Malware Customer Call - Notes from a real appointment

If you’re new here, you may want to subscribe to my RSS feed. Thanks for visiting!Ms Hager: “Hi Matt,  my computer is giving me a little fit…I don’t know what my husband has been doing”

Matt: “What’cha got going on?”
Ms Hager: “Well, when I turn the computer on I either get a blank desktop or a [...]

SAS Version: 4.22.1014 - Released

SuperAntiSpyware 4.22 was released this week and I’ll be testing the pro version against some new threats (threats found in the wild as of this week).

SuperAntiSpyware Detection and Removal Video. Nov Test 2.

Due to the fact that I forgot to update SAS Pro on my last video test I decided to redo the November test. I’m amazed at how fast and effective SASPro is. I’m eagerly awaiting version 4.22.
…if they would only stop using that Windows installer!!! I WANT SAFEMODE INSTALL CAPABILITIES!!!

SASPro [...]

Announcement From SuperAntiSpyware

Nick Skrepetos left a comment on my blog and I wanted to make sure everyone see’s it.  Also, the product that I said had 2 visible update servers was Malwarebytes, not SuperAntiSpyware (in case you were referring to that).
Hello - Nick Skrepetos here from SUPERAntiSpyware.com - I wanted to clarify our new version (4.22 upcoming) [...]

Malwarebytes Full - Review Coming This Weekend

I’d like to thank Marcin over at Malwarebytes.org for giving me a copy of Malwarebytes Full for my test this weekend.  I’m currently loading it right now and should have a review out by tomorrow (not sure what time).
Speaking of Malwarebytes…I’m going to do another review of Malwarebytes Full and SuperAntiSpyware Pro running at the [...]

SuperAntiSpyware Pro Revisted - A MiniTest

I’m always testing and retesting every month to make sure my method of malware removal is “100% solid”.  I thought I’d record this months test of SuperAntiSpyware Pro and share it with everyone.  The test goes like this:

Install SAS Pro.
Update It
Reboot Into safemode
Run a full scan
Remove anything found
Reboot
Install MBAM
Update MBAM
Run a full MBAM scan
Remove anything [...]

Comodo Internet Security SAS Log

Here is what Comodo Internet Security 3.5 missed (according to SuperAntiSpyware).
Download the CIS-SAS Log
The only particular item that caught my immediate attention was that
Trojan.Mezzia/Resident
C:\WINDOWS\SYSTEM32\WINGVD32.DLL
C:\WINDOWS\SYSTEM32\WINGVD32.DLL
was still resident and active…although you’d never know it really.  The PC ran perfectly normal and continues to do so.

A-Squared SAS and HiJackThis Logs

Yo Dudes (and A-Squared) here are the SAS and HiJackThis Logs after running an A-Squared Deep Scan and setting runtime protection to maximum

Bootable Antivirus Scan Log Sample

I thought I’d upload the stats from one of today’s clients. This client complained of “security alerts” which were just rogue anti-privacy applications.
I cleaned this PC with my bootable antimalware (avira and superantispyware) disc. I added the log below for your viewing pleasure (these infections are fresh)!
Happy Hunting:
=================================
Begin scan in ‘C:\’
C:\Documents and Settings\All [...]

System Doctor 2006 – Rogue Anti-Fixware

Well…this one hit close to home. One of our secretaries called and said she had some popup that kept popping up asking her to correct severe system errors. I immediately knew this was some bull Sh*t rogue application…seen one seen’em all.

System Doctor 2006 uses the same GUI style that Norton Products use. [...]