Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Rogue Antivirus
#9
Note: Give me the above minidumps. I would suggest that you download everything mentioned in here first and save this page so that you can access it offline. Only connect to the Internet when necessary. Another, please do not update using Windows Update at the time being.
  • Step 10

    Download this Registry fix and run it as Administrator. It would be preferable that you download it off a clean computer and save it in a USB drive. But seeing as you can access and download from the Internet, you may opt to download it on this very machine.
  • Step 11

    Please download RKill.
    • Please chose "eXplorer.exe" and save it to your Desktop.
    • Double-click the file for it to stop any process associated with the rogue program.
    • When done, a prompt will automatically close.

      "If you get a message that RKill is an infection, do not be concerned. This message is just a fake warning given by Antimalware Doctor when it terminates programs that may potentially remove it. If you run into these infections warnings that close RKill, a trick is to leave the warning on the screen and then run RKill again. By not closing the warning, this typically will allow you to bypass the malware trying to protect itself so that rkill can terminate Antimalware Doctor. So, please try running RKill until the malware is no longer running. If you continue having problems running RKill, you can download the other renamed versions of RKill from the Rkill download page. All of the files are renamed copies of RKill, which you can try instead. Please note that the download page will open in a new browser window or tab. Do not reboot your computer after running RKill as the malware programs will start again."
  • Step 12

    System Restore maintains a backup of your programs however it may also backup infections therefore constant flushing is required to create a clean Restore Point.

    1. On the Start Menu, right-click Computer > Properties > System Protection.
    2. Click Configure.
    3. Click Delete > Continue > OK.
    4. You are now back at the System Protection Tab.
  • Step 13

    Please update and run a full scan with Malwarebytes' Anti-Malware. Make sure you are disconnected from the Internet whilst this process is on-going. After it has asked you to reboot, if infections were found, proceed to run a full scan with Avira, again with no Internet connectivity. Make sure that this is done individually.
  • Step 14

    Please do a clean installation of Firefox.

    I have noticed you have more than one profile. Please backup your bookmarks, and remove Firefox completely. Visit the enclosed path (C:\Users\Tyler\Application Data\Mozilla\Firefox\Profiles) and delete any profiles left. Then do a re-installation.
  • Step 15

    Run OTL.exe.
    • Copy and paste the following text written inside of the code box into the Custom Scans & Fixes box located at the bottom of OTL.

      Code:
      :OTL
      @Alternate Data Stream - 129 bytes -> C:\ProgramData\TEMP:07BF512B
      [2011/04/20 23:01:33 | 000,011,202 | -HS- | C] () -- C:\Users\Tyler\AppData\Local\4kegtidw7006g801m8f6f10
      [2011/04/20 23:01:33 | 000,001,618 | -HS- | C] () -- C:\ProgramData\4203139489
      [2011/04/20 23:01:25 | 000,011,202 | -HS- | C] () -- C:\ProgramData\4kegtidw7006g801m8f6f10

      :Commands
      [purity]
      [emptytemp]
      [RESETHOSTS]
      [CLEARALLRESTOREPOINTS]

    • Then click the Run Fix button at the top.
    • Let the program run unhindered, reboot when it is done.
    • Then post a new OTL log (don't check the boxes beside LOP Check or Purity this time).
  • In your next post, please provide the following:
    • A Fresh HijackThis (HJT) Log
    • Avira Scan Log
    • Deckard's System Scanner (DDS) Logs
      • DDS.txt
      • Attach.txt
    • Malwarebytes' Anti-Malware Scan Log
    • OTL Results
  • Format of Response

    Code:
    [color=#00BFFF][b]Step #[/b][/color]
    [color=#FFD700][b]Problems Encountered:[/b][/color]

    [color=#00BFFF][b]Step #[/b][/color]
    [color=#FFD700][b]Problems Encountered:[/b][/color]

    [color=#00BFFF][b]Step #[/b][/color]
    [color=#FFD700][b]Problems Encountered:[/b][/color]

    [color=#00BFFF][b]Link To Requested Logs:[/b][/color]
  • Comments:
    • Also, as to why you keep getting infected, it is either the infection still resides in the system (and a copy is in the System Volume Information), but I doubt that because you are getting new variants. Another could be because of your activity. You are clicking and visiting wrong sites.


Messages In This Thread
Rogue Antivirus - by Deltron - 04-19-2011, 11:19 PM
RE: Rogue Antivirus - by Quintus - 04-20-2011, 07:39 AM
RE: Rogue Antivirus - by Quintus - 04-20-2011, 11:40 PM
RE: Rogue Antivirus - by AceInfinity - 04-21-2011, 01:36 AM
RE: Rogue Antivirus - by Deltron - 04-21-2011, 11:18 AM
RE: Rogue Antivirus - by Quintus - 04-22-2011, 04:14 AM
RE: Rogue Antivirus - by Deltron - 04-22-2011, 05:58 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:02 AM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 02:23 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 06:05 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 06:24 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 06:46 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 06:49 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:01 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:04 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:09 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:15 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:22 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:24 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:31 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:32 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:34 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:38 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:38 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 07:48 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 07:51 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 08:06 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 08:15 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:00 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:16 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:33 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:35 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:42 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:43 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:45 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:47 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:50 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:52 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 09:55 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 09:56 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:01 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:08 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:12 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:19 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:22 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:24 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:28 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:30 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:43 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:51 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:56 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 10:57 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 10:59 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:00 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 11:02 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:10 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 11:15 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:17 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 11:21 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:28 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:36 PM
RE: Rogue Antivirus - by Quintus - 04-23-2011, 11:36 PM
RE: Rogue Antivirus - by Deltron - 04-23-2011, 11:43 PM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:06 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 12:19 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:30 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 12:39 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:43 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 12:43 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:46 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 12:48 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:50 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 12:56 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 12:58 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 01:00 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 01:02 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 01:05 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 04:03 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 06:13 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 06:29 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 08:00 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 08:17 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 09:22 AM
RE: Rogue Antivirus - by Deltron - 04-24-2011, 11:16 AM
RE: Rogue Antivirus - by Quintus - 04-24-2011, 10:56 PM
RE: Rogue Antivirus - by Deltron - 04-25-2011, 08:50 AM
RE: Rogue Antivirus - by Quintus - 04-25-2011, 10:55 PM
RE: Rogue Antivirus - by Deltron - 04-25-2011, 11:06 PM
RE: Rogue Antivirus - by Quintus - 04-25-2011, 11:12 PM
RE: Rogue Antivirus - by Deltron - 04-25-2011, 11:13 PM
RE: Rogue Antivirus - by Quintus - 04-25-2011, 11:15 PM
RE: Rogue Antivirus - by Deltron - 04-25-2011, 11:16 PM
RE: Rogue Antivirus - by Quintus - 04-25-2011, 11:37 PM
RE: Rogue Antivirus - by Deltron - 04-26-2011, 07:05 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 12:47 AM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 01:13 AM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 03:51 AM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 07:00 AM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 07:48 AM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 07:53 AM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 09:27 AM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 10:58 AM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 07:10 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 07:33 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 07:50 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 07:54 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 09:29 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 10:10 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 10:41 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 10:51 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 11:03 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 11:07 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 11:07 PM
RE: Rogue Antivirus - by Quintus - 04-27-2011, 11:23 PM
RE: Rogue Antivirus - by Deltron - 04-27-2011, 11:44 PM
RE: Rogue Antivirus - by Quintus - 04-28-2011, 12:21 AM
RE: Rogue Antivirus - by Deltron - 04-28-2011, 07:18 AM
RE: Rogue Antivirus - by Quintus - 04-28-2011, 07:33 AM
RE: Rogue Antivirus - by Deltron - 04-28-2011, 07:38 AM
RE: Rogue Antivirus - by Quintus - 04-28-2011, 08:09 AM
RE: Rogue Antivirus - by Deltron - 04-28-2011, 04:00 PM
RE: Rogue Antivirus - by AceInfinity - 04-28-2011, 04:06 PM
RE: Rogue Antivirus - by Deltron - 04-28-2011, 04:17 PM
RE: Rogue Antivirus - by AceInfinity - 04-28-2011, 04:30 PM
RE: Rogue Antivirus - by Deltron - 04-28-2011, 08:59 PM
RE: Rogue Antivirus - by Deltron - 04-29-2011, 12:21 AM
RE: Rogue Antivirus - by Quintus - 04-29-2011, 03:58 AM
RE: Rogue Antivirus - by Deltron - 04-29-2011, 07:35 AM
RE: Rogue Antivirus - by Quintus - 04-30-2011, 07:28 AM

Possibly Related Threads…
Thread Author Replies Views Last Post
  Vista security 2011 Rogue anti-virus help! Mr. Jewtastic 8 3,120 05-08-2011, 07:46 PM
Last Post: Quintus

Forum Jump:


Users browsing this thread: 10 Guest(s)