Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Use a Flash Drive to Rescue a Malware-Infested PC ( Antivirus Live )
Bnet ^ | 1/30/2010 | Rick Broida

Posted on 01/30/2010 10:19:14 AM PST by dr_lew

There’s a particularly nasty virus making the rounds right now. It’s informally known as the Antivirus Live virus, as it bombards your PC with scary, real-looking security warnings and masquerades as a program — Antivirus Live (pictured) — that can protect and repair your system.

(Excerpt) Read more at blogs.bnet.com ...


TOPICS: Computers/Internet
KEYWORDS: antivirus; antiviruslive; computer; malware; rogue; security; virus
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-65 next last
To: silverleaf
If you upload malwarebytes or another product before you have an infection, you can run it in Safe mode ( I guess ) or normally after killing XXXXsysguard.exe, like I did with the thumbdrive. Otherwise, you're faced with downloading while "Antivirus Live" is still active.

The comments at How To Geek report variable success using Safe Mode to do this. I found these comments to be very helpful in making a judgement how to proceed. I couldn't even boot in Safe Mode using the F8 key, as recommended. I just got a blank black screen. So I tried the normal boot and kill procedure that I read of there, and this worked great for me.

21 posted on 01/30/2010 10:38:26 AM PST by dr_lew
[ Post Reply | Private Reply | To 4 | View Replies]

To: Vn_survivor_67-68
by saying that, I presume you mean hitting the switch rather than “shutting it down”, as in normal start-menu + shut down mouse clicks?

I turned it off and forced a cold boot.
22 posted on 01/30/2010 10:38:43 AM PST by Man50D (Fair Tax, you earn it, you keep it! www.FairTaxNation.com)
[ Post Reply | Private Reply | To 18 | View Replies]

To: dr_lew

Bookmarking for future reference if needed! Thanks


23 posted on 01/30/2010 10:40:10 AM PST by 2nd amendment mama ( www.2asisters.org | Self defense is a basic human right!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dr_lew

When someone is determined to have created and released malware or virii like this into the wild, they really should face life in prison without parole.

So far I’ve managed to avoid any truly nasty infections, but even the lesser ones I’ve dealt with have left me wanting to cause grievous bodily harm to the scum who wrote it.


24 posted on 01/30/2010 10:40:58 AM PST by Dr.Zoidberg (Warning: Sarcasm/humor is always engaged. Failure to recognize this may lead to misunderstandings.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: handy old one

ping


25 posted on 01/30/2010 10:45:54 AM PST by handy old one (If you play in nature be prepared to be played with by nature!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: dr_lew

My wifes computer caught this and it was a nightmare. finally I booted up in safe mode and was able to run system restore. Then I ran a complete virus/malware scan. That got rid of it.


26 posted on 01/30/2010 10:46:21 AM PST by circlecity
[ Post Reply | Private Reply | To 1 | View Replies]

To: northwinds
Can you elaborate on how you killed it once you booted the computer back up.

I have Windows XP, which has a pretty good Task Manager. I just hit ctrl-alt-del as soon as possible, selected the task manager, scrolled down to highlight XXXXsysguard.exe, and selected "End process". I think I may have had to do it twice. It's a race against time, so be sure to stay cool, calm, and collected as you fumble around :-)

When I put the thumbdrive in, with the SUPERAntiSpyware on it, I used Windows Explorer ( not Internet Explorer! ) to run it, and as I said, it seemed to go very smoothly from there, ( not forgetting about unsetting "Proxy Server" in IE! )

I think my Safe Mode boot problems may have been because I put the thumbdrive in before the boot. It may look there for a boot image, or something.

27 posted on 01/30/2010 10:50:38 AM PST by dr_lew
[ Post Reply | Private Reply | To 11 | View Replies]

To: dr_lew

I just got my computer back from the shop after getting this nasty thing.

Tried to shut down but wasn’t fast enough.

What a mess!

Thought my McAfee would have stopped it - it didn’t.


28 posted on 01/30/2010 10:51:09 AM PST by Dinah Lord
[ Post Reply | Private Reply | To 1 | View Replies]

To: dr_lew
Last week I had to flatline my daughter's PC and reinstall windows due to a similar virus "Internet Security 2010" (it might even be the same virus with a different alias). It was ugly.

Take frequent incremental backups.

29 posted on 01/30/2010 10:56:40 AM PST by PapaBear3625 (Public healthcare looks like it will work as well as public housing did.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Dr.Zoidberg
So far I’ve managed to avoid any truly nasty infections, but even the lesser ones I’ve dealt with have left me wanting to cause grievous bodily harm to the scum who wrote it.

Oy Vey! Don't ask me about the lurid visions I was having already, Dr. Zoidberg!

I was wondering too, why there seems to be so little interest or discussion about the source and history of this thing, ( which is just the thing of the moment, I guess. It's an ongoing issue. ) I did notice that one of the counterfeit pop-up warnings had some very interesting grammatical irregularities. I jotted down, "Click here for the scan of you computer."

My tin hat is tingling off my head.

30 posted on 01/30/2010 10:59:45 AM PST by dr_lew
[ Post Reply | Private Reply | To 24 | View Replies]

To: Dinah Lord

Another post that reminds me of how glad I am that I switched to Apple computers after 20+ years of putting up with Windoze. I have an online/all the time connection. In more than a year and a half of heavy internet use I’ve never had a virus, worm, or annoying malware. Now that you can run Windows programs under the MacOS as well as they run on a PC there’s no reason not to switch. No.. I don’t work for Steve Jobs. But, I think I spent a lot of time working for Norton, McAffey, AVG, and etc..


31 posted on 01/30/2010 11:04:48 AM PST by theoldmarine (an apple a day...)
[ Post Reply | Private Reply | To 28 | View Replies]

To: dr_lew

I solved this problem about 3.5 years ago. I bought the wife a Mac and used Ubuntu on my computer.

The iMac I bought for her works as well today as it did that day I bought it in 2006. Actually it works better with Snow Leopard on it.

I know all the arguments people make about Mac—too expensive, etc. But we simply haven’t had to spend a penny on anti-virus, nor a minute of time on removing viruses.

And I don’t see the need to replace that computer for years to come.

In the end, I would rather enjoy a worry free computing experience instead of all the stuff I see on this post.


32 posted on 01/30/2010 11:12:42 AM PST by comps4spice (Obama = Going a long way in making Jimmy Carter look competent.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: JoeProBono

I got that thing some days ago and my AVAST started yelling. I X-ed out and did a anti virus run and have been fine.


33 posted on 01/30/2010 11:12:50 AM PST by LadyPilgrim ((Lifted up was He to die; It is finished was His cry; Hallelujah what a Savior!!!!!! ))
[ Post Reply | Private Reply | To 5 | View Replies]

To: Dr.Zoidberg
When someone is determined to have created and released malware or virii like this into the wild, they really should face life in prison without parole.

Life on an island with no access to modern (post 1900) technology.

34 posted on 01/30/2010 11:14:00 AM PST by reg45
[ Post Reply | Private Reply | To 24 | View Replies]

To: comps4spice
In the end, I would rather enjoy a worry free computing experience instead of all the stuff I see on this post.

Amen...running Linux Mint here....but I do have a laptop which has one job....Turbotax...

35 posted on 01/30/2010 11:15:59 AM PST by Ernest_at_the_Beach ( Support Geert Wilders)
[ Post Reply | Private Reply | To 32 | View Replies]

To: dr_lew
Turn your computer on while holding down your F8 key. This put your computer in safe mode. Toggle down to “safe mode in network” and download Malwarebytes, which you can get off cnet downloads and it's free. It will remove it. Good luck.
36 posted on 01/30/2010 11:16:02 AM PST by kempo
[ Post Reply | Private Reply | To 1 | View Replies]

To: dr_lew

My computer was nailed by this 3 days ago. I took it to the pros and they cleaned it up for $70. Everything I tried didn’t work, including running the malwarebytes program. I’ll try this if it happens again.


37 posted on 01/30/2010 11:17:22 AM PST by Travis McGee (---www.EnemiesForeignAndDomestic.com---)
[ Post Reply | Private Reply | To 1 | View Replies]

To: LadyPilgrim

38 posted on 01/30/2010 11:17:23 AM PST by JoeProBono (A closed mouth gathers no feet)
[ Post Reply | Private Reply | To 33 | View Replies]

To: silverleaf

I already had malwarebytes installed, but it couldn’t touch this new iteration. It blocked malwarebytes from working to isolate the virus.


39 posted on 01/30/2010 11:18:20 AM PST by Travis McGee (---www.EnemiesForeignAndDomestic.com---)
[ Post Reply | Private Reply | To 4 | View Replies]

To: reg45

That would work, as long as it were a rather desolate place where you had to work from before sun up to well after sun down for just basic survival.

And at that, I’d still want them to be flogged weekly for the duration of their existence.


40 posted on 01/30/2010 11:19:29 AM PST by Dr.Zoidberg (Warning: Sarcasm/humor is always engaged. Failure to recognize this may lead to misunderstandings.)
[ Post Reply | Private Reply | To 34 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-65 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson