avpx.exe dialer

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by moonfog, Oct 18, 2004.

  1. moonfog

    moonfog Private E-2

    i have tried using spybot S&D and AVG on it but this thing wont be detected and go away! it screws up my internet connection, i keep deleting it but it comes back.
    Normally i dont complain when i get viruses as i can usually remove them or am able to ignore those i cant delete but this one is screwing around with my internet connection which is a problem for me, i've google searched avpx.exe to see if there was any way i could fix this but there doesnt seem to be anything, or im not searching hard enough :rolleyes:
    please help me...
     
  2. Kodo

    Kodo SNATCHSQUATCH

  3. Kemper1989

    Kemper1989 Private E-2

    Just a quick question
    Do you have Dial Up?
     
  4. moonfog

    moonfog Private E-2

    thank you for the link kodo, hope i can fix this...
    yes kemper i have dial up
     
  5. moonfog

    moonfog Private E-2

    hi again, i did the 'read me' steps up to step 4, and i still have the same problem, i can say that the online scans didnt work for me, so i dont know if that is an issue
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What do you mean by the online scans did not work?
    Which browser did you use to run them? It should be IE!
    If they would not run in safe mode (what I expect is your problem), the READ ME tells you to run in normal boot mode and then go back to safe mode for the remaining steps.

    Please try the onlines scans as indicated above and then if still having a problem,
    you should read the tutorial in this Sticky thread NO HIJACK THIS LOG FILES BEFORE READING THIS: HJT Tutorial & LOG File Posting

    Now post a HijackThis as a .txt file attachment to your message. All running programs should be closed, including your web browser, e-mail. Close before running Hijack This!

    Do NOT run Hijack This from any Documents and Settings sub-directory, the Desktop, a temp folder or choose run it directly from the downloaded ZIP file. Place it in its own folder, for example C:\Program Files\HJT
     
  7. moonfog

    moonfog Private E-2

    uh... actually i think i ran the scans in my own browser, not IE, also i ran them under normal boot because in safe mode, i am unable to connect to the internet, yes, i chose the safe mode with network option, still nothing but i'll give another try right now.
    then attempt to post a hijack this log
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay! Run the scans in normal boot mode using IE. (What is "my own browser"?)
     
  9. moonfog

    moonfog Private E-2

    sorry i meant other browser.
    Ok, trendmicro will attempt to load the page but then disappear, happens on all browsers i have, in symantec, the virus scan will say "downloading activex" but thats all it does, and nothing happens.
    So i try hijack this, i followed the steps to using it very carefully but it doesnt seem to work properly, i click the scan button and it scans from R0 up to R3 and then pauses and then exits all by itself, is my computer screwed or what?!
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    "Other browser" is still a rather vague answer.

    See if you can run any of the items from the Alternate Scans section of the READ ME. Especially try to get A-squared to run. Did you run Stinger?

    You never mentioned what OS you have?

    Download the appropriate (for your OS) ProcessExplorer from:
    for Win9x/ME - http://www.sysinternals.com/files/procexp9x.zip
    for WinNT/2K/XP - http://www.sysinternals.com/files/procexpnt.zip

    Unzip it and now run ProcessExplorer and lets configure some options first:
    Click View and select Show Lower Pane. And where it says "Lower Pane View" make sure DLL's is checked. Now click on explorer.exe. Now also under the View menu choose "Select columns" and put a check mark on "Image Path".
    Now click on File and then Save As. And save the process list. Post it back here as an attachment. Also, from now on if I say to kill a process, use ProcessExplorer instead of Task Manager. Sometimes ProcessExplorer can kill things that Task Manager cannot.
     
  11. moonfog

    moonfog Private E-2

    i use avantbrowser, OS is WinXP, and yes i ran stinger
    also tried a squared, detected 1 virus but it doesnt seem to have anything to do with avpx.exe
     

    Attached Files:

  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Do you know what the program on the next line is for:
    ErrorSoftwareBeep.exe 736 C:\Program Files\Fork drv wave\ErrorSoftwareBeep.exe

    You need to goto Add/Remove Programs and uninstall P2P Networking along with anything else you may have from Kazaa.

    You still need to run the online scans (in normal boot mode if necessary) but you must use Internet Explorer.

    Then shut down ALL applications especially any browsers and try running HijackThis again.
     
  13. moonfog

    moonfog Private E-2

    thank you for your help chaslang, for some reason, the problem has ceased.
    i just wanted to post so others who have the same problem might get an idea in this thread, the last thing i did was delete that P2P Networking thing.
    Thanks again chaslang, you should be worshipped for your expertise ;)
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome Moonfrog!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds