BleepingComputer.com: Still Infected and Can't Update

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Still Infected and Can't Update Malwarebtyes only found two infected files

#1 User is offline   Naitaimutgwai 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 1
  • Joined: 10-December 10

Posted 10 December 2010 - 06:16 PM

I'm infected with Antivirus Action on Windows Vista and I tried following the guide.

I had to burn rkill and mbam onto a cd and load it into the infected computer, started in safe mode, used rkill and installed mbam but couldn't update it. I can't even go on the internet with Safemode with Networking. I get an error when trying to update, "An error has occured. Please report this error code to our support team. PROGRAM_ERROR_UPDATING (12007,0,WinHttpSendRequest)" I've tried going to internet options of internet explorer and unchecked the proxy connection server and I still can't update mal or go on the internet in safe mode.

So I proceeded with a full scan using Malwarebtyes Date:11/29/2010, Database version: 5214. The full scan took 3.5 hours and found two infected files.
Files infected:
c:\uers\henry\appddata\local\temp\low\jsvgex.ex
(trojan.fakealert) -> quarantined and deleted successfully.
c:\users\henry\local settings\application data\syssvc.exe
(trojan.fakealert) ->quarantined and deleted successfully.

So mal prompted to restart and I restarted into the normal mode and the virus is still there, im still getting the fake warnings. Any help please? Am I using an outdated version? Is there something I am missing.

I am connected to my router, but it says "Access: Local only"

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users