We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
The Forum now has a brand new text editor, adding a bunch of handy features to use when creating posts. Read more in our how-to guide

New Icon on desktop named "Security Antivirus"

1234568

Comments

  • ComboFix 10-02-09.04 - Administrator 11/02/2010 10:26:24.4.1 - x86 NETWORK
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.775 [GMT 0:00]
    Running from: c:\documents and settings\Administrator\My Documents\ComboFix.exe
    Command switches used :: c:\documents and settings\Administrator\My Documents\CFScript.txt
    AV: AntiVir Desktop *On-access scanning enabled* (Outdated) {AD166499-45F9-482A-A743-FDD3350758C7}
    AV: Security Antivirus *On-access scanning enabled* (Updated) {00F3C869-C60F-41B9-84ED-1B456235972C}
    FW: Security Antivirus *enabled* {401582A1-10C7-4CD7-B3B8-2CE3BA740DE8}

    FILE ::
    "c:\windows\system32\CF5924.exe"
    "c:\windows\system32\zlib1.dll"
    .

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\windows\system32\CF5924.exe
    c:\windows\system32\zlib1.dll

    c:\windows\Help\Tours\mmTour\tour.exe . . . is infected!!

    c:\windows\system32\usrmlnka.exe . . . is infected!!

    .
    ((((((((((((((((((((((((( Files Created from 2010-01-11 to 2010-02-11 )))))))))))))))))))))))))))))))
    .

    2010-02-11 09:39 . 2010-02-11 09:39
    d
    w- c:\windows\LastGood
    2010-02-10 13:29 . 2010-02-10 13:29
    d
    w- c:\documents and settings\Administrator\Local Settings\Application Data\Adobe
    2010-02-10 10:45 . 2010-02-10 10:45
    d
    w- c:\documents and settings\Administrator\Application Data\Infineon
    2010-02-10 10:45 . 2010-02-10 10:45 35200 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
    2010-02-10 09:35 . 2010-02-10 09:54 15944 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
    2010-02-10 09:34 . 2010-02-10 09:34
    d
    w- c:\documents and settings\All Users\Application Data\Hitman Pro
    2010-02-10 09:34 . 2010-02-10 09:34
    d
    w- c:\program files\Hitman Pro 3.5
    2010-02-09 22:51 . 2010-02-09 22:51
    d
    w- c:\documents and settings\User\Local Settings\Application Data\Threat Expert
    2010-02-09 22:35 . 2010-02-10 09:20
    d---a-w- c:\documents and settings\All Users\Application Data\TEMP
    2010-02-09 17:15 . 2010-02-09 17:15
    d
    w- c:\documents and settings\Administrator\Application Data\Malwarebytes
    2010-02-09 13:44 . 2010-02-09 13:44
    d-sh--w- c:\documents and settings\All Users\Application Data\SAEHWV
    2010-02-09 13:43 . 2010-02-11 10:00
    d-sh--w- c:\documents and settings\All Users\Application Data\2067b78
    2010-02-05 11:17 . 2010-02-05 11:17
    d
    w- c:\temp\install
    2010-02-05 11:17 . 2010-02-05 11:17
    d
    w- c:\temp\CAL
    2010-02-02 17:50 . 2009-11-25 13:01 118784 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Test.dll
    2010-02-02 17:50 . 2009-11-25 12:52 409600 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\xVDS.dll
    2010-02-02 17:50 . 2009-11-25 12:50 118784 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\ProcedureFramework.dll
    2010-02-02 17:50 . 2009-11-25 12:50 688128 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Aea.dll
    2010-02-02 17:47 . 2010-02-02 17:47
    d
    w- c:\program files\Common Files\Adobe AIR
    2010-01-14 09:26 . 2009-11-21 15:51 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-02-10 11:58 . 2009-02-14 18:01
    d
    w- c:\documents and settings\All Users\Application Data\Google Updater
    2010-02-10 11:56 . 2009-12-11 21:35
    d
    w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
    2010-02-10 11:00 . 2009-12-11 21:35
    d
    w- c:\program files\Spybot - Search & Destroy
    2010-02-09 13:57 . 2009-07-30 12:15
    d
    w- c:\program files\Avira
    2010-02-09 10:24 . 2009-12-11 19:52
    d
    w- c:\program files\SUPERAntiSpyware
    2010-02-05 11:17 . 2009-08-06 15:28
    d
    w- c:\program files\Service ADVISOR
    2010-02-05 11:16 . 2009-02-12 10:00
    d
    w- c:\program files\ECULP
    2010-02-03 08:36 . 2009-01-26 09:22
    d--h--w- c:\program files\InstallShield Installation Information
    2010-02-02 17:50 . 2009-12-11 19:15
    d
    w- c:\documents and settings\All Users\Application Data\Service ADVISOR
    2010-02-02 17:46 . 2009-12-11 19:06
    d
    w- c:\program files\Common Files\Adobe
    2010-01-11 13:26 . 2009-02-14 18:01
    d
    w- c:\program files\Google
    2010-01-05 10:00 . 2004-08-04 12:00 832512
    w- c:\windows\system32\wininet.dll
    2010-01-05 10:00 . 2004-08-04 12:00 78336 ----a-w- c:\windows\system32\ieencode.dll
    2010-01-05 10:00 . 2004-08-04 12:00 17408
    w- c:\windows\system32\corpol.dll
    2009-12-31 16:50 . 2004-08-04 12:00 353792 ----a-w- c:\windows\system32\drivers\srv.sys
    2009-12-16 18:43 . 2009-01-23 10:06 343040 ----a-w- c:\windows\system32\mspaint.exe
    2009-12-14 15:48 . 2009-07-30 12:16 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
    2009-12-14 07:08 . 2004-08-04 12:00 33280 ----a-w- c:\windows\system32\csrsrv.dll
    2009-12-08 19:27 . 2004-08-04 12:00 2189184
    w- c:\windows\system32\ntoskrnl.exe
    2009-12-08 18:43 . 2004-08-03 22:59 2066048
    w- c:\windows\system32\ntkrnlpa.exe
    2009-12-04 18:22 . 2004-08-04 12:00 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2009-11-27 17:11 . 2004-08-04 12:00 1291776 ----a-w- c:\windows\system32\quartz.dll
    2009-11-27 17:11 . 2004-08-04 00:56 17920 ----a-w- c:\windows\system32\msyuv.dll
    2009-11-27 16:07 . 2004-08-04 12:00 28672 ----a-w- c:\windows\system32\msvidc32.dll
    2009-11-27 16:07 . 2001-08-17 22:36 8704 ----a-w- c:\windows\system32\tsbyuv.dll
    2009-11-27 16:07 . 2004-08-04 12:00 84992 ----a-w- c:\windows\system32\avifil32.dll
    2009-11-27 16:07 . 2004-08-04 12:00 11264 ----a-w- c:\windows\system32\msrle32.dll
    2009-11-27 16:07 . 2004-08-04 00:56 48128 ----a-w- c:\windows\system32\iyuv_32.dll
    2009-11-25 12:50 . 2010-02-02 17:51 434176 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Remote.dll
    2009-11-25 12:48 . 2010-02-02 17:51 176128 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Recording.dll
    2009-11-25 12:47 . 2010-02-02 17:51 73728 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Support\Interop.CALCore.dll
    2009-11-25 12:47 . 2010-02-02 17:51 61440 ----a-w- c:\documents and settings\All Users\Application Data\Service ADVISOR\CAL\Connectivity Applications\Support\CalChannelManager.dll
    2009-11-21 15:51 . 2004-08-04 12:00 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
    .

    ((((((((((((((((((((((((((((( SnapShot_2010-02-10_13.15.51 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2009-11-27 17:11 . 2009-11-27 17:11 17920 c:\windows\system32\dllcache\msyuv.dll
    + 2004-08-04 12:00 . 2009-11-27 16:07 28672 c:\windows\system32\dllcache\msvidc32.dll
    + 2009-11-27 16:07 . 2009-11-27 16:07 11264 c:\windows\system32\dllcache\msrle32.dll
    + 2009-11-27 16:07 . 2009-11-27 16:07 48128 c:\windows\system32\dllcache\iyuv_32.dll
    + 2009-12-14 07:08 . 2009-12-14 07:08 33280 c:\windows\system32\dllcache\csrsrv.dll
    - 2009-06-10 14:13 . 2009-06-10 14:13 84992 c:\windows\system32\dllcache\avifil32.dll
    + 2009-06-10 14:13 . 2009-11-27 16:07 84992 c:\windows\system32\dllcache\avifil32.dll
    + 2009-11-27 17:11 . 2009-11-27 17:11 17920 c:\windows\Driver Cache\i386\msyuv.dll
    + 2009-11-27 16:07 . 2009-11-27 16:07 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
    + 2001-08-17 22:36 . 2009-11-27 16:07 8704 c:\windows\system32\dllcache\tsbyuv.dll
    + 2009-11-27 16:07 . 2009-11-27 16:07 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
    - 2004-08-04 12:00 . 2008-04-14 00:12 474112 c:\windows\system32\shlwapi.dll
    + 2004-08-04 12:00 . 2009-12-08 09:23 474112 c:\windows\system32\shlwapi.dll
    + 2009-02-12 07:01 . 2009-12-31 16:50 353792 c:\windows\system32\dllcache\srv.sys
    + 2009-12-08 09:23 . 2009-12-08 09:23 474112 c:\windows\system32\dllcache\shlwapi.dll
    + 2009-12-16 18:43 . 2009-12-16 18:43 343040 c:\windows\system32\dllcache\mspaint.exe
    + 2009-02-12 07:00 . 2009-12-04 18:22 455424 c:\windows\system32\dllcache\mrxsmb.sys
    + 2009-02-12 07:00 . 2009-12-04 18:22 455424 c:\windows\Driver Cache\i386\mrxsmb.sys
    + 2008-05-07 05:12 . 2009-11-27 17:11 1291776 c:\windows\system32\dllcache\quartz.dll
    - 2009-02-12 07:01 . 2009-08-04 19:44 2189184 c:\windows\system32\dllcache\ntoskrnl.exe
    + 2009-02-12 07:01 . 2009-12-08 19:27 2189184 c:\windows\system32\dllcache\ntoskrnl.exe
    + 2009-02-12 07:01 . 2009-12-08 18:43 2023936 c:\windows\system32\dllcache\ntkrpamp.exe
    - 2009-02-12 07:01 . 2009-08-04 14:20 2023936 c:\windows\system32\dllcache\ntkrpamp.exe
    - 2009-02-12 07:01 . 2009-08-04 14:20 2066048 c:\windows\system32\dllcache\ntkrnlpa.exe
    + 2009-02-12 07:01 . 2009-12-08 18:43 2066048 c:\windows\system32\dllcache\ntkrnlpa.exe
    - 2009-02-12 07:01 . 2009-08-04 15:13 2145280 c:\windows\system32\dllcache\ntkrnlmp.exe
    + 2009-02-12 07:01 . 2009-12-08 19:26 2145280 c:\windows\system32\dllcache\ntkrnlmp.exe
    - 2009-02-12 07:01 . 2009-08-04 19:44 2189184 c:\windows\Driver Cache\i386\ntoskrnl.exe
    + 2009-02-12 07:01 . 2009-12-08 19:27 2189184 c:\windows\Driver Cache\i386\ntoskrnl.exe
    + 2009-02-12 07:01 . 2009-12-08 18:43 2023936 c:\windows\Driver Cache\i386\ntkrpamp.exe
    - 2009-02-12 07:01 . 2009-08-04 14:20 2023936 c:\windows\Driver Cache\i386\ntkrpamp.exe
    - 2009-02-12 07:01 . 2009-08-04 14:20 2066048 c:\windows\Driver Cache\i386\ntkrnlpa.exe
    + 2009-02-12 07:01 . 2009-12-08 18:43 2066048 c:\windows\Driver Cache\i386\ntkrnlpa.exe
    + 2009-02-12 07:01 . 2009-12-08 19:26 2145280 c:\windows\Driver Cache\i386\ntkrnlmp.exe
    - 2009-02-12 07:01 . 2009-08-04 15:13 2145280 c:\windows\Driver Cache\i386\ntkrnlmp.exe
    + 2009-02-18 17:29 . 2010-02-01 19:26 30364104 c:\windows\system32\MRT.exe
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-04 208952]
    "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168]
    "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-04 455168]
    "igfxtray"="c:\windows\system32\igfxtray.exe" [2007-06-19 101144]
    "igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2007-06-19 84760]
    "igfxpers"="c:\windows\system32\igfxpers.exe" [2007-06-19 125720]
    "SoundMAXPnP"="c:\program files\Analog Devices\SoundMAX\SMax4PNP.exe" [2004-10-14 1388544]
    "AGRSMMSG"="AGRSMMSG.exe" [2005-11-16 88209]
    "SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2004-11-04 98394]
    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2004-11-04 688218]
    "QlbCtrl.exe"="c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe" [2007-10-19 177456]
    "hpWirelessAssistant"="c:\program files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe" [2005-12-13 507904]
    "PTHOSTTR"="c:\program files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE" [2006-06-08 131072]
    "ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe" [2005-02-16 221184]
    "ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-02-16 81920]
    "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-08-04 148888]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-02-27 35696]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

    c:\documents and settings\All Users\Start Menu\Programs\Startup\
    BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2004-6-2 565309]
    Push Client.LNK - c:\program files\Interwise\Participant\pull.exe [2009-2-19 894192]

    [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
    "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
    2009-09-09 13:03 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
    @="Driver"

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Program Files\\Service ADVISOR\\xvds\\xVDSMgr.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "c:\\Program Files\\NetMeeting\\conf.exe"=
    "c:\\Program Files\\Service ADVISOR\\xvds\\xVDS.exe"=
    "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
    "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=

    R1 PersonalSecureDrive;PersonalSecureDrive;c:\windows\system32\drivers\psd.sys [29/11/2005 16:56 36768]
    R3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [21/10/2005 11:19 36352]
    S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [15/01/2009 16:17 9968]
    S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [15/01/2009 16:17 74480]
    S2 gupdate1c98ecf471a7ce4;Google Update Service (gupdate1c98ecf471a7ce4);c:\program files\Google\Update\GoogleUpdate.exe [14/02/2009 18:08 133104]
    S2 LightweightIDOL;LightweightIDOL;c:\program files\Service ADVISOR\SUIR\LightweightIDOL.exe [06/08/2009 15:28 4145152]
    S2 XBaseMS-Service;XBaseMS-Service;c:\program files\ProQuestMS\PartsManagerPro\XBaseSrvr\tbmux32.exe [12/02/2009 08:48 401408]
    S3 GTIPCI21;GTIPCI21;c:\windows\system32\drivers\gtipci21.sys [26/01/2009 09:33 88192]
    S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [15/01/2009 16:17 7408]
    S4 AntiVirSchedulerService;Avira AntiVir Scheduler;"c:\program files\Avira\AntiVir Desktop\sched.exe" --> c:\program files\Avira\AntiVir Desktop\sched.exe [?]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-02-11 c:\windows\Tasks\Google Software Updater.job
    - c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-14 10:45]

    2010-02-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-02-14 18:08]

    2010-02-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2009-02-14 18:08]

    2010-02-09 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-220523388-1844237615-839522115-1003Core.job
    - c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-11 21:33]

    2010-02-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-220523388-1844237615-839522115-1003UA.job
    - c:\documents and settings\User\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-12-11 21:33]
    .
    .
    Supplementary Scan
    .
    uInternet Connection Wizard,ShellNext = hxxp://www.fileresearchcenter.com/whatsrunningpre.html?!!!!!SUPERANTISPYWARE&trial=no&activated=no&appid={A232C587-DDE1-48E5-9A74-84A12559BE96}
    Trusted Zone: deere.com
    TCP: {32BE4059-4986-49B9-BEC5-D5378F96759C} = 212.23.3.100,212.23.6.100
    .

    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2010-02-11 10:29
    Windows 5.1.2600 Service Pack 3 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    DLLs Loaded Under Running Processes

    - - - - - - - > 'winlogon.exe'(888)
    c:\program files\SUPERAntiSpyware\SASWINLO.DLL
    c:\windows\system32\WININET.dll
    .
    Completion time: 2010-02-11 10:30:51
    ComboFix-quarantined-files.txt 2010-02-11 10:30
    ComboFix2.txt 2010-02-11 10:03
    ComboFix3.txt 2010-02-10 13:17
    ComboFix4.txt 2009-07-31 14:27

    Pre-Run: 39,137,538,048 bytes free
    Post-Run: 39,126,986,752 bytes free

    - - End Of File - - 00E89695480D8270B786CBF27D0BDF79
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    UPDATE and run a another FULL scan with malwarebytes

    Then ~



    Download and run the FREE version of DR WEB
    http://www.freedrweb.com/download+cureit/gr/
    Turn your anti virus OFF
    Click CANCEL to the 'Would you like to read purchase terms now?' message
    Click START click OK
    It will auto QUICK scan
    After that set to scan the WHOLE computer and press the 'play' icon

    ***DO NOT UPGRADE TO FULL VERSION***

    (You never answered my av question?)
    :idea:
  • aliEnRIK wrote: »
    Whats this "Security Antivirus" all about? is it legit? Whos it by?

    This is what started this thread off, see post 1:D
  • dogmaryxx
    dogmaryxx Posts: 2,446 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    aliEnRIK wrote: »
    Whats this "Security Antivirus" all about? is it legit? Whos it by?.



    Details here
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    dogmaryxx wrote: »
    Details here

    My bad, I get mixed up with posts sometimes

    May as well follow marys post
    :idea:
  • asininity
    asininity Posts: 1,615 Forumite
    callistris wrote: »
    Unfortunately neither worked.

    The first one went through a scan, but didnt get rid of the problem. The second one showed the problem was there but wouldn't allow me to select it from the list as it was ghosted!
    When I moved the cursor over it, the message said that the programme was unable to remove it!

    I appreciate your time and help:D

    It would appear I miss read your problem The first link was to a program which removes:

    Cyber Security,
    Braviax,
    Alpha Antivirus,
    Green AV,
    Windows Protection Suite,
    Total Security 2009,
    Windows System Suite,
    Personal Antivirus,
    Anti-Virus-1,
    Spyware Guard 2008,
    System Guard 2009,
    Antivirus 2009,
    System Security,
    Antivirus 2010.
    Antivirus Pro 2009,
    Antivirus 360,
    MS Antispyware 2009,
    Malware Doctor,
    AntivirusBEST,
    System Security 2009,
    Antivirus System Pro,
    WinPC Defender

    PC Guard and variants aren't covered, apologies dyslexic moment. AppRemover wouldn't work because of this.
  • dogmaryxx wrote: »
    Details here


    Success its gone:T

    Just a shame its cost to get rid though;)
  • fiddiwebb
    fiddiwebb Posts: 1,806 Forumite
    callistris wrote: »
    Success its gone:T

    Just a shame its cost to get rid though;)

    What cost :huh:
  • fiddiwebb wrote: »
    What cost :huh:

    £29.95 for 1 years subs, but hey I can use it on 3 pc's lol

    Just hope its easy enough to cancel now;)
  • dogmaryxx
    dogmaryxx Posts: 2,446 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    What programme did you buy and why ?

    Manual removal instructions were given.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 354.4K Banking & Borrowing
  • 254.4K Reduce Debt & Boost Income
  • 455.4K Spending & Discounts
  • 247.3K Work, Benefits & Business
  • 604K Mortgages, Homes & Bills
  • 178.4K Life & Family
  • 261.5K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.