The Cellar

The Cellar (http://cellar.org/index.php)
-   Technology (http://cellar.org/forumdisplay.php?f=7)
-   -   comp/net virus protection (http://cellar.org/showthread.php?t=19356)

lumberjim 02-11-2009 09:07 AM

so, a friendly dwellar pointed me to the ultimate boot cd, and helped me with the creation of a boot cd that runs a basic windows environment. this allows you to run the utilities it contains....one of them is AVG.

i'm running it now.....we're up to 15 threats...no 16....5 are viruses, 11 trojan horses

ooop...19~and counting.....jeesus.

lumberjim 02-11-2009 09:57 AM

183......and still scanning


:blush

lumberjim 02-11-2009 10:27 AM

even after this avg cleanup, i still have spybot coming up repeatedly with kewedojisu trying to change some registry.....i blocked it, but it keeps coming back...

is this a normal thing, should i let it do it's thing?

mbpark 02-11-2009 10:33 AM

No it is not
 
Lumberjim,

Boot back into the Ultimate Boot CD and open a command prompt.

Go to c:\windows\system32 and type in the following:

attrib -r -h -s kewedojisu.*
erase kewedojisu.*

This will un-hide the file and erase it.

lumberjim 02-11-2009 10:44 AM

file not found

mbpark 02-11-2009 10:56 AM

One other thing to try. Download malwarebytes anti-malware from malwarebytes.org and run that.

I've been testing that and have found it to be actually pretty decent at cleaning up "unknown" processes like that.

xoxoxoBruce 02-11-2009 10:56 AM

Jim, I had that problem and after trying a bunch of removal crap, I just had to go to the "control panel" then "add and remove programs". Found the strange program and removed it. I don't remember the name, but you should be able to spot a program that you don't know, if you have the same problem I had.

lumberjim 02-11-2009 11:31 AM

im running spybot that came with the boot cd.....its finding stuff too. the version i have installed wont update....

after i ran avg from the boot cd, I went online and tried to dl and install the free avg, but when i went to instal, it said it wouldnt work with my puter. it referred to windows 2000, although im using xp on this machine

it did fix the pop up problem it was havng though. which was the main complaint.

mbpark 02-11-2009 11:51 AM

Lumberjim,

Give malwarebytes a try and let me know how it works :).

lumberjim 02-11-2009 12:12 PM

will do

lumberjim 02-11-2009 01:43 PM

that found 69 items and fixed them

start up took forever afterwards

mbpark 02-11-2009 02:47 PM

Did it work well otherwise?

lumberjim 02-12-2009 05:55 PM

seems to have. either the malware one or the spybot from the boot disk got rid of the kewets...thing. i ran them back to back

thanks a million for your help. i was ><thsi close to nuking it.

tw 02-12-2009 10:04 PM

From the Washington Post of 12 Feburary 2009: A Little Economic Stimulus: Free Antivirus

Beestie 02-12-2009 10:42 PM

Quote:

Originally Posted by NoBoxes (Post 532297)
I came across an item on the MSN home page for Sunday, 08 FEB 09 that reminded me of this thread. It was a link titled Ranked: Security software which led to an article by PC World on evaluations of security suites (pay for packages).

Interesting that they didn't even review NOD32.

I read the review of Kaspersky (my weapon of choice) and have to agree that its confusing as hell to configure although I think it works better than the author does - nothing gets by Kaspersky. I even get warnings (including the IP address) when anything other than the browser I have open attempts to connect to the internet.

And as a general tip to the class, if the protection software you are running has a registry guard, enable it. If it doesn't, get one that does. A registry guard stops anything from making a change in the registry and asks for approval first. I think Spybot has one.

-----EDIT

Since MSN didn't think NOD32 was worth reviewing, I was not surprised to learn that opinions vary. Check out this side-by-side comparison.


All times are GMT -5. The time now is 07:24 AM.

Powered by: vBulletin Version 3.8.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.