Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows Defender blocked


  • Please log in to reply
4 replies to this topic

#1 CRBlair

CRBlair

  • Members
  • 62 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Columbia, MD USA
  • Local time:11:05 AM

Posted 01 June 2018 - 03:01 PM

Earlier this week, I was forced to rebuild my system (Windows 10 upgraded from Windows 8, Lenovo G700 laptop) from scratch. I then started adding my programs, including the following: Trend Micro Rootkit Buster, Trend Micro HouseCall, MalwareBytes, SuperAntiSpyware, Spybot S&D, Sophos Virus Removal Tool and IObit Malware Fighter. After I downloaded another app (Imgburn),I started getting lots of unknown programs (for example, "wolfgang.exe," "Depository" and "Euphrates." I managed to get rid of the latter two program files, so Dep and Euph are history. This morning, though, I started getting announcements that my antivirus (Windows Defender) had been turned off. When I went to Settings, I found that my Threat and virus topic said "Your virus and threat protection are being managed by your organization." When I clicked on T&V, I got a message that this control was off-limits to me, and I should see my IT person. Since this is a Home System and I am its Administrator, I shouldn't get these messages, so I concluded I had a virus and came here for some help. On a reply to another post, I saw a mention of FRST64. I downloaded and ran the program, and am attaching the FRST.txt and Addition.txt Files; I hope they are of help. I intend to keep my machine turned off fo a few days (since you mentioned a five-day turnaround time) to minimize the damage. Any help would be appreciated, since this is the first time I've run into this kind of thing.


Edited by hamluis, 01 June 2018 - 03:27 PM.
Moved from MRL to Am I Infected - Hamluis.

Roger Blair

crogerblair@hotmail.com


BC AdBot (Login to Remove)

 


#2 buddy215

buddy215

  • Moderator
  • 13,312 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:10:05 AM

Posted 02 June 2018 - 07:49 AM

Not sure what the problem was for hamlius to move your topic to this forum. Likely the FRST logs weren't attached as you said they were.

 

Suggest you uninstall a few programs known to cause problems, poorly maintained and/ or include adware.

Use Download Revo Uninstaller Freeware  to uninstall the programs listed below.

SuperAntiSpyware

Spybot S&D

IObit Malware Fighter

 

Once you have done the above I suggest you follow the directions below for posting your FRST logs in the malware removal forum.

Create new FRST logs that will show the removal of those programs.

 

Please follow the instructions in the Malware Removal and Log Section Preparation Guide starting at Step 6.

  • If you cannot complete a step, then skip it and continue with the next.
  • In Step 6 there are instructions for downloading and running FRST which will create two logs.

When you have done that, post your logs in the Virus, Trojan, Spyware, and Malware Removal Logs forum, NOT here, for assistance by the Malware Response Team.

Start a new topic, give it a relevant title and post your log(s) along with a brief description of your problem, a summary of any anti-malware tools you have used and a summary of any steps that you have performed on your own. If you cannot produce any of the required logs...start the new topic anyway. Explain that you followed the Prep. Guide, were unable to create the logs, and describe what happened when you tried to create them. A member of the Malware Removal Team will walk you through, step by step, on how to clean your computer.

After doing this, please reply back in this thread with a link to the new topic so we can close this one.

 

DO NOT bump your new topic. Wait for a response from one of the Team Members.


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”

#3 CRBlair

CRBlair
  • Topic Starter

  • Members
  • 62 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Columbia, MD USA
  • Local time:11:05 AM

Posted 02 June 2018 - 12:58 PM

I don't know whom to imitate--Maxwell Smart or Emily Litella. Things got so bollixed up that I rebuilt the system again--I have other problems, but thescan be safely euthanized. Sorrry for the hassle.


Roger Blair

crogerblair@hotmail.com


#4 buddy215

buddy215

  • Moderator
  • 13,312 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:10:05 AM

Posted 02 June 2018 - 01:02 PM

There is a website that a lot of programs are hosted on that will not contain adware and malware. Check it out

and if some of the programs you want to install are hosted there then download from that site.

Ninite - Install or Update Multiple Apps at Once

 

Almost all free programs these days have adware bundled in their downloads.

 

It is not a good idea to post your email address...on any website. That is a guaranteed way to get a lot of spam.

Suggest you remove your email address.


Edited by buddy215, 02 June 2018 - 01:05 PM.

“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss
A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”

#5 CRBlair

CRBlair
  • Topic Starter

  • Members
  • 62 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Columbia, MD USA
  • Local time:11:05 AM

Posted 03 June 2018 - 08:07 AM

Buddy215, thanks--I'll bookmark the site the next time I need to download.


Roger Blair

crogerblair@hotmail.com





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users