Antivirus Scan
Antivirus Scan Description
Antivirus Scan belongs to the FakeSpyPro family, which includes members such as Anit-Virus Scanner, Antimalware Go, Antispyware Soft, Antivir Solution Pro, AntiVira Av, Antivirus .NET, Antivirus Action, Antivirus Monitor, Antivirus Soft, Antivirus Suite, Antivirus System PRO, Malware Destructor 2011, PC Security 2011, Security Central, Security Suite and Spyware Protect 2009.
Antivirus Scan Automatic Detection Tool (Recommended)
Is your PC infected with Antivirus Scan? To safely & quickly detect Antivirus Scan, we highly recommend you run the malware scanner listed below.
Download SpyHunter's* Malware Scanner to detect Antivirus Scan
What happens if Antivirus Scan does not let you open SpyHunter or blocks the Internet?
Technical Details
Visual & GUI Characteristics
File System Modifications
Tutorials: If you wish to learn how to remove malware components manually, you can read
the tutorials on how to find malware,
kill unwanted processes,
remove malicious DLLs and
delete other harmful files. Always be
sure to back up your PC before making any changes.
- The following files were created in the system:
# File Name Detection Count 1 %TEMP%\ mrmgojuoa\ okylhjwusbs.exe 658 2 %TEMP%\ blqpfaaan\ kkkgwetusbs.exe 255 3 %TEMP%\ oivatvwba\ opjtrjfusbs.exe 37 4 %TEMP%\ drftepogn\ ajdyfheusbs.exe 37 5 %TEMP%\ cvdbjxlhw\ idlpqvtusbs.exe 16
Posted: December 17, 2010 | By SpywareRemove
Share:
Threat Level: 10/10
Rate this article:
Detection Count: 1,298


More

FIXED IT – Above methods did not work for me either, everytime I tried anything a message came up saying *.exe file was infected – this happened with task manager, virus software, Internet Explorer – everything- in the end did a system restore after going into windows via Safe Mode and then cleaned up using antivirus software.
Tom, Thank you. Didn’t know what how to do the Regedit bit but restarted com and seems to be ok hopefully. With 2 weeks before my coursework is due i owe you big time.
Use firefox if you get the virus.!!!!!!!!!!!! VIRUS DOES NOT AFFECT FIREFOX!!!!!!!!!!!!
I am in desperate need of help. I can’t use the task manager or control panel to even target the software and stop it from letting me activate the norton anti virus software I have just bought. It says everything I open is a threat i.e. norton installer, task manager etc and that I need to purchase the software. Please seombody help me as the above method does not work for me, help help help!!!
If the infected PC is on a network, using the Windows TASKLIST /s command can help you spot the odd executable.
Remote Registry should enable you to identify the correct one by looking at the key that is added to RUN as above.
PSKILL (from Microsoft Sysinternals) can remotely kill this EXE allowing you to delete it too.
Once it’s killed, clean up the registry as above, and reboot.
Hi, I think I got the Antivirus scam though clicking on an advert on facebook. I’ve tried deleting it and now I have restard it in safemode. I’m checking th C: file but there are no files under wmbbxra here.
I diabled it under msconfig.exe but it’s still on my computer, bombarding me with pop ups. I’ve tried everything suggested here and it’s not working! I don’t know what to do- please help.
toms the man thanks
I just want to say that the user TOM left WONDERFUL instructions to remove the virus! I did what he said, step by step, and removed this virus. If you are having the same problems my boyfriend and I had, you will experience: difficulty opening up Internet Explorer, difficulty opening up any antivirus software already on your computer, and even if you try to download a free one from online, the virus will prevent it from completely downloading and running a scan. This frustrated us, because we tried different antivirus software from online.
Follow Tom’s instructions, they work. Also, I’m not familiar w/ computer terms, so I did have to look some things up in Google, so I did use another laptop to do the research….and I Googled “how to open Windows 7 Registry” and I also had to Google “How to boot Windows 7 in Safe Mode” because I didn’t see an option when you turn on your laptop/comp. FYI either continue to press F8 or press and hold F8 down when you reboot……
Also, when its time for you to scan through the registry…..Google how to look up your registry depending on your operating system. Then follow the instructions given on this website in Step 2.
**Remember that Antivirus Scan files may look different then the random letters given on this site. For me, it started w/ a q…….but like this site says, your virus file will have random letters. It will be easy to spot amongst regular files in your configuration and in registry.
Hope I helped. I’m not a techie and I figured this out……..so I’m happy!!
Note that this virus takes a few seconds to load itself when you boot your computer. If you are quick this gives you enough time to run a system restore.
Once the virus loads up it will lock you out of your system restore so do it quickly.
A system restore to a previous date should get rid of the virus, it did for me.
Start computer in safe mode and perform a system restore to a checkpoint prior to the infection. My computer struggled with this and seemed to just stop. At this point I hit the reset button to force a reboot which was successful and restored to prior infection. Everything is working fine now
i got rid of the antivirus scan but the icon remains but the malware is not running anymore how do i remove the icon from my customize bar
start computer in safemode search in c drive for wmbbxra, delete all files by this name, all sorted
Mark,
Mine would not allow me to open the task manager either, so I rebooted, then allowed the virus to start up again, then open the task manager and followed the directions outline. Good luck!
Mark J, I have come across same problem. Wont allow task manager, or Run. Did you find a sollution?
My son picked up the antivirus scan problem. It will not allow access to the internet to download your program. It will not allow me to open task manager, nor to go through Run command to manually remove.
How do I get around these roadblocks?
Hi all,
The posted solution worked for me sort of. Must remember that viruses change exe names often and sometimes even generate new ones on the fly. In my case, there was no agnz.exe in the file name. I followed the post but not the exact names in the file system or the registry. Here is what I did.
1) Boot to safe mode.
Search the registry location using regedit and delete keys pointing to the bad files.(Remember all the disclaimers about editing the registry and be careful to not delete whole hives but only keys containing the offending file names.)
2) Start->run->msconfig.exe->startup tab.
3) Scan visually for suspicious looking file names like the one described…In my case it was totally different so I won\’t bother posting it.
4) If you are not sure if a file name is suspicious, Google it.
5) Once you know the malware name, look at the location in the file system and the registry in the grid. Write them down if necessary.
6) Disable it by unchecking its box.
7) Search the file system location to delete the actual file.
9) Reboot
I did this and the virus is gone. You may have to have a second computer next to you to Google and such since using the internet may invoke the malware. This is when it is good to have friends if you don\’t have two computers.
Hi…I am having issues with antivirusscan malware. I initially killed the process using task manager and successfully got it into quarantine using my trusted antivirus software. However, when I was deleting the malware my computer froze and I had to perform a forced shut down…when I rebooted, the malware was working again but now it is not allowing me to use task manager or any of the other steps you wrote about, popping up a Windows Security Alert stating that the application cannot be executed due to infection. Please let me know if you have any other solutions!!
Thank you for the time you put in with this immensely helpful service!
When I try to open the task manager in Windows Vista, it will immediately close it and tell ask me if I want to activate my anti-virus software- which will bring me to the Virus Scan- guardpe,com website. I tried in safe mode but can\’t find the
HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run ?[random characters]agnz.exe? key
What does random characters mean, which ones will be random?
Why can’t everybody use a legible captcha like yours. It might take me three or more tries on many sites to get one that I can correctly parrot into the right field. KUDOS for your article and your antispam technology.