Avast AV stopped working, system slowed to a crawl

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Derfius2, Mar 6, 2015.

  1. Derfius2

    Derfius2 Private E-2

    The other day, I started my machine as normal. But it took longer than usual to boot up. When it did, Avast was flashing a warning that I was unprotected. I clicked and found that it was disabled. I tried to enable protection (using the tray on the task bar) and it simply ignored my clicks. I saw that an update was available and tried to download the update but that also did not work. I also noticed I was unable to login to my Yahoo email account. I confirmed that I was typing the correct password by logging into my account using the browser on my phone. I tried to open Avast from the start menu but the icon was gone. I tried searching for Avast but no files were found. At this point I began the Read & Run me procedure. Per your instructions I did not run CCleaner since I had at least one missing icon from my start menu. I was unable to download MGTools even after uninstalling Avast. I even tried with all three browsers I have (IE, Firefox, Chrome) but was unable to download the file in any browser. The requested logs are attached. Thank you in advance for any help you provide.
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I'm going to need the MGlogs.zip from running MGTools.exe it's most important. Try downloading it in safe mode with networking please.
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Per the RogueKiller and TDSSKiller logs, the PC was already in this mode. Normal boot mode should always be used unless the PC cannot run in normal bootmode.

    What we need to know is exactly what happens when you attempt to download MGtools.exe ?


    Since there are no malware issues showing in the other logs, I tend to doubt there are any malware issues.
     
  4. Derfius2

    Derfius2 Private E-2

    The machine would not run in normal mode. I booted the machine in safe mode with networking. The machine was able to boot. But Avast was still not showing in the Start Menu or coming up in searches. This is what made me think malware. Avast still showed in the system tray. I tried activating Avast with the same result. It was as if I didn't click anything. I tried again in Normal mode and the machine was able to boot but it was impossible to get online with any of the browsers. I tried waiting it out giving it about 20-25 mins, and the home page still had not completely loaded. So I tried again in Safe Mode with Networking. I was able to run through the steps in the Read & Run Me Sticky (including uninstalling Avast and disabling Windows firewall) except for downloading MGTools.exe. Every time I tried the download I would see no progress (tried in Firefox, Chrome and IE) and the message "Blocked: May contain a virus or spyware" in the download progress display.
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Is it possible that with the use of another clean PC and a flashdrive you can transfer MGTools.exe onto the machine we need to look at?
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You just have to ignore this and download it anyway. Disable any protection you may have running in safe mode too just to make sure it is not the cause.

    But I also suggest running the below whether you can run MGtools or not.

    Please do the below so that we can boot to System Recovery Options to run a scan.

    For 32-bit (x86) systems download Farbar Recovery Scan Tool and save it to a flash drive.
    For 64-bit (x64) systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    Enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.

    On the System Recovery Options menu you will get the following options:
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
      Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please attach this file to your next reply. (See: How to attach)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds