another mcafee and explorer shut down problem

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by oli_c, Oct 12, 2004.

  1. oli_c

    oli_c Private E-2

    Re: shuts down mcafee and explorer

    Hi everyone out there...
    I've been following this thread from a distance over the last few days as I was facing a similar issue to the one from "filipeb"...

    Loads of good advices to follow but...

    Although...
    - I found the svcnet.exe file under system32, deleted it along with all Registry entries using Registrar lte (Thx Chaslang! ...cause Regedit doesn't work!)
    - I deactivated Restore from W XP
    - I did all this in Safe mode
    - I also deleted all of the entries in the "Host" file

    ... I still can't access any virus related website, install any other anti-Virus or run mine (McAfee), nor can I run Hijackthis...

    A
    I noticed also my "Host" file entries re-appear after another Safe mode restart...

    I couldn't find anything like "apvxdwin.exe" or any other nasty ones mentionned by harrt349... but the issue persist.
    Please HELP... getting really desperate.

    Thx,
    OLI
     
    Last edited by a moderator: Oct 12, 2004
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Re: shuts down mcafee and explorer

    oil_c,

    It would have been better to start your own thread for your problem and just reference the thread you have the same problem as. I'm moving you to your own thread and adding the reference for you. Otherwise it will get to difficult to follow what is related to you and the other people. harry349 has already hijacked this thread. I may move him too.
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  4. oli_c

    oli_c Private E-2

    Apologies... I'll start my own thread then, unless you indicate me where you muoved me... :)

    I'll go through the basiscs again... Though I was close to solving and got excited.

    Thx anyway,
    Oli
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This is where I moved you! You are in your own thread. Complete all steps of the READ ME in the order given.
     
  6. oli_c

    oli_c Private E-2

    Hi,
    I've followed all of the "basic" steps I could (I mostly had already)... but no conclusive result beside getting rid of some spyware ADAware found (Claria, Cydoor).

    I can't start mCAffe VS nor acces any Virus related sites, even in safe mode and after deleting all of the entries in my hosts file.

    I can't use Regedit (OK, I've gor Registra Lite) which makes sense since ADAware finds:
    Software\Microsoft\Windows\CurrentVersion\Policies\System (DisableRegistryTools)

    Altough I tried to fix this, It comes back.

    I wish I could somehow run HijackThis, but it won't let me, even if I rename it to Whatever.com or .exe (appears for a split second)...

    I'm now close to Format c:\ :rolleyes:

    Any more idea before I do?

    Thanks a lot...
    OLi
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Save the below bold text to a file name winmon-fix.reg then double click on it and answer yes when asked about merging it into the registry. Let me know if you have any problems doing this and if it helps at all.

    Windows Registry Editor Version 5.00

    [-HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows Monitor = winmon.exe]

    [-HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\Windows Monitor = winmon.exe]
     
  8. oli_c

    oli_c Private E-2

    Thanks for the advice but I've given up and re-installed XP last night...
    Too much time consumed ont his one with very little results.

    Was never able to run HighJackThis...

    Thanks to everyone for your help,
    OLi
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay but to avoid issues like this again you should see this thread: How to Protect yourself from malware!

    Make sure you get all of the Windows Critical update ASAP.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds