f***ing rogue antivirus has made itself at home on my PC

Title says all, it’s something called ‘security tool’ fucking up my PC, usual strategy of trying to pester me into buying it. I’ve tried to find a way to delete it but nothing’s worked so far. any thoughts? help is much appreciated.

Have you done a system restore to a day or two before whatever you suspect caused the problem? I got a similar anitvirus called “Antivirus 2010” and even after running all the malware removers in safe mode internet tech sites suggested, the restore was the only thing that worked.

As Dino said sys restore.

else

https://housecall.trendmicro.com/

or boor into a live cd and remove it manually

I only just picked it up today. but I’d rather avoid having to do a restore. thanks anyway.

It’s not a complete restore. In most cases you won’t lose a damn thing and if you do it’d be easy to obtain again.

Highly recommended you just do that as it is hassle free.

Try this

System restore probably won’t work tbh.

Do you have an anti virus/spyware program? If so, reboot in safe mode and run it. Just attempting to install and run an antivirus is not going to work cuz this little sweetheart hides itself from scans in regular mode.

Otherwise do this.

BTW, we got this about a month ago. Took me about 6 hours to manually wash it out.

tried both. no good. and why won’t a restore work?

Dood. Trust me. I got that about a month ago.

Either attempt to run a currently installed antivirus in safe mode, (I cannot confirm this will actually do it but you can try) or do what I did and follow these instructions

ok Ill give that a go. I tried safe mode, no luck.

thanks.

good luck buddy. It is a messy mess, but all will be well soon enough.

I had something very similar a couple of years back, called Vundo. Tried system restore, scanning in safe mode and sacrificing sheep but nothing worked :frowning:

Eventually got it out with some program made specifically to target Vundo

Restore won’t work because the software is clever. It writes itself into all sorts of registry entries.

 I could definitely see that happening. Well, good luck finding a solution to your problem man.

First of all, Turn off your system restore. (it actually helps in retention of virus problems)

Second, boot into safe mode with networking and install Malwarebytes Anti-malware.

Make sure the software is fully updated with definitions and run a full system scan.

Remove any infections.

Reboot back into safe mode and repeat scans untill malwarebytes sees that the system is clean. Most of the time, malwarebytes is good enough to kill most rogue AVs.

If problems persist, you may have a rootkit. Look into ComboFix. I have had the most luck with it.

If problems still occur after that, I would reccomend a Kaspersky Rescue disc in the form of either USB or CD. What it is, is a scanner that uses a live Linux OS so the files on the hard drive cannot execute to bring the infection back on system startup.

Lastly, Stop clicking on ads on websites… Thats where they come from.

Also, Always make sure you have windows, flash, java, and adobe reader up to date… I get all sorts of machines into our school IT department that are behind on a service pack release and it makes it all the more difficult to get rid of infections.

doesn’t look like an antivirus, more like a rootkit trojan spyware bomb, save all your documents on a cd/dvd and do a format, do not plug flash drives or any usb storage into your PC

format C:

McAfee Labs Stinger has helped me in the past…

Happened to me once on my laptop, just do a total reformat of the harddrive and reinstall windows, dont put in a usb because some viruses can infect usb’s, externals.ect when you plug them in. If you have any work or anythng, you will have to rewrite it manually either by hand, or on another computer

try malware bytes anti malware (mbam), if that dont work try spybot search and destroy, if that dont work try ad-aware…

Im betting my money on mbam tho, when i had a similar virus, it was the only app to successfully get rid of it.

Founded in 2004, Leakfree.org became one of the first online communities dedicated to Valve’s Source engine development. It is more famously known for the formation of Black Mesa: Source under the 'Leakfree Modification Team' handle in September 2004.