Xp AntiVirus and internet blockers

P

Paul C

The other night I accidentialy was hit with the XP Antivirus as well as some
form of software which turned off my firewall and is now blocking certian
websites on my IE explorer which is not allowings me to certian software
download sites like Mcfee, CA, MSN XP support, and most of the recomended
spyware and virus removal programs. I also notice when I do a serach in
explorere, the links are fake and they open another window.
At the same time my desktop changed to a Large Windows warning message
indicating Spyware detected on your computer. Warning
Win32/adware.Virtumonde and Win32/privacyremover.M64

I also have lost the ability of screen saver and changing my desktop
picture. This Windows warning message on my desktop wont go away. I've run
some online antivirus including the Microsoft and it found virus but didnt
clean them Help!!!!
 
T

TaurArian

http://www.bleepingcomputer.com/malware-removal/remove-xp-antivirus-2008-2009

How to remove XP Antivirus 2008, XP Antivirus 2009, and XPAntiVirus



http://www.microsoft.com/security/portal/Entry.aspx?Name=Program:Win32/XPAntiVirus



http://www.microsoft.com/security/portal/Entry.aspx?Name=Program:Win32/Antivirus2008



http://www.microsoft.com/security/portal/Entry.aspx?Name=Program:Win32/Antivirus2009



For further assistance try this NG -



Security - Viruses
OE client -
news://msnews.microsoft.com/microsoft.public.security.virus
or

Web client -
http://www.microsoft.com/communitie...e99-3241-4584-87eb-b55d8ffb3c8c&lang=en&cr=us


--

TaurArian [MVP] 2005-2009 - Update Services
http://taurarian.mvps.org
======================================
How to ask a question: http://support.microsoft.com/kb/555375
Computer Maintenance: Acronis / Diskeeper / Paragon / Raxco
 
N

nass

Paul C said:
The other night I accidentialy was hit with the XP Antivirus as well as some
form of software which turned off my firewall and is now blocking certian
websites on my IE explorer which is not allowings me to certian software
download sites like Mcfee, CA, MSN XP support, and most of the recomended
spyware and virus removal programs. I also notice when I do a serach in
explorere, the links are fake and they open another window.
At the same time my desktop changed to a Large Windows warning message
indicating Spyware detected on your computer. Warning
Win32/adware.Virtumonde and Win32/privacyremover.M64

I also have lost the ability of screen saver and changing my desktop
picture. This Windows warning message on my desktop wont go away. I've run
some online antivirus including the Microsoft and it found virus but didnt
clean them Help!!!!

Try to download the tools and software from another pc on a CD/DVD and
install on your machine and run a through scan.

Go through these Cleaning steps:
1... First, try to clean up your caches, Internet files and delete cookies
by doing this:
Click Start >> Control Panel >> Double click Network and Internet
Connections >> Double click Internet Options.
On the IE properties windows you will see these Tabs:
General | Security | Privacy | Content | Connections | Programs |
Advanced
Under General Tab clear your History, Internet Files and Cookies.
Then click on Advanced tab and scroll down to under the Browsing Option:
[&] Browsing
[ ] Enable Third-Party browser extensions (Req Rest) uncheck this box.
Then click on Programs Tab and click Manage Add-Ons and Disable all non
Verified Add-Ons (You should Renable them later one-by-one and see the
culprit and update it or remove it.
How to manage Add-Ons:
http://support.microsoft.com/kb/883256
Scan for malware from here:
SuperAntispyware - Free
http://www.superantispyware.com/superantispywarefreevspro.html
Download, install and run a full scan with Malwarebytes
http://www.malwarebytes.org
Run a scan from here on-line:
http://security.symantec.com/sscv6/default.asp?langid=ie&venid=sym
http://www3.ca.com/securityadvisor/virusinfo/scan.aspx
Download Avast Cleaner (offline scanner) from here:
http://www.avast.com/eng/avast-virus-cleaner.html

Run disk clean up on your Drive.
You can download this tool o run clean up:
http://www.ccleaner.com
Comodo BOClean : Anti-Malware Version 4.27
http://www.comodo.com/boclean/boclean.html
download Hijackthis and send me the log.
(http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php)
Send me copy to my address is : to_you_ross(at remove this and repalce with
the
obvious)yahoo.co.uk

( _ is underscore)
HTH
nass
 
P

PA Bear [MS MVP]

Don't download anything from this MVP Imposter's website!

@Chris: Take another van ride.
 
P

PA Bear [MS MVP]

Don't download anything from this MVP Imposter's website!

@Chris: Take another van ride.
 
M

Malke

The said:
Use my Remove-it software, it will remove that malware from your system.
Choose yes for all options when prompted. Download it here
http://pcbutts1.com/downloads/tools/tools.htm

I'm so sorry that you haven't recovered from your accident, Chris.
Apparently the horror of going off a cliff has caused you to think you are
an MS-MVP when you aren't. Nor should anyone download files from a website
which hosts pr0n.

Malke
 
D

David H. Lipman

From: "PA Bear [MS MVP]" <[email protected]>

| Don't download anything from this MVP Imposter's website!

| @chris: Take another van ride.
| --
| ~Robear Dyer
| MS MVP-IE, Mail, Security, Windows Desktop Experience
| https://mvp.support.microsoft.com/default.aspx/profile/robear.dyer

Right!

It will block legitimate anti malware sites just like the malware he is trying to remove !

From "his" plagiarized and bastardized hosts file...

127.0.0.1 www.it-mate.co.uk
127.0.0.1 it-mate.co.uk
127.0.0.1 mysteryfcm.co.uk
127.0.0.1 www.internetinspiration.co.uk
127.0.0.1 www.mvps.org
127.0.0.1 bughunter.it-mate.co.uk
127.0.0.1 www.bughunter.it-mate.co.uk
127.0.0.1 www.siri.geekstogo.com
127.0.0.1 siri.geekstogo.com
127.0.0.1 siri.urz.free.fr
127.0.0.1 www.siri.urz.free.fr
127.0.0.1 noahdfear.geekstogo.com
 
P

Paul C

Thanks for the advise, I recovered with the help of the group.
Thanks Much.


nass said:
Paul C said:
The other night I accidentialy was hit with the XP Antivirus as well as some
form of software which turned off my firewall and is now blocking certian
websites on my IE explorer which is not allowings me to certian software
download sites like Mcfee, CA, MSN XP support, and most of the recomended
spyware and virus removal programs. I also notice when I do a serach in
explorere, the links are fake and they open another window.
At the same time my desktop changed to a Large Windows warning message
indicating Spyware detected on your computer. Warning
Win32/adware.Virtumonde and Win32/privacyremover.M64

I also have lost the ability of screen saver and changing my desktop
picture. This Windows warning message on my desktop wont go away. I've run
some online antivirus including the Microsoft and it found virus but didnt
clean them Help!!!!

Try to download the tools and software from another pc on a CD/DVD and
install on your machine and run a through scan.

Go through these Cleaning steps:
1... First, try to clean up your caches, Internet files and delete cookies
by doing this:
Click Start >> Control Panel >> Double click Network and Internet
Connections >> Double click Internet Options.
On the IE properties windows you will see these Tabs:
General | Security | Privacy | Content | Connections | Programs |
Advanced
Under General Tab clear your History, Internet Files and Cookies.
Then click on Advanced tab and scroll down to under the Browsing Option:
[&] Browsing
[ ] Enable Third-Party browser extensions (Req Rest) uncheck this box.
Then click on Programs Tab and click Manage Add-Ons and Disable all non
Verified Add-Ons (You should Renable them later one-by-one and see the
culprit and update it or remove it.
How to manage Add-Ons:
http://support.microsoft.com/kb/883256
Scan for malware from here:
SuperAntispyware - Free
http://www.superantispyware.com/superantispywarefreevspro.html
Download, install and run a full scan with Malwarebytes
http://www.malwarebytes.org
Run a scan from here on-line:
http://security.symantec.com/sscv6/default.asp?langid=ie&venid=sym
http://www3.ca.com/securityadvisor/virusinfo/scan.aspx
Download Avast Cleaner (offline scanner) from here:
http://www.avast.com/eng/avast-virus-cleaner.html

Run disk clean up on your Drive.
You can download this tool o run clean up:
http://www.ccleaner.com
Comodo BOClean : Anti-Malware Version 4.27
http://www.comodo.com/boclean/boclean.html
download Hijackthis and send me the log.
(http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php)
Send me copy to my address is : to_you_ross(at remove this and repalce with
the
obvious)yahoo.co.uk

( _ is underscore)
HTH
nass
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top