[list]Now is the time to remove one of those two antivirus.
Multiple Antivirus Programs
You are running more than 1 Antivirus program!
AV: avast! Antivirus
AV: Microsoft Security Essentials
Running - more than one - antivirus program is not recommended because:
[*]They can conflict with each other.
[*]Report the other antivirus software as malicious.
[*]Antivirus programs use an enormous amount of computer’s resources… actively scanning your computer.
[*]Can cause your computer to become unstable…run slowly and even, in rare cases, BSOD crash…etc
I strongly suggest you uninstall one of them. Which one, is your decision.
Then I want once more round with Combofix.
Delete Combofix, download fresh copy of Combofix.
Open notepad and copy/paste the text present inside the code box below:
Close all browser windows and refering to the picture above.
Referring to the screenshot above, drag CFScript.txt into ComboFix.exe.
ComboFix will will re-run. When finished, it will produce a log for you.
Attach the contents of the log in your next reply. (typical location: C:[b]ComboFix.txt[/b] )
I had only windows defender on this computer. when i got the virus and it disappeared completely, I got avast which is what I have on my other computer.
If you decide to remove Microsoft Security Essentials, download and run it’s tool. If you decide to remove avast! Antivirus, download avast uninstall tool.
Thouse tools will remove related leftovers.
Windows Defender on Vista /7 is AntiMalware program. It’s fine.
Then re-run Combofix and attach here fresh CF log. Then tell me how is your computer running now?
my computer seems to be working great again. Lol i knew I had two, but that root kit made windows defender unusable so I had to get something so I could scan with. Also my computer seems be working well now.
running the Microsoft essentials uninstaller i get this from Microsoft fix it 50535
service ‘Microsoft Antimalware Service’ (MsMpSvc) could not be stopped. Verify that you have sufficient privileges to stop system services.
and when I stop the service myself it just comes back.
[*]Double-click ServicesRepair.exe.
[*]If security notifications appear, click Continue or Run and then click Yes when asked if you want to proceed.
[*]Once the tool has finished, you will be prompted to restart your computer. Click Yes to restart.
[*]A log will be saved in the CCSupport folder the tool created on your desktop, please post the content in your next reply.
Now click on “Run” button. Wait for the programme completes his work.
All the tools we used should be gone.
Tool will create and open an log report (DelFix.txt) Note: The report will also be stored on C:\DelFix.txt
I don’t need DelFix log report.
I recommended you to use MCShield if you will.
You may download MCShield from one of the following links:
It will prevent infection by computer via USB flash drive, mobile phone or any other memory card.
And not only will prevent infection, but it will immediately clean flash drive, memory card or external HDD.
[*] Temporarily disable your AntiVirus program. (If necessary)
If you are unsure how to do this please read this or this instruction.
Open notepad and copy/paste the text present inside the code box below. To do this highlight the contents of the box and right click on it. Paste this into the open notepad.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to the operating system
createsrpoint;
resetwmi;
DIR /S /A:L "%systemdrive%\*">>"%temp%\log.txt";b
filesrcm;
startupall;
firefoxlook;
chromelook;
[*]Close all browser windows and refering to the picture above.
Referring to the screenshot above, drag zoekscript.txt into zoek.exe.
Zoek will run. When finished, it will produce a zoek-results.log for you. Note: It will also create a log in the C:\ directory named “zoek-results.log”
Please attach it to your reply.
======= THEN ==========
Please download Farbar Service Scanner and run it on the computer with the issue.
[*]Make sure the following options are checked:
Tell me if this solves problem with windows update.
[*] Temporarily disable your AntiVirus program. (If necessary)
If you are unsure how to do this please read this or this instruction.
Open notepad and copy/paste the text present inside the code box below. To do this highlight the contents of the box and right click on it. Paste this into the open notepad.
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to the operating system
net stop wuauserv;b
net start wuauserv;b
shutdown /r /t 3;b
[*]Close all browser windows and refering to the picture above.
Referring to the screenshot above, drag zoekscript.txt into zoek.exe.
Zoek will run. When finished, it will produce a zoek-results.log for you. Note: It will also create a log in the C:\ directory named “zoek-results.log”