Hi, I have a virus I can’t seem to remove every time I boot up when I get to my desktop avast is flashing virus
so I do the recommended action and put it in the chest,but when I restart my computer its there again,
this is what avast says Malware name VBS:Malware-gen type virus/warm VPS version 071103-0 11/03/2007
I have done a male scan with spy-bot search and destroy and found and removed a allot of stuff,
I have winxp
Start with a boot time scan. Move anything found to the chest. You can schedule a boottime scan from the menu on the simple user interface. (right click the “a” icon, start avast, right click on the skin)
After the boot time scan is complete and you are up and running, again do the following and post the results of the boot time scan.
Create a new restore point
You must be logged on to an administrator account
Go to Start - All Programs - Accessories - System Tools System Restore.
Click Create a restore point, and then click Next.
In the text box labeled Restore Point Description, type a name for this restore point
Remove old restore points
Disk Cleanup - Launch the Disk Cleanup tool and then select the more options tab. On this tab you will find a section for System Restore. If you press the Clean Up button for that section, Windows will delete all restore points except for the most recent one.
thanks for the prompt reply I did the boot scan, after the scan avast showed the same virus
I did what said about system restore, but its still the same when I boot up its showing the same virus, I move it to the chest, restart its there again it doesn’t seem to effect what I’m doing with the computer but it is worrying every time I boot up its there.
Hi Desperate-Dan,
Here are some more free anti-malware scanners you can try:
Look for and remove rootkits (hidden malware):
Panda Antirootkit
Blacklight
AVG Anti-Rootkit
Try a scan with DrWeb CureIT!
Try the usual free adware/spyware scanners.
AVG Anti-Spyware Free (Requires Win2k/XP)
Ad-Aware Free
SUPERAntiSpyware Free
a-Squared Free
Download, install and update the programs. Disconnect from the internet (pull the plug) before running scans in Safe Mode if possible.
Always select the option to quarantine any malware found rather than delete it, then you will be able to restore files or registry entries wrongly identified as malware- a rare but not unknown event for any malware scanner.
Try some online scans. (Disable avast! while scanning.)
F-Secure
BitDefender
Panda
Trend Micro Housecall
When you have finished, scan for out-of-date and insecure software using Secunia Software Inspector and update any vulnerable software: this will help to prevent future infections.
Brilliant , curit did the trick,I’ve updated every thing on my computer,
thanks again for your help and time, I’m one happy chappy ;D
I do recommend Panda antirootkit for XP (does not work on Vista).
But I do NOT recommend its online scanning due to its leftovers.
Thanks for that, I have winrar I got it to open a rar file but now it seems to want open all the files I download I don’t really understand whats going on is winrar ok.
Are you saying that clicking a RAR file makes opening a lot of other files? ???
No its just since I.ve had winrar some of the file have the winrar icon now, a stack of three books,
i don’t know allot about computers as you can tell
This icon is legit, I mean, winrar will put this icon on every file (archive file) associated with it, i.e., each archive file winrar could open/manage. It’s perfectly normal.
thanks for clarifying that, by the way is that the brazilian flag I see?
Yes it is. You can add one for you too 8)
Just click on the link below and place your pin in the appropriate part of the map.
http://forum.avast.com/index.php?action=mm
You flag will show in your profile after you have done this.
I worked in Rio in the naval dock yard working on a drill ship for 8 weeks at a time I’ve been there two times I saw two carnivals, I love Brazil we where all broken hearted when had to go home
Glad you got it. Would you mind posting what the name of the trojan was?
Hi its in my first post, VBS:Malware-gen type virus/warm VPS version 071103-0 11/03/20
that all it had in avast
Are you clean now?
Thanks, I’ve been reading so many of these lately, I got confuzzled. ???
Yes every thing is running great thats to this forum ;D
I have the same problem, I have followed all the advice in this thread but can’t seem to get rid of the virus. It’s the same one I think. I have tried Dr Web Cureit and it doesnt find the virus at all. All the malware scanners don’t seem to find anything too serious either. It’s only Avast.
Any further advice??
Can you be more detailed rather than I have the same problem.
What is the malware name, the infected file name, where was it found e.g. (malware name, C:\windows\system32\infected-file-name.xxx) ?
Check the avast! Log Viewer (right click the avast ‘a’ icon), Warning section, this contains information on all avast detections.
What Operating System are you using ?
Why can’t avast remove it, what errors or messages are displayed ?