Author Topic: The definitive method for the Enhanced Protection Mode??  (Read 6441 times)

0 Members and 1 Guest are viewing this topic.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89062
  • No support PMs thanks
Re: The definitive method for the Enhanced Protection Mode??
« Reply #15 on: July 24, 2011, 02:56:17 AM »
In all honesty I have found the MBAM IP blocking to be more hassle than its worth
Why?
I've used PeerBlock in the past. In Windows 7, more problems than good also: crashes, driver issues, etc.

Why, too damn sensitive, so lots of FPs (even some avast IP being blocked); not to mention this is meant to be malicious sites, but it includes many other categories which aren't malicious.

When that happens it is a pain in the rear, so it didn't last long as an enabled option for long. Also as far as malicious sites are concerned, I would rather trust the network and web shields to look after that area.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: The definitive method for the Enhanced Protection Mode??
« Reply #16 on: July 24, 2011, 03:05:05 AM »
Ok, more or less the same I've expected. Thanks David.
The best things in life are free.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89062
  • No support PMs thanks
Re: The definitive method for the Enhanced Protection Mode??
« Reply #17 on: July 24, 2011, 03:14:31 AM »
No problem, most people just say as some do MBAM IP blocking, which is a bit too general as it is meant to be malicious website blocking. See the mbamUI, Protection (image), it is quite clear and for that description it isn't tight enough.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Rednose

  • Pirate Party Member
  • Avast Überevangelist
  • Massive Poster
  • *****
  • Posts: 3739
  • Bits of Freedom : https://www.bof.nl
    • Nederlandstalig Avast! forum
Re: The definitive method for the Enhanced Protection Mode??
« Reply #18 on: July 24, 2011, 04:02:04 AM »
Boys, you are off-topic :-\


To iggy1977,

That is just a small part of the MBAM log, please post the full log so we can see what it found. Btw I have no idea why Essexboy didn't jump in, but I will pm him again.

Greetz, Red.
OS: Win 10 / iOS 17 / Debian 12 / Tails 5
Real Time: Avast Premium Security
On Demand: Malwarebytes
VPN: NordVPN ( NordLynx ) with Threat Protection ( Lite )

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: The definitive method for the Enhanced Protection Mode??
« Reply #19 on: July 24, 2011, 12:21:47 PM »
Boys, you are off-topic :-\


To iggy1977,

That is just a small part of the MBAM log, please post the full log so we can see what it found. Btw I have no idea why Essexboy didn't jump in, but I will pm him again.

Greetz, Red.

C-Nile virus maybe - but I am here now  ;D
Hi lets see what you have - what are your current symptoms ?

To ensure that I get all the information this log will need to be attached (instructions at the end) if it is to large to attach then upload to Mediafire and post the sharing link.

Download OTS  to your Desktop
  • Close ALL OTHER PROGRAMS.
  • Double-click on OTS.exe to start the program.
  • Check the box that says Scan All Users
  • Under Additional Scans check the following:
Reg - Disabled MS Config Items
Reg - Drivers32
Reg - NetSvcs
Reg - SafeBoot Minimal
Reg - Shell Spawning
Evnt - EventViewer Logs (Last 10 Errors)
File - Lop Check

  • Under the Custom Scan box paste this in

%USERPROFILE%\..|smtmp;true;true;true /FP
%SYSTEMDRIVE%\*.exe
/md5start
volsnap.*
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
%systemroot%\*. /mp /s
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
CREATERESTOREPOINT


  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Please attach the log in your next post.

DrKleiner

  • Guest
Re: The definitive method for the Enhanced Protection Mode??
« Reply #20 on: July 24, 2011, 07:58:49 PM »
I think I have a solution. Well, it worked for me.

1. Uninstall your Avast! Antivirus.

2. Download the trial of the version 4.8 (this is important, because this virus is newer, and can easily go trough avast 6 protection.

3. Go to C:/Windows/System32/drivers/etc/ and delete hists. (I dunno what that is but I don't care, because it's called hists.

4. Set your file options to see hidden files.

5. Delete a file named hosts. (If you like to explore, look inside of it)

6. Try to search for a default hosts file to download, if not, download mine:

Code: [Select]
http://www.mediafire.com/?v83ha810irykx6m
After all this, run a boot scan with  the 4.8 , and when done, install Avast! that you previously had.

This did it for me, especially because it wanted to pop-up some ads.