Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.


Winantiviruspro Pop Ups And Blackworm Virus Warning

  • Please log in to reply
1 reply to this topic

#1 zrruhl


  • Members
  • 14 posts
  • Gender:Female
  • Location:Washington DC
  • Local time:12:39 AM

Posted 09 March 2006 - 09:50 PM

I've tried to run some real anti-spyware programs and my computer immediately shuts down, citing "illegal operation", the screen goes black and that's that. This only happens when I try to run Spybot or Ad-Aware. The WinAntiVirus window keeps popping up, which has a URL of:


Then a small box pops on my screen, supposedly labeled from Microsoft Internet Explorer, that says that a "blackworm virus" is invading my computer, and that I should run the WinAntiVirus program.

Besides that, my computer is running slow, which is to be expected.

//Mod edit: edited Hot Link to protect

//Mod edit: moved your HJT log at the end of this thread to the HJT Forum for team review. jgweed

Edited by jgweed, 12 March 2006 - 02:52 AM.

BC AdBot (Login to Remove)


#2 Enthusiast


  • Members
  • 5,898 posts
  • Location:Florida, USA
  • Local time:12:39 AM

Posted 10 March 2006 - 11:53 AM

WinAntiVirus is itself an adware- malware ap.


If you can uninstall it in "Add/Remove Programs" do so and install AVG or another of the good freeware anti-virus aps.

If you cannot uninstall it, download Startup Inspector or use msconfig to disable it from starting until it can be removed.
Start Menu Program Control:

StartUp Inspector (Enables novice and expert users to manage Windows® startup applications) Startup Inspector is easier to use than msconfig:

Antivirus programs - freeware (you can only use one resident anti-virus program on your computer. More than one will conflict)

AVG: http://www.grisoft.com/us/us_index.php

Avast Anti-virus freeware

Run both Adaware and Spybot Search and Destroy from safe mode, updating each program before you scan and setting both to fix what they find.

*AdAware SE: http://www.majorgeeks.com/download506.html

*Spybot S&D: http://www.safer-networking.org/en/index.html

Following that that I suggest you post a “HijackThis” log for expert assistance with your problem.

Read the pinned post in our “HijackThis” forum, here
Carefully read and follow all directions explicitly.

Following instructions run a log, and post it in following HJT forum,
at this link

Do not as yet attempt to fix anything by yourself using Hijack This as even what may seem to be a small mistake can render your op system inoperable.
Some files when in one folder may be fine while in another may be malware.

A member of our HJT Team will analyze your log, make recommendations and offer assistance.

It may take a period of time to get a response to the log you posted because the members of our HJT Team are kept very busy.
Please be patient as this team is manned by volunteers. They will help you as soon as possible.

Once you have posted your HJT log, please DO NOT make any additional posts in the HJT forum thread you created until you get a response from a member of our HJT expert team.

The first criteria they have when looking for logs that need replies are posts showing 0 replies. If you make an additional post, it will show as having 1 reply.
A team member, looking to see if a reply has been made might well assume another HJT Team member is already assisting you and might not open the thread to respond.

So, make your post and wait for a response from a team member.

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users