BleepingComputer.com: AVG Identity Protection keeps popping up

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

AVG Identity Protection keeps popping up Threat?

#1 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 14 May 2011 - 08:11 PM

I have a Windows Vista Home Premium Inspiron 1420 that I got from a friend.
Since this morning an AVG Identity Protection pop up keeps appearing.
I keep pressing Move to Vault and the same threats keep coming back.

I ran Rkill and it found nothing.
I ran MBAM and it found nothing.
I ran AVG and it found nothing.
I even ran the free version of Reimage and it found nothing.

So I have no idea whats going on.

The AVG Identity Protection pop up says the file names:

C:/USERS/(FRIENDSNAME)/APPDATA/LOCAL/TEMP/RARSFX11/WINLOGON.EXE
C:/USERS/(FRIENDSNAME)/APPDATA/LOCAL/TEMP/RARSFX15/NIRD/IEXPLORE.EXE
C:USERS/(FRIENDSNAME)/APPDATA/LOCAL/TEMP/RARSFX15/NIRD/IEXPLORE.EXE

I googled IEXPLORE and from what I've read it's a virus.
And I'm getting mixed signals about WINLOGON, that it's a virus and that it isn't.

I'm feeling extremely technologically challenged at the moment.
(Probably because I am >.<)
But if someone's willing to teach me and bear with me on figuring out whatever is wrong
that would be extremely welcome and awesome!!

Thanks =]

And hopefully I posted this right -___-'

This post has been edited by hamluis: 14 May 2011 - 09:21 PM
Reason for edit: Moved from Vista to Am I Infected.


#2 User is offline   cryptodan 

  • Bleepin Madman
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 18,386
  • Joined: 08-September 08
  • Gender:Male
  • Location:Catonsville, Md

Posted 14 May 2011 - 08:29 PM

Can you post the logs from Rkill and Mbam?

My work schedule is as follows: Mon and Tues 1800 to 0600, Friday - Sunday 1800EST to 0600, and Wednesday to Thursday 1800est to 0600. So if I do not respond right away I am at work.
----------------
If I am helping you, then Please Send Me a Message!with your thread link in it. This is only if I haven't replied back to you within 24 to 48 hours.
----------------
My Main Site || My Backup Site || steam://friends/add/cryptodan Add me to your Steam Friends.

#3 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 14 May 2011 - 08:34 PM

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 6579

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18999

5/14/2011 4:28:51 PM
mbam-log-2011-05-14 (16-28-51).txt

Scan type: Quick scan
Objects scanned: 179306
Time elapsed: 40 minute(s), 4 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

Did I post the MBAM log right and how do I find the Rkill log?

#4 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 14 May 2011 - 08:35 PM

You know what I just noticed it was on quick scan -__-'
I'm going to run a full scan on MBAM and post that one is that okay?

#5 User is offline   cryptodan 

  • Bleepin Madman
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 18,386
  • Joined: 08-September 08
  • Gender:Male
  • Location:Catonsville, Md

Posted 14 May 2011 - 08:39 PM

You actually read my mind.

My work schedule is as follows: Mon and Tues 1800 to 0600, Friday - Sunday 1800EST to 0600, and Wednesday to Thursday 1800est to 0600. So if I do not respond right away I am at work.
----------------
If I am helping you, then Please Send Me a Message!with your thread link in it. This is only if I haven't replied back to you within 24 to 48 hours.
----------------
My Main Site || My Backup Site || steam://friends/add/cryptodan Add me to your Steam Friends.

#6 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 14 May 2011 - 10:57 PM

I ran MBAM and it's been running for well over 2 hours.
Normally it only runs for about and hour and 30 minutes -__-'
Any ideas?

#7 User is offline   cryptodan 

  • Bleepin Madman
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 18,386
  • Joined: 08-September 08
  • Gender:Male
  • Location:Catonsville, Md

Posted 14 May 2011 - 11:13 PM

Let it continue to run.

My work schedule is as follows: Mon and Tues 1800 to 0600, Friday - Sunday 1800EST to 0600, and Wednesday to Thursday 1800est to 0600. So if I do not respond right away I am at work.
----------------
If I am helping you, then Please Send Me a Message!with your thread link in it. This is only if I haven't replied back to you within 24 to 48 hours.
----------------
My Main Site || My Backup Site || steam://friends/add/cryptodan Add me to your Steam Friends.

#8 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 15 May 2011 - 03:00 AM

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 6579

Windows 6.0.6002 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.18999

5/15/2011 12:47:28 AM
mbam-log-2011-05-15 (00-47-28).txt

Scan type: Full scan (C:\|D:\|E:\|)
Objects scanned: 424269
Time elapsed: 3 hour(s), 25 minute(s), 58 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


I apologize I left it running and forgot about it.

#9 User is offline   cryptodan 

  • Bleepin Madman
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 18,386
  • Joined: 08-September 08
  • Gender:Male
  • Location:Catonsville, Md

Posted 15 May 2011 - 07:57 AM

Please run all scans in regular mode.

My work schedule is as follows: Mon and Tues 1800 to 0600, Friday - Sunday 1800EST to 0600, and Wednesday to Thursday 1800est to 0600. So if I do not respond right away I am at work.
----------------
If I am helping you, then Please Send Me a Message!with your thread link in it. This is only if I haven't replied back to you within 24 to 48 hours.
----------------
My Main Site || My Backup Site || steam://friends/add/cryptodan Add me to your Steam Friends.

#10 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 15 May 2011 - 07:59 PM

I've had MBAM running and it's currently at 5 hours and 29 minutes.

#11 User is offline   cryptodan 

  • Bleepin Madman
  • PipPipPipPipPipPip
  • Find Topics
  • Group: BC Advisor
  • Posts: 18,386
  • Joined: 08-September 08
  • Gender:Male
  • Location:Catonsville, Md

Posted 15 May 2011 - 08:14 PM

It should not be taking that long.

I am going to refer to the experts for a deeper look.

Please follow the instructions in ==>This Guide<==.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include the link to this topic in your new topic and a description of your computer issues and what you have done to resolve them.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

Once you have created the new topic, please reply back here with a link to the new topic.

My work schedule is as follows: Mon and Tues 1800 to 0600, Friday - Sunday 1800EST to 0600, and Wednesday to Thursday 1800est to 0600. So if I do not respond right away I am at work.
----------------
If I am helping you, then Please Send Me a Message!with your thread link in it. This is only if I haven't replied back to you within 24 to 48 hours.
----------------
My Main Site || My Backup Site || steam://friends/add/cryptodan Add me to your Steam Friends.

#12 User is offline   KnowledgeHB 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 8
  • Joined: 14-May 11
  • Gender:Female

Posted 15 May 2011 - 09:35 PM

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 6582

Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18999

5/15/2011 6:25:16 PM
mbam-log-2011-05-15 (18-25-16).txt

Scan type: Full scan (C:\|D:\|E:\|)
Objects scanned: 426316
Time elapsed: 5 hour(s), 56 minute(s), 40 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


It ended but I'm still going to do what you sent previously.
Thanks for all the patience.
I'm in serious need of it >.<

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users