Brave sentry!

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Ok just tonight this brave sentry window comes up.

I immediately assumed it was a trojan horse, and after 1 minute of googling I found out it was.

How do I get rid of it?!!!


I'm trying to follow guides but it's so hard. I don't know how this got on!


PLEASE HELP!!!!!!!!!!!!!!

 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
i ran spybot S&d and bravesentry came listed as spyware.

i click fix selected problem and it told me the programming is still in use so if i wanted to fix it i would have to restart.

i restarted and im getting the same error!!

IT WONT GO AWAY! HELP!

 

Mem

Lifer
Apr 23, 2000
21,476
13
81
Automatic Brave Sentry removal: link.

Brave Sentry manual removal:
Kill processes:
alg.exe, bravesentry.exe, kernels8.exe, maxd64.exe, services.exe, taskdir.exe, voi[X1].exe, vxgame[X2].exe, vxgamet[X2].exe, vxh8jkdq[X2].exe, win32.exe, xpupdate.exe
Help: how to kill malicious processes

Delete files:
alg.exe, bravesentry.exe, kerneles8.exe, maxd64.exe, services.exe, taskdir.exe, voi[X1].exe, vxgame[X2].exe, vxgamet[X2].exe, vxh8jkdq[X2].exe, win32.exe, xpupdate.exe, bravesentry0.dll, bravesentry1.dll, bravesentry2.dll, bravesentry3.dll, comdlg64.dll, msupdate32.dll, tio[X1].dll, winbixnkq32.dll, zlbw.dll, desktop.html
Help: how to remove harmful files

Delete directories:
C:\Windows\inet20004
C:\Winnt\inet20004
C:\Program Files\BraveSentry

Misc:
Brave Sentry does not create all the listed objects, but installs only a few of them.

[X1] is a combination of three random digits.
[X2] is a random digit.

Exact file location:
desktop.html - C:\Windows or C:\Winnt
alg.exe, services.exe - C:\Windows\inet20004 or C:\Winnt\20004
bravesentry.exe, bravesentry0.dll, bravesentry1.dll, bravesentry2.dll, bravesentry3.dll, winbixnkq32.dll - C:\Program Files\BraveSentry
kernels8.exe, maxd64.exe, vxgame[X2].exe, vxh8jkdq[X3].exe, win32.exe, xpupdate.exe, comdlg64.dll, zlbw.dll - C:\Windows\System, C:\Windows\System32 or C:\Winnt\System32

Other programs to remove Brave Sentry:
? Spy Sweeper - Review - Tutorial - Download

link.
 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
OMG. I did the automatic brave sentry removal and tried to install it and it says "Access is denied, error."

The brave sentry must have done this!!! Also, I just lost on my favorites and my tool bar disappeared.


I just wanna wipe out the entire system. Right now.
I have windows pre-loaded on to the computer, meaning I have no disk's to reinstall.

Suggestions?!

 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
I ran spybot and auto-remove brave sentry but I keep getting errors. Tells me access is denied...wtf?

The trojan horse must have accessed my administrator account.

My digital camera folder is gone and it won't reconigze my memory stick from the camera.
Plus, my favorites are gone and tool bar is missing.


An error keeps popping up alerting me that I have low disk space but I have nothing running in the backround.


My computer is seriously f**ked up, and i'm getting sick of this happening every 3 month's (because my father refuses to buy anti-virus software).


I want to wipe my HD clean and remove everything.

Remember, windows is preloaded on my system so I cannot do a full reformat (meaning deleted windows as well)

I just want to delete everything from my HD, except windows. This would delete the viruses and worms right?



Suggestions?!!! Links and guides will be appreciated.





 

thescreensavers

Diamond Member
Aug 3, 2005
9,916
2
81
Originally posted by: thescreensavers
Download link

try that which is spywaredoctor update it and scan remove waht shows up and that should take care of it.

Do what I said in safe mode. hit F8 at boot up and select safe mode . but update it first in regular mode
 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Originally posted by: TechHead87
And for the love of God, please do your av/spyware scans in safe mode.

But the adware deleted everything except this Brave Sentry thing. I'm already in Safe mode.

I just want to CLEAN my HD and delete everything except windows.

Does anyone have any suggestions?

Windows is preloaded, remember.

what can I do?
 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
this keeps coming up:

http://finance.yahoo.com/q/bc?s=CGDC.PK&t=5d&l=on&z=m&q=l&c=

and another pop up opens in my wordpad:



Sound Revolution Inc. (OTC BB: SRVN) to capitalize on emerging market with Sale of Ring Tones
VANCOUVER, BC? July 17, 2006 - Sound Revolution Inc, a music distribution company, announces the addition of Ring Tones to its recently launched website www.charitytunes.com.

Sound Revolution's www.charitytunes will be adding to its current selection of thousands of songs and music packages with the addition of over 500 unique ring tones. The ring tones will be for sale in digital format and in a variety of genres that include pop, rock, Latin, jazz, rap, classical, electronic, world and jazz. With a technology platform that can handle millions of songs, charitytunes.com expects to add to its ring tone library on a continuous basis during the next year.

Online sales of ring tones have proven to be a popular service and are on the rise. Charitytunes.com intends to fully capitalize on this emerging market.
The Digital Music Report 2006 of the International Federation of the Phonographic Industry reports the following:
Digital format is the fastest-growing delivery channel for music. Global record company revenues from digital sales (digital music & ring tones) reached an estimated $US 1.1 billion in 2005, three times the value in 2004 ($US 380 million).

Single track downloads in 2005 worldwide more than doubled to 420 million, proving to be the most popular online music product.

Ring tones are the most popular digital music format, with 19% of Internet users having downloaded a ring tone ? three times the number that have purchased a track online.
According to Digital Lifestyles 2006 Outlook, by Parks and Associates:
Digital content sales projected to increase more than 300% to grow to nearly $9 billion in the next four years (2010)

About Sound Revolution and Charity Tunes
Music can change the world. Sound Revolution Inc., an innovative new media corporation that marries business with social meaning, intends to change the world - of online content delivery. Sound Revolution wholly owns Charity Tunes Inc., whose charitytunes.com, a music download website, is unique in its promotional partnerships between musical artists and charities. For more info, go to www.soundrevolution.net, www.charitytunes.com, or www.corporate.charitytunes.com.
Forward-Looking Statements
Except for the historical information contained herein, the matters discussed in this press release are forward-looking statements. Actual results may differ materially from those described in forward-looking statements and are subject to risks and uncertainties. See Sound Revolution?s filings with the Securities and Exchange Commission, including, without limitation, Sound Revolution?s recent Form 10-QSB and Form 10-KSB, which identify specific factors that may cause actual results or events to differ materially from those described in the forward-looking statements.
Contact:

Sound Revolution Inc.
Investor Relations
1 888 646 5677
www.soundrevolution.net



Like that. Only those 2. Every couple of minutes. I'm on mozilla and running pop up blocker.

I.
Want.
To.
Reformat.


Please help!


thanks

update: Ya nothing is working again. Can't install anything. WMP won't work...etc..


Please, I just want to delete EVERYTHING. Every file. Except windows.


suggestions?!!!

windows is preloaded.
 

thescreensavers

Diamond Member
Aug 3, 2005
9,916
2
81
Originally posted by: thescreensavers
Originally posted by: thescreensavers
Download link

try that which is spywaredoctor update it and scan remove waht shows up and that should take care of it.

Do what I said in safe mode. hit F8 at boot up and select safe mode . but update it first in regular mode


Why dont you try what I suggested??
 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Originally posted by: thescreensavers
Originally posted by: thescreensavers
Originally posted by: thescreensavers
Download link

try that which is spywaredoctor update it and scan remove waht shows up and that should take care of it.

Do what I said in safe mode. hit F8 at boot up and select safe mode . but update it first in regular mode


Why dont you try what I suggested??


Safe mode is disabled!!!!

It's been disabled since the CS hack incident. I want to reformat my computer without losing windows because it's preloaded on the system!

suggestions?!
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Originally posted by: Noobtastic
Originally posted by: thescreensavers
Originally posted by: thescreensavers
Originally posted by: thescreensavers
Download link

try that which is spywaredoctor update it and scan remove waht shows up and that should take care of it.

Do what I said in safe mode. hit F8 at boot up and select safe mode . but update it first in regular mode


Why dont you try what I suggested??


Safe mode is disabled!!!!

It's been disabled since the CS hack incident. I want to reformat my computer without losing windows because it's preloaded on the system!

suggestions?!
Systems that have Windows preloaded may have a recovery feature built in. For example, you might see a prompt right when the computer's turned on that tells you to press the F12 key for blah blah. So no Windows disc would be needed. Otherwise go buy a new Windows disc and license. What brand & model of computer is it?


 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Originally posted by: albatross
install antivir free
http://www.free-av.com/down/windows/antivir_workstation_win7u_en_h.exe
did you try manual removal?

Yes.


So many thing's aren't working, I rather not elaborate.

I ran system recovery once last time I got a virus on my comp and it didn't wipe out my hard drive.


Will system recovery get rid of the trojan horse? Remember, I didn't download BRave Sentry. It just opened up on my tool bar.

Is there a certain way to do system recovery so it wipes out everything?

Can I delete system recovery points because I don't want the computer to return to a previous state.

I want everything gone.
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Originally posted by: Noobtastic
Originally posted by: albatross
install antivir free
http://www.free-av.com/down/windows/antivir_workstation_win7u_en_h.exe
did you try manual removal?

Yes.


So many thing's aren't working, I rather not elaborate.

I ran system recovery once last time I got a virus on my comp and it didn't wipe out my hard drive.


Will system recovery get rid of the trojan horse? Remember, I didn't download BRave Sentry. It just opened up on my tool bar.

Is there a certain way to do system recovery so it wipes out everything?

Can I delete system recovery points because I don't want the computer to return to a previous state.

I want everything gone.
The computer manufacturer's system recovery would typically re-image the hard drive to factory. But you need to figure out where you're going wrong with your security plan, and it's pretty obvious: you don't use antivirus software and you probably are running loose with an Administrator-class user account. Maybe unpatched & exploitable software too (e.g. QuickTime, WinAmp, older versions of non-Microsoft browsers, and of course Windows and all its components).

So.

1) unplug the network cable and leave it unplugged.

2) re-image the system to factory stock and leave the network unplugged.

3) enable the Windows Firewall (use Windows Help and search for "firewall") and set it to not allow exceptions for now.

4) now plug in the network cable and immediately go straight to http://update.microsoft.com over and over until your system's all patched up.

5) install AntiVir and fully configure all its options so it's got aggressive "rules of engagement."

6) make a new user account named Admin, by going to Control Panel > User Accounts. Now switch your own regular user account to a Limited account instead of Computer Administrator.

7) fully enable DEP like this pic shows

8) Install Windows Defender Beta 2 from http://www.microsoft.com

9) NEVAR EVAR use an Admin-class user account to run any of the following: a web browser (except for going to Windows Update). An IM program. An email program. A media player.

 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Originally posted by: mechBgon
Originally posted by: Noobtastic
Originally posted by: albatross
install antivir free
http://www.free-av.com/down/windows/antivir_workstation_win7u_en_h.exe
did you try manual removal?

Yes.


So many thing's aren't working, I rather not elaborate.

I ran system recovery once last time I got a virus on my comp and it didn't wipe out my hard drive.


Will system recovery get rid of the trojan horse? Remember, I didn't download BRave Sentry. It just opened up on my tool bar.

Is there a certain way to do system recovery so it wipes out everything?

Can I delete system recovery points because I don't want the computer to return to a previous state.

I want everything gone.
The computer manufacturer's system recovery would typically re-image the hard drive to factory. But you need to figure out where you're going wrong with your security plan, and it's pretty obvious: you don't use antivirus software and you probably are running loose with an Administrator-class user account. Maybe unpatched & exploitable software too (e.g. QuickTime, WinAmp, older versions of non-Microsoft browsers, and of course Windows and all its components).

So.

1) unplug the network cable and leave it unplugged.

2) re-image the system to factory stock and leave the network unplugged.

3) enable the Windows Firewall (use Windows Help and search for "firewall") and set it to not allow exceptions for now.

4) now plug in the network cable and immediately go straight to http://update.microsoft.com over and over until your system's all patched up.

5) install AntiVir and fully configure all its options so it's got aggressive "rules of engagement."

6) make a new user account named Admin, by going to Control Panel > User Accounts. Now switch your own regular user account to a Limited account instead of Computer Administrator.

7) fully enable DEP like this pic shows

8) Install Windows Defender Beta 2 from http://www.microsoft.com

9) NEVAR EVAR use an Admin-class user account to run any of the following: a web browser (except for going to Windows Update). An IM program. An email program. A media player.

Thank you so much. But when I need to install programs, it's ok to do it under an admin account right? You can't install anything under limited.

I want to do system recovery.

How do I delete all the recovery points so it doesn't revert back to a month ago when im done??

Everything needs to be gone. Everything.



I really appreciate your response, it's going to make this a lot easier.
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
It's ok to install programs with the Admin account as long as they're not carrying Trojans, viruses and spyware/adware. So be super-duper selective about what you let in the door.

The system recovery option in Windows isn't what you want. You want to re-image the computer back to factory stock using the hidden recovery partition that it probably has. So read your system's owner's manual for info on how to restore it to factory-stock. Again, this will completely revert it to exactly how it came from the factory, it's not a Windows feature. It's a HP/Dell/eMachines/Gateway feature.
 

Noobtastic

Banned
Jul 9, 2005
3,721
0
0
Originally posted by: mechBgon
It's ok to install programs with the Admin account as long as they're not carrying Trojans, viruses and spyware/adware. So be super-duper selective about what you let in the door.

The system recovery option in Windows isn't what you want. You want to re-image the computer back to factory stock using the hidden recovery partition that it probably has. So read your system's owner's manual for info on how to restore it to factory-stock. Again, this will completely revert it to exactly how it came from the factory, it's not a Windows feature. It's a HP/Dell/eMachines/Gateway feature.

I don't have the manual.

Would they have one online, or should I call HP?


 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Try zipping your finger down the row of Function keys (F1-F12) when it's POSTing and showing the HP logo. One of those is probably the one you want.

***WARNING*** This blows away EVARYTHING. Your documents, your pics, your movies, POW. Back up anything you want to save, before you restore.