exe
  • 2 windows will open. Close the one in the background labeled Restrictive Policies
  • On the main window, check the box in section 4, labeled SSL/HTTPS/Cryptography. The 4 boxes under it should be pre-checked
  • Check all boxes in Section 5, labeled Registration Center.
  • Click Go
  • OK any error messages if received, but write them down and post them here.
  • Restart the computer when done
Let me know if IE behaves properly.


hunt3rshadow

    Topic Starter


    Rookie

    Re: XP Antivirus
    « Reply #46 on: August 22, 2008, 01:57:10 PM »
    IE is still the same wont let me access those links you posted and it gives me strange google searches

    evilfantasy

    • Malware Removal Specialist
    • Moderator


    • Genius
    • Calm like a bomb
    • Thanked: 493
    • Experience: Experienced
    • OS: Windows 11
    Re: XP Antivirus
    « Reply #47 on: August 22, 2008, 01:58:44 PM »
    Try booting into Safe Mode and running a Full system scan with MalwareBytes.

    hunt3rshadow

      Topic Starter


      Rookie

      Re: XP Antivirus
      « Reply #48 on: August 22, 2008, 02:03:15 PM »
      Alrite that'll take me about more then an hour. So ill see you then

      mcxeb52!

      • Guest
      Re: XP Antivirus
      « Reply #49 on: August 22, 2008, 03:05:17 PM »
      if you're using xp or vista and have system restore points, I'd have just restored to an earlier date. However .... first complete the fixes that are already in place  :)

      kpac

      • Web moderator


      • Hacker

      • kpac®
      • Thanked: 184
        • Yes
        • Yes
        • Yes
      • Certifications: List
      • Computer: Specs
      • Experience: Expert
      • OS: Windows 7
      Re: XP Antivirus
      « Reply #50 on: August 22, 2008, 04:31:26 PM »
      if you're using xp or vista and have system restore points, I'd have just restored to an earlier date. However .... first complete the fixes that are already in place  :)

      It's best to follow the instuctions evilfantasy gave. ;)

      hunt3rshadow

        Topic Starter


        Rookie

        Re: XP Antivirus
        « Reply #51 on: August 22, 2008, 04:38:31 PM »
        Malwarebytes' Anti-Malware 1.17
        Database version: 856

        6:32:19 PM 8/22/2008
        mbam-log-8-22-2008 (18-32-19).txt

        Scan type: Full Scan (C:\|J:\|)
        Objects scanned: 118149
        Time elapsed: 1 hour(s), 17 minute(s), 14 second(s)

        Memory Processes Infected: 0
        Memory Modules Infected: 0
        Registry Keys Infected: 1
        Registry Values Infected: 0
        Registry Data Items Infected: 2
        Folders Infected: 0
        Files Infected: 4

        Memory Processes Infected:
        (No malicious items detected)

        Memory Modules Infected:
        (No malicious items detected)

        Registry Keys Infected:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.

        Registry Values Infected:
        (No malicious items detected)

        Registry Data Items Infected:
        HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
        HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

        Folders Infected:
        (No malicious items detected)

        Files Infected:
        C:\Documents and Settings\Richard\Local Settings\Temp\.tt1.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
        C:\Documents and Settings\Richard\Local Settings\Temp\.tt2.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
        C:\Documents and Settings\Richard\Local Settings\Temp\.tt3.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.
        C:\Documents and Settings\Richard\Local Settings\Temp\.tt4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.

        Done.

        kpac

        • Web moderator


        • Hacker

        • kpac®
        • Thanked: 184
          • Yes
          • Yes
          • Yes
        • Certifications: List
        • Computer: Specs
        • Experience: Expert
        • OS: Windows 7
        Re: XP Antivirus
        « Reply #52 on: August 22, 2008, 04:45:03 PM »
        Have you got a Hijack This log at all? Or is it that you had to type it out?

        I think it will be needed.

        evilfantasy

        • Malware Removal Specialist
        • Moderator


        • Genius
        • Calm like a bomb
        • Thanked: 493
        • Experience: Experienced
        • OS: Windows 11
        Re: XP Antivirus
        « Reply #53 on: August 22, 2008, 05:06:06 PM »
        Agreed, if we could get a HJT log at some point it would be a huge help.

        This scan can only be run in Safe Mode.

        Download SDFix by AndyManchesta and save it to your desktop.

        When using this tool, you must use the Administrator's account or an account with Administrative rights

        • Double click SDFix.exe and it will extract the files to %systemdrive%
        • (this is the drive that contains the Windows Directory, typically C:\SDFix).
        • DO NOT use it just yet.
        Reboot your computer in Safe Mode using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

        Open the SDFix folder and double click RunThis.bat to start the script.
        • Type Y to begin the cleanup process.
        • It will remove any Trojan Services or Registry Entries found then prompt you to press any key to Reboot.
        • Press any Key and it will restart the PC.
        • When the PC restarts, the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
        • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt.
        • Copy and paste the contents of the results file Report.txt in your next reply along with a new HijackThis log.

        hunt3rshadow

          Topic Starter


          Rookie

          Re: XP Antivirus
          « Reply #54 on: August 22, 2008, 05:10:42 PM »
          Yes very well, I will do as you stated BTW I cant download HJT it wont let me with the links being stupid.  Also now I know that I have indeed been effected by AntiVirus Xp 2008 when I downloaded a audio codec. I've been doing a little research and I found this:

          http://www.windowsvistaplace.com/xp-antivirus-2008-removal-instructions-xp-antivirus-2008/spyware-removal

          EDIT: I cant download SDdFix. Link is being stupid

          mcxeb52!

          • Guest
          Re: XP Antivirus
          « Reply #55 on: August 22, 2008, 09:02:04 PM »
          if you're using xp or vista and have system restore points, I'd have just restored to an earlier date. However .... first complete the fixes that are already in place  :)

          It's best to follow the instuctions evilfantasy gave. ;)

          Yeah. isn't that what I said? I'd fix it a certain way that has helped me many times but evilfantasy is already taken him so far so why stop at this point?

          kpac

          • Web moderator


          • Hacker

          • kpac®
          • Thanked: 184
            • Yes
            • Yes
            • Yes
          • Certifications: List
          • Computer: Specs
          • Experience: Expert
          • OS: Windows 7
          Re: XP Antivirus
          « Reply #56 on: August 23, 2008, 03:56:29 AM »
          Yes very well, I will do as you stated BTW I cant download HJT it wont let me with the links being stupid.

          What can you do with this PC?

          Can you go to another computer and download all these tools? If you can, do that, and copy them to a flash drive or CD or something, and run them on the infected PC.

          hunt3rshadow

            Topic Starter


            Rookie

            Re: XP Antivirus
            « Reply #57 on: August 23, 2008, 08:32:33 AM »
            Thanks to everyone's help. I just got rid of this cursed thing by running MBAM multiple times then cleaning my registry. My computer's running fine so far and the background has changed back to normal.

            kpac

            • Web moderator


            • Hacker

            • kpac®
            • Thanked: 184
              • Yes
              • Yes
              • Yes
            • Certifications: List
            • Computer: Specs
            • Experience: Expert
            • OS: Windows 7
            Re: XP Antivirus
            « Reply #58 on: August 23, 2008, 08:54:40 AM »
            It may seem fine, but the virus might be still on your computer.

            I recommend you continue with posting the logs/following our instructions etc.

            mcxeb52!

            • Guest
            Re: XP Antivirus
            « Reply #59 on: August 23, 2008, 04:13:44 PM »
            It may seem fine, but the virus might be still on your computer.

            I recommend you continue with posting the logs/following our instructions etc.

            At least for now, I'd post a new HiJackThis Log and have evilfantasy review it one more time to be sure it's clean.

            You don't want to have traces of diseases still lingering in your body that might potentially open up another problem even though you are now feeling fine and life appears to be going on normally.