From: Aesop69 on
Dear Dave,

It seems a virus is kicking my but. The only problem I can't fix w/o a
reinstall is that the page updatewindows.microsoft.com gives a diagnose
connection page.
My host file is blank, no virus currently running.
avg9 up to date, spybot search & destroy up to date. service pack 3 up to
date as of 5/27/210
peerguardian 2 up to date (on or off doesn't matter)
AVG firewall off or on doesn't matter.
Hijackthis logs are clean.
cwshredder found nothing.

I clean a lot of virus off windows, but this one!

Thank you,
OSX86 V free baby!





"David H. Lipman" wrote:

> 1) Download the following four items...
>
> McAfee Stinger
> http://vil.nai.com/vil/stinger/
>
> Trend Sysclean Package
> http://www.trendmicro.com/download/dcs.asp
>
> Latest Trend Pattern File.
> http://www.trendmicro.com/download/pattern.asp
>
> Adaware SE (free personal version v1.05)
> http://www.lavasoftusa.com/
>
> Create a directory.
> On drive "C:\"
> (e.g., "c:\New Folder")
> or the desktop
> (e.g., "C:\Documents and Settings\lipman\Desktop\New Folder")
>
> Download SYSCLEAN.COM and place it in that directory.
> Download the Trend Pattern File by obtaining the ZIP file.
> For example; lpt281.zip
>
> Extract the contents of the ZIP file and place the contents in the same directory as
> SYSCLEAN.COM .
>
> 2) Update Adaware with the latest definitions.
> 3) Disable System Restore
> http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm
> 4) Reboot your PC into Safe Mode [F8 key during boot]
> 5) Using Trend Sysclean, Stinger and Adaware, perform a Full Scan of your
> platform and clean/delete any infectors/parasites found.
> (a few cycles may be needed)
> 6) Restart your PC and perform a "final" Full Scan of your platform using the three
> utilities; Trend Sysclean, Stinger and Adaware
> 7) Re-enable System Restore and re-apply any System Restore preferences,
> (e.g. HD space to use suggested 400 ~ 600MB),
> 8) Reboot your PC.
> 9) Create a new Restore point
>
>
>
> * * * Please report your results ! * * *
>
> Dave
>
>
>
>
> "Cyril" <Cyril(a)discussions.microsoft.com> wrote in message
> news:FB0DDAB0-E9A0-4EDC-B3EA-144FF14190B3(a)microsoft.com...
> | Hi everyone,
> |
> | For a few days now I have been unable to download windows updates, as well
> | as getting access to some antivirus websites pages... For windows (sp1) I get
> | the error code 80070424. I am unable to access mcafee.com, some pages of
> | trend micro.com etc.
> |
> | AVG 7 and online trendmicro scan regularly find versions of Agobot worms,
> | but despite following eradication procedures and system32 registry/files
> | modifications I can't get the problem solved.
> |
> | Your help would be hence greatly appreciated...
> | Thanks a lot.
> |
> | Cyril
>
>
>
From: MowGreen on
Aesop69 wrote:
> Dear Dave,
>
> It seems a virus is kicking my but. The only problem I can't fix w/o a
> reinstall is that the page updatewindows.microsoft.com gives a diagnose
> connection page.
> My host file is blank, no virus currently running.
> avg9 up to date, spybot search& destroy up to date. service pack 3 up to
> date as of 5/27/210
> peerguardian 2 up to date (on or off doesn't matter)
> AVG firewall off or on doesn't matter.
> Hijackthis logs are clean.
> cwshredder found nothing.
>
> I clean a lot of virus off windows, but this one!
>
> Thank you,
> OSX86 V free baby!


OSX86 ? Please explain which computer you're attempting to clean.

If it's Windows XP/Vista/Windows7, then *strongly suggest* you boot to
Safe Mode and run the Windows Malicious Software Removal Tool as a first
step:
http://www.microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en

IF it detects a Win32/Alureon variant and can not remove it, see:

How to remove malware belonging to the family Rootkit.Win32.TDSS
http://support.kaspersky.com/viruses/solutions?qid=208280684


MowGreen
================
*-343-* FDNY
Never Forgotten
================

banthecheck.com
"Security updates should *never* have *non-security content* prechecked