EggXpert

A community site dedicated to Newegg shoppers.
Welcome to eggXpert.com. Sign in | Join | Help
in Search
Advanced Search

How do you get rid of PC Protection 2008 (mal-ware

Last post 10-02-2008, 4:17 PM by Tracer76. 13 replies.
Sort Posts: Previous Next
  •  09-01-2008, 11:23 AM 384503

    How do you get rid of PC Protection 2008 (mal-ware

    How do you get rid of "PC Protection 2008".  It was attached to a download that I scaned and was not present at that time.  After I downloaded the material it unpack and loaded on my system.
  •  09-01-2008, 11:36 AM 384507 in reply to 384503

    Re: How do you get rid of PC Protection 2008 (mal-ware

  •  09-01-2008, 11:43 AM 384514 in reply to 384507

    Re: How do you get rid of PC Protection 2008 (mal-

    thank you.  I saw that website, but wasn't sure if it was legitimate.
  •  09-01-2008, 11:47 AM 384519 in reply to 384514

    Re: How do you get rid of PC Protection 2008 (mal-

    It is they are not selling anything at all. All they are doing is making sure how to remove rogue mail ware apps like the one you got.


    Photobucket
    My system
  •  09-01-2008, 12:12 PM 384528 in reply to 384519

    Re: How do you get rid of PC Protection 2008 (mal-

    Just wanna let you know, these rogue anti-spyware programs can be some of the more lethal buggers at waxing an OS. Removal can sometimes be near impossible because they're good at hiding and regenerating itself. IF you find that removal isn't successful, your best bet is to back up all personal files, to a media you can scan later of course, and wipe and reinstall. I've dealt with many of these things, so just wanted to let you know, and not be surprised if this is indeed the case. I have seen some successfully removed, but it tends not to be the norm. Best of luck,

    If you want to try a trial security package that I've had pretty good luck with, try:  http://www.aec.cz/index.php?english , download link on left, this multiple engne is pretty good at getting the deeper darker drithers of these type of programs.

    Penewah!


    #1:MSI K9A2 790FX/AMD Phenom 9950BE125w OC 3.12/Xiggie120/Antec1200/OCZ 2X2Gb Reapers PC2 8500/HD4870 1GB ASUS/F1 Spinpoint 640GB&320GB-SATA/PCPC 750W CF Silencer/ LITE-ON & ASUS DVD±R/Vista 64-bit & XP/Dual 22" HannaG Mons/ WD My Book 500GB/Logitech X-530 70 watts RMS 5.1 Black Speaker System /#2:Biostar 780G/AMD 6000+x2/OCZ PlatRev2 2x1GB DDR2800 /Logysis-Acrylic/Vista/Ubuntu 8.1 / Corsair 550W PSU/#3:E8500/Gigabyte P45/HD4850/Xiggie 120/OCZ StlhStrm 700W, CM HAF /mushkinBlack/ Lansing FX4021s
  •  09-04-2008, 11:24 PM 386692 in reply to 384528

    Re: How do you get rid of PC Protection 2008 (mal-

    Penewab2007:
    I have seen some successfully removed, but it tends not to be the norm.

    lol....depends on who's doing it !   lol  

    Tallon41

    [Only ever lost one battle, in '03.  I have better tools, and have learned much about the innerworkings of XP since then.  It would lose today.  This year a couple have taken a few days each to track-down, but I don't mind ~ the cheeky bstrds get sneakier all the time !  LOL ]

     


    What weight does your Spirit have to be in order to be considered "heavy" ?
    ----------------------Me
  •  10-01-2008, 6:17 PM 400261 in reply to 386692

    Re: How do you get rid of PC Protection 2008 (mal-

    Oh, havent been in here in a while! lol.
    Tallon41:

    lol....depends on who's doing it !   lol  

    My friend calling ol' Penewah! a hack again!!?? lol/ j/k

    Tallon41:
    [Only ever lost one battle, in '03.  I have better tools, and have learned much about the innerworkings of XP since then.  It would lose today.  This year a couple have taken a few days each to track-down, but I don't mind ~ the cheeky bstrds get sneakier all the time !  LOL ]
    That is impressive. There's a couple I've run into, once it was removed initially, it would wax the windows login configuaration. Once that happens, its all over. Are you using a security app or a manual? One thing I could get better at, is manual hunt and deletes, but that is time consuming.

    Peace, Penewah! 

     


    #1:MSI K9A2 790FX/AMD Phenom 9950BE125w OC 3.12/Xiggie120/Antec1200/OCZ 2X2Gb Reapers PC2 8500/HD4870 1GB ASUS/F1 Spinpoint 640GB&320GB-SATA/PCPC 750W CF Silencer/ LITE-ON & ASUS DVD±R/Vista 64-bit & XP/Dual 22" HannaG Mons/ WD My Book 500GB/Logitech X-530 70 watts RMS 5.1 Black Speaker System /#2:Biostar 780G/AMD 6000+x2/OCZ PlatRev2 2x1GB DDR2800 /Logysis-Acrylic/Vista/Ubuntu 8.1 / Corsair 550W PSU/#3:E8500/Gigabyte P45/HD4850/Xiggie 120/OCZ StlhStrm 700W, CM HAF /mushkinBlack/ Lansing FX4021s
  •  10-02-2008, 2:24 PM 400986 in reply to 400261

    Re: How do you get rid of PC Protection 2008 (mal-

    Penewab2007:
    Are you using a security app or a manual? One thing I could get better at, is manual hunt and deletes, but that is time consuming.

    Both.  The only really killers out there are Root Kits.  I've read about some that will flash the BIOS and render the PC un cleanable even if formatted.....but I've never actually encountered one of these.  I use the gmer root-kit detector.  Once ID'd it can be tracked-down and removed with the Live CD.  RAIDs are a problem though.  don't have a raid driver on a live cd yet.  

    I use a live CD to take a quick peek a the registry remotely [there are about 5 places you can quickly peek-at and dis-able nastys,] so that when I boot into "safe mode with networking" I don't need to worry about fighting for control of the system, just load the scan tools and drive-on.

    Tallon41

     

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
    ensure AppInit_DLLs is blank....google anything found here, though I've yet to find a legitimate entry.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
    check the path to c:\windows\system32\userinit.exe (and that there are no ADDITIONAL listed exe files.)
    check that UIHost is logonui.exe
    check that System key is blank, google anything found.

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\notify
    look for any key listed not found in google, (or ID'd in google as Malware.)

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run
    export the key, then google everything and delete as needed.

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run
    same as above

    Then inspect
    c:\
    c:\windows
    c:\windows\system32
    c:\windows\system32\drivers [I usually just check here, run CCleaner and let the cleaning tools find the rest ]

    reverse date sort by "date created" must add that column first.  see what c**p floats to the top.  the drivers folder is where most rootkits like to put files.

    run CCleaner on all the temp files from a portable drive on .  Files deleted in the live CD do not go to the recycle bin.

    like anything else you get to know what SHOULD be there and what should not, so it does not take much time for me to do this.


    What weight does your Spirit have to be in order to be considered "heavy" ?
    ----------------------Me
  •  10-02-2008, 3:02 PM 401013 in reply to 400986

    Re: How do you get rid of PC Protection 2008 (mal-

    That looks like an awesome tool T, (Should patent the process man, maybe call it "Tallonender" (Tah-al-o-nen-der) lol. Cut gmer some residuals)

    I'm gonna try it next gig, can't actually wait for someone to get infected! lmao.

    Once again friend, thanx for some great help. Doz eggz!

    Pene

     


    #1:MSI K9A2 790FX/AMD Phenom 9950BE125w OC 3.12/Xiggie120/Antec1200/OCZ 2X2Gb Reapers PC2 8500/HD4870 1GB ASUS/F1 Spinpoint 640GB&320GB-SATA/PCPC 750W CF Silencer/ LITE-ON & ASUS DVD±R/Vista 64-bit & XP/Dual 22" HannaG Mons/ WD My Book 500GB/Logitech X-530 70 watts RMS 5.1 Black Speaker System /#2:Biostar 780G/AMD 6000+x2/OCZ PlatRev2 2x1GB DDR2800 /Logysis-Acrylic/Vista/Ubuntu 8.1 / Corsair 550W PSU/#3:E8500/Gigabyte P45/HD4850/Xiggie 120/OCZ StlhStrm 700W, CM HAF /mushkinBlack/ Lansing FX4021s
  •  10-02-2008, 3:25 PM 401027 in reply to 400986

    Re: How do you get rid of PC Protection 2008 (mal-

    Yep got a really bad one last week. Could not get in to safe mode, command prompt or anything. You could only boot windows normally. Had to format the drive which is not a big deal load up the Xbox while the formats going.

    Tallon what live CD did you use if you don’t mind me asking?

     


    Photobucket
    My system
  •  10-02-2008, 3:32 PM 401033 in reply to 401027

    Re: How do you get rid of PC Protection 2008 (mal-

    It's a type of BART XP.  XPE  the creator called it "the horse power"

     http://www.bjorn3d.com/read_pf.php?cID=1112

    On a side note.

    You can boot a Win2000 CD, use the Recovery Console it has to GREAT effect.  Because unlike the stupid XP Recovery Console...it is not handicapped as to what can copy, and to where, and the dos commands behave as expected.....

    Tallon41


    What weight does your Spirit have to be in order to be considered "heavy" ?
    ----------------------Me
  •  10-02-2008, 3:48 PM 401046 in reply to 401033

    Re: How do you get rid of PC Protection 2008 (mal-

    Thanks Tallon I will download that just in case I get  that nightmare once again.  I agree that the XP Recovery Console is very handicapped. I will have to see if I can locate my old Win 2000 CD.


    Photobucket
    My system
  •  10-02-2008, 4:10 PM 401064 in reply to 401046

    Re: How do you get rid of PC Protection 2008 (mal-

    No prob.

    You don't need a license as it will only be used to enter the Recovery Console, so you can download any ISO for win2k off the net and use it.  The higher the SP level the betters.  I've got an SP3 one I use.

    Tallon41


    What weight does your Spirit have to be in order to be considered "heavy" ?
    ----------------------Me
  •  10-02-2008, 4:17 PM 401070 in reply to 401064

    Re: How do you get rid of PC Protection 2008 (mal-

    Yep I have Win 2000 with SP3 on it just the matter of finding it thru all the CDs I have for the PC. I probably will find Doom 2 in that stack as well with Win 95, LOL. 


    Photobucket
    My system
View as RSS news feed in XML

 Home   Forums   Chat   Blogs   Deals   Newsletter   About 

 FAQ   Terms of Use   Privacy Policy   Contact Us 

©2008 Newegg, Inc. All rights reserved.