ANtispy Safeguard

tmorret

New Member
How do I permanently stop this virus from running when I boot up. I have run the Malicious Software Removal tool and an updated Microsoft Security Essentials and neither detected the virus - although the log says it was removed. Whenever I reboot, the "antispyware" screen takes over after I enter my password and the only way I can get to my desktop is by choosing Task Manager and manually stopping the program from running - any ideas?
 

My Computer

Try booting into safe mode, than run your scans. Also use malwarebytes too.
 

My Computer

System One

  • CPU
    Dual L5639 // i7 950 @ 4.0Ghz
    Motherboard
    Evga SR-2 // Gigabyte x58a-ud3r
    Memory
    12Gig Corsair XMS3 // 6Gig OCZ Gold
    Graphics Card(s)
    gtx 560 ti // gtx 260-216
    Monitor(s) Displays
    Dual 22" // Headless
    Hard Drives
    OCZ aGILITY 3, 120Gig + Seagate 500Gig x 2
    PSU
    Silverstone da700 // Corsair 520hx
    Case
    Rosewill BlackHawk Ultra // Antec 900v1
    Cooling
    Twin CM Hyper 212+ // Noctua NH-u12
    Other Info
    Acer 8930 laptop with x9100...
Hello,

My computer is infected with the antispy safeguard virus too. I know it's a fake program and I actually had pretty much the same virus three months ago. It was called Security Tool. I can't believe I was tricked into installing antispy safeguard. Now my computer is useless. It doesn't matter if I start my PC in safe mode or not, this virus pops up right away and displays these so freaking annoying messages about threats. I have malwarebytes but I can't open it. I know how to stop antispy safeguard (you have to end tmp.exe using cmd) but I can't use malwarebytes because of some weird error, I don't know. I've tried to remove it manually, but it comes back again. I've also follow the removal steps on bleeping computer Remove the Fake Microsoft Security Essentials Alert Trojan and AntiSpySafeguard and blogspot Remove the fake Microsoft Security Essentials Alert (Uninstall Instructions) but the virus is still on my pc. Is there anything else I can do? Anything? I mean, maybe there are some other free programs to remove this virus? I don't want to pay for spy doctor or spy hunter. And I really don't want to lose all of my work and pictures. I need all the help I can get! Thank you in advance.
 

My Computer

Hi mssteve :)
Download HijackThis!
http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php

Next,

Download Combofix from any of the links below, and save it to your desktop.<--Important
Link 1
Link 2
Link 3

Click on this link Here to see a list of programs that should be disabled.
The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
If your anti-virus or firewall complains, please allow this script to run as it is not malicious.
Next: Disconnect from the internet. If you are on Cable or DSL, unplug your computer from the modem.
Next: Please disable all onboard security programs (all running with back ground protection) as it may hinder the scanner from working.

This includes Antivirus, Firewall, and any Spyware scanners that run in the background.
  • Double click combofix.exe and follow the prompts.
  • When finished, it will produce a log for you. Post that log and a HiJackthis log in your next reply
http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php
Note: Do not mouseclick combofix's window while its running. That may cause it to stall
Please be patient while the scan runs, at times it may appear to stall.
When finished and after reboot (in case it asks to reboot), it should open a log, combofix.txt.
Post this log in your next reply together with a new hijackthislog.
After rebooting ensure your Security applications have been re-enabled.

In your next reply post:
ComboFix.txt
HJT log taken after the above scan has run
 

My Computer

System One

  • Manufacturer/Model
    Bruce ... somewhere in his 40's
    CPU
    Intel(R) Core(TM)2 Quad CPU
    Motherboard
    INTEL/D975XBX2
    Memory
    4 GB
    Graphics Card(s)
    ATI Radeon HD 2600 Pro
    Monitor(s) Displays
    Samsung SyncMaster 914v
    Screen Resolution
    1280 x 1024
    Hard Drives
    2/500GB each ... ST3500630AS ATA Device.
    One is not connected
    PSU
    Rocketfish 700 W
    Case
    G.Skill Gigabyte Chassis
    Keyboard
    Standard PS/2 Keyboard
    Mouse
    Microsoft PS/2 Mouse
    Internet Speed
    DSL
    Other Info
    ATI HDMI Audio
Help..someone.. A few months ago I was tricked into downloading Security Tool and paid $129.00. Later I looked it up and found out it was a scam. I called the number given to me when my purchase was comfirmed and demanded a refund. I spoke with someone who can barely speak english and was barely audible. To my surprise I got my refund and told them I was going to expose them. Now I downloaded Antispy Safeguard but will not pay. It keeps popping up and don't know how to get rid of it. Any suggestions would be appreciated....Thanx
 

My Computer

Sonny Chiba 57,

I've replied in your other thread and requested you follow the above advice from Jacee and post your reply there and I will then notify Jacee that it exists and request that she go there to help you. She can't handle three separate cases in one thread or things will get too confusing for everyone - so please stay in the other thread and follow the advice she provided in this thread and then post your results in that other thread and I will then see it has been done and let her know.

Thanks and good luck!
 

My Computer

System One

  • Manufacturer/Model
    Dell Inc. MP061 Inspiron E1705
    CPU
    2.00 gigahertz Intel Core 2 Duo 64 kilobyte primary memory
    Motherboard
    Board: Dell Inc. 0YD479 Bus Clock: 166 megahertz
    Memory
    2046 Megabytes Usable Installed Memory
    Graphics Card(s)
    ATI Mobility Radeon X1400 (Microsoft Corporation - WDDM) [Di
    Sound Card
    SigmaTel High Definition Audio CODEC
    Monitor(s) Displays
    Generic PnP Monitor (17.2"vis)
    Screen Resolution
    1920 x 1200 pixels
    Hard Drives
    Hitachi HTS541616J9SA00 [Hard drive] (160.04 GB) -- drive 0, s/n SB2411SJGLLRMB, rev SB4OC74P, SMART Status: Healthy
    Case
    Chassis Serial Number: 5YK95C1
    Keyboard
    Standard PS/2 Keyboard
    Mouse
    Logitech HID-compliant Cordless Mouse
    Internet Speed
    1958 Kbps download ; 754.8 Kbps upload
    Other Info
    Optiarc DVD+-RW AD-5540A ATA Device [CD-ROM drive]

    Dell AIO Printer A940

    Conexant HDA D110 MDC V.92 Modem

    6TO4 Adapter
    Broadcom 440x 10/100 Integrated Controller
    Broadcom 802.11n Network Adapter
    Microsoft ISATAP Adapter
    Teredo Tunneling Pseudo-Interface

    Router Linksys / WRT54G -01
Back
Top