Link to home
Start Free TrialLog in
Avatar of SYMOTOM
SYMOTOMFlag for Argentina

asked on

How do I eliminate a virus infection that does not allow to open and or to install an antivirus program

Dear Sir:
My problem is that the hard drive of my PC, I think so,  is infected with a virus
that does not allow to open or to install an antivirus program.
When I try to open the avast! antivirus program  it appears the following message:
"D:\Archivos de programa\Alwil Software\Avast\ashAvast.exe is not a valid application Win32"
Please, help me to solve my problem.
Symotom
Monday 17-November 2008  9:17 hs. (gmt - 3)
SOLUTION
Avatar of jjardine
jjardine
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Avatar of rpggamergirl
rpggamergirl
Flag of Australia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
rpggamergirl:

I see you are linking to 'bleepingcomputer' for downloading ComboFix.
Now, this may only affect me (although it would be strange), but I haven't been able to access any bleepincomputer URL for the past two weeks. Your link doesn't work for me either.

So in case SYMOTOM had the same problem, here's an alternative download location:
http://www.techsupportforum.com/sectools/sUBs/ComboFix.exe
torimar,
There's nothing wrong with Bleepingcomputer.com site, it's accessable and that combofix link works for me. Maybe your pc has some nasties there blocking it? just kidding :)
There are infections that block MBAM and Combofix download, I know, so it's possible for an infected pc not to be able to download tools, that's why my MBAM link is from download.com
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of SYMOTOM

ASKER

Dear rpggamergirl:
It´s Bagle. As you can see in the attached file, there was three infections in my disk. I booted up from another disk and performed an analisys with Elibagle. It came up with that.
But, I still can´t run Avast! ,the error persists. Do you know some other way to clean up this virus??
Waiting for your reply, I thanks in advance.
Symotom.
Monday 17-November 2008  13:44 hs. (gmt - 3)

SatInfo.jpg
In my opinion I would suggest that you Uninstall Avast, and reinstall it and perform a bootable scan.
I guess Avast scan computer files before windows log on.
Or try using another Free antivirus Product...... Plus you must use a firewall coz spywares and viruses nowadays are so aggressive.

Avatar of SYMOTOM

ASKER

Dear moh10ly:
Please, if possible, explain me  what does it means: "you must use a firewall coz spywares",
Thanks in advance
Symotom
I meant that you should Try to secure your computer with more Security Softwares and instead of using only Antivirus, Get an internet security Package solution "Kasper Internet Security - Eset Smart Security" and so on..

Incase you wanted to build your own choice of security package go on with Avast antivirus and use Zone Alarm Professional to be more secured.

I hope that has clarified enough what i meant.

SYMOTOM,
SDFix, Combofix removes bagle infection, but these tools need to be renamed first before saving to your desktop because bagle will just jumps in and stop the tools from running.
With SDFix, you can also download it using another pc and extract it before transfering to the infected pc. Once it's been extracted, bagle then can't stop it from running. And with Combofix you must rename it before saving the file to your desktop.
MalwareBytes also removes bagle (last time I knew it didn't need to be renamed) but who knows maybe bagle have caught up with MBAM as well.
So just renamed the tools before saving to your desktop and let us know how it goes.
Hi moh10ly,
Haven't seen you in awhile, nice to see you again.
Renaming Combofix or other tools AFTER it has been downloaded will not work. It has to be renamed BEFORE SAVING (before downloading the file) because once it's been downloaded bagle knows it.
Hi SYMOTOM
Glad that you solve ur problem.

Hi Rpggamergirl
Just got disappointed of the admins on this site.
hope your fine.