Avast acting weird!!help..

rigz

software seeker
this morning a friend of mine ask for help because he..just notice their antivirus w/c was Avast (home edition)..because they dont have internet connections,was acting weird :

il upload the pictures later Please check it out..

when he checked his Avast virus chest his some unused>nvidia files sumthing like that (3dvision.exe) were put to virus chest,theme generators and even some adobe reader components (.exe)...i scanned them one by one..and the result is --no virus-- then i tried to restore it,but it cant. .and when i open its folder directory.the avast will beep and beep..and will say "virus has been detected"..more than 30 times. .

What is wrong with this ??!
 

My Computer

OS
windows 7 32 bit build 7600
Motherboard
emx mcp61m2 icafe
Graphics Card(s)
NVIDIA GEforce 8400GS super
Monitor(s) Displays
Samsung LD190
You might want to look through this Avast tutorial about restoring files to make sure you're following the correct steps. In the search box type in restore files from virus chest.

https://support.avast.com/index.php
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
Now look at this photos!! im still going on about your suggestions :
 

Attachments

  • weird 1.JPG
    weird 1.JPG
    100.1 KB · Views: 29
  • weird 2.JPG
    weird 2.JPG
    100.7 KB · Views: 24
  • weird 3.JPG
    weird 3.JPG
    131.3 KB · Views: 46

My Computer

OS
windows 7 32 bit build 7600
Motherboard
emx mcp61m2 icafe
Graphics Card(s)
NVIDIA GEforce 8400GS super
Monitor(s) Displays
Samsung LD190
you can see those are obviously not virus..or malware,trojan,worms etc. .i scanned them all one by one..:confused:
 

My Computer

OS
windows 7 32 bit build 7600
Motherboard
emx mcp61m2 icafe
Graphics Card(s)
NVIDIA GEforce 8400GS super
Monitor(s) Displays
Samsung LD190
you can see those are obviously not virus..or malware,trojan,worms etc. .i scanned them all one by one..:confused:

As gregrocker said earlier, I'd also suggest uninstalling Avast. Something might have corrupted the program. You could go into control panel > programs and features to uninstall but I prefer Revo Uninstaller. It does a better job of removing program leftovers. There are two versions of Revo - free and a 30 day trial. The free should work just fine.

Download Revo Uninstaller Freeware - Free and Full Download - Uninstall software, remove programs, solve uninstall problems

Once Avast is uninstalled I'd follow with gregrocker's additional suggestions. Install Microsoft Security Essentials so there's a security suite on the machine. Download, install, update and run Malwarebytes full scan. If no malware is detected you could either keep MSE or uninstall and go back to Avast and see if it's working correctly.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
Respectfully, I'd suggest you will be better off using Avast's own removal tool rather than any third party solution...

aswClear
 

My Computer

Computer type
PC/Desktop
OS
Windows 7
Respectfully, I'd suggest you will be better off using Avast's own removal tool rather than any third party solution...

aswClear

--also contains directions to be executed in SafeMode.

or, for better exposure post "also" in the avast forums. The developers there would love to hear this one plus you can learn more "how to use avast". As for the files(encountered some nvidia/adobe files wanting to make a hook through .dll's --which seems to be corrupted), will be lost "if" you cannot recover it properly prior uninstall. A re-installation of the main nVidia driver package and the Adobe package looms.

Your screenshots are blank except the "German Sheperd Dog Licking Screen Cleaner.exe" which is clearly a Win32FileInfector there as detected by avast. Can also be an FP. So you better check it via VT/Jotti/Filterbit.

theme generators and even some adobe reader components (.exe)...i scanned them one by one..and the result is --no virus-- then i tried to restore it,but it cant. .and when i open its folder directory.the avast will beep and beep..and will say "virus has been detected"..more than 30 times. .

Where is the scan result or image/screenshot that says, that the files are "clean" and "--no virus--" as you state? That "German Sheperd Dog Licking Screen Cleaner.exe" may be a variant of those 2007 dog-licking-screensaver with embedded trojan affecting display functions(may have very well corrupted the nVidia driver package and Adobe Flash). Kinda/seems like rootkit behavior there and Avast is trying to block it(having a hard time also it seems). MBAM scan will be nice(as gregrocker suggested).

You can send the samples(including the "German Sheperd Dog Licking Screen Cleaner.exe" ) to avast for verification and some copies to VirusTotal/Jotti/Filterbit.

By any chance did you happen to click "Add the file to the scan exclusion list" in the pop-up for the "--no virus--" files you stated?



It's on you what steps you will take. Goodluck.
 
Last edited:

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Win7 Ultimate 64bit
CPU
AMD A8 5600K APU
Motherboard
Gigabyte F2A75MD3H
Memory
16gb DDR3
Graphics Card(s)
Radeon 7560
Sound Card
onboard
Monitor(s) Displays
kingston lcd 23inch wide
Hard Drives
WD 500gb (2)
WD 1TB
Antivirus
EAM + Online Armor Premium -- desktop
Try to repair it before uninstalling it. See below.


 

Attachments

  • Capturar.JPG
    Capturar.JPG
    43.5 KB · Views: 7

My Computer

Computer Manufacturer/Model Number
WALLONN7 / LIN BLACK SERIES II
OS
Windows 7 Ultimate x64 SP1
CPU
AMD PHENOM II X6 1090T 3.2GHz
Motherboard
GIGABYTE GA-890FXA-UD7
Memory
8GB G.SKILL RIPJAWS - F3-10666CL7D
Graphics Card(s)
SAPPHIRE ATI RADEON HD 5870 VAPOR X OC
Sound Card
REALTEK DOLBY HOME THEATER
Monitor(s) Displays
LED LG W2486L
Screen Resolution
1080p
Hard Drives
SEAGATE 1TB -ST31000528AS - AHCI MODE - AS SATA
PSU
ZALMAN ZM1000-HP 1000W
Case
THERMALTAKE XASER VI VG4000SWA
Cooling
140MM x3 / 120MM x1 AIR COOLING - THERMALTAKE
Keyboard
MICROSOFT DIGITAL MEDIA KEYBOARD 3000 - USB
Mouse
MICROSOFT BASIC OPTICAL MOUSE 2.0 - USB
Internet Speed
600KBPS
Other Info
MICROSOFT XBOX 360 CONTROLLER
owh! i forgot to post here that it was already solved. . i used malwarebytes to scan through my system and Avast boot scan :D my files were really affected and thank God i have a System image backup to restore my nvidia and adobe files..but not with the screen savers anymore because it was said it is suspected to contain virus.:D
 

My Computer

OS
windows 7 32 bit build 7600
Motherboard
emx mcp61m2 icafe
Graphics Card(s)
NVIDIA GEforce 8400GS super
Monitor(s) Displays
Samsung LD190
owh! i forgot to post here that it was already solved. . i used malwarebytes to scan through my system and Avast boot scan :D my files were really affected and thank God i have a System image backup to restore my nvidia and adobe files..but not with the screen savers anymore because it was said it is suspected to contain virus.:D

Glad to hear you got this sorted out. Yep, system images are handy things to have. :thumbsup:
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
Help!! Virus experts!

woaw i dont know why i cant kill this malware inside my system! this thread was still a continuation of this post! and luckily it was not still mark as SOLVED even though ive stated it last time.. Can someone help me? i already used Malwarebytes updated and Avast deep boot scan-which i updated it already...and i though everything was fine because i doubled scanned it..but just this morning when i run a program in my drive D: the virus occured again! same virus "hijack registry editor,hijack taskmanager" and a winfile infector kackuka-i think?:mad:
 

My Computer

OS
windows 7 32 bit build 7600
Motherboard
emx mcp61m2 icafe
Graphics Card(s)
NVIDIA GEforce 8400GS super
Monitor(s) Displays
Samsung LD190
Are you using the most recent version number of Malwarebytes? They recently released a new version.
If you can get into Task Manager try to kill the processes, if you are unable to, you might be able to find the evil critter inside your "programs" folder on your main drive, it should be labeled as it's real name or under a name you would think is harmless.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Frankenstein PC
OS
Windows 7 Home Premium 64-bit SP1
CPU
Intel core i7 920 @ 2.67Ghz; Bloomfield 45nm Technology
Motherboard
Intel Corporation DX58SO (J1PR)
Memory
16GB Dual-Channel DDR3 @ 540MHz (7-7-7-19)
Graphics Card(s)
4095MB NVIDIA GeForce GTX 960 (EVGA)
Sound Card
N/A Integrated Audio
Monitor(s) Displays
Acer S231HLbid LED Monitor 23"
Screen Resolution
1920x1080 1080p 60Hz
Hard Drives
BOOT: 59GB ADATA SP900 (SSD)
STORAGE 1: 977GB Hitachi HDS721010CLA (SATA) @7200RPM;
STORAGE 2: 465GB Western Digital WDC WD5000AAKS-65YGA0 (SATA) @ 7200RPM;
PSU
EVGA SuperNOVA 750 G1 80+ Gold (120-G1-0750-XR)
Case
Cooler Master Elite Gaming Case Black 430
Cooling
Cooler Master Hyper 212 Heatsink. Front and rear 120mm fan
Keyboard
Rosewill RIKB-11003
Mouse
James Donkey 112S
Internet Speed
200/40
Antivirus
Avast! Antivirus Free
Browser
Cyberfox x64 / FireFox / PaleMoon x64; kept up-to-date
Other Info
Windows Installed on March 21, 2014

My Computer

Computer Manufacturer/Model Number
WALLONN7 / LIN BLACK SERIES II
OS
Windows 7 Ultimate x64 SP1
CPU
AMD PHENOM II X6 1090T 3.2GHz
Motherboard
GIGABYTE GA-890FXA-UD7
Memory
8GB G.SKILL RIPJAWS - F3-10666CL7D
Graphics Card(s)
SAPPHIRE ATI RADEON HD 5870 VAPOR X OC
Sound Card
REALTEK DOLBY HOME THEATER
Monitor(s) Displays
LED LG W2486L
Screen Resolution
1080p
Hard Drives
SEAGATE 1TB -ST31000528AS - AHCI MODE - AS SATA
PSU
ZALMAN ZM1000-HP 1000W
Case
THERMALTAKE XASER VI VG4000SWA
Cooling
140MM x3 / 120MM x1 AIR COOLING - THERMALTAKE
Keyboard
MICROSOFT DIGITAL MEDIA KEYBOARD 3000 - USB
Mouse
MICROSOFT BASIC OPTICAL MOUSE 2.0 - USB
Internet Speed
600KBPS
Other Info
MICROSOFT XBOX 360 CONTROLLER
Back
Top