geek ('gēk), noun. 1. Obsessive Computer User: somebody who enjoys or takes pride in using computers or other technology, often to what others consider an excessive degree 2. Someone with greater than normal computer skills.
Welcome Guest ( Log In | Register ) to Geeks to Go Computer Help Forum! Here you'll find free, friendly help and support for all your computing questions. Once registered - you'll have the ability to post your question in the appropriate category below. Additionally, if you can assist another member by sharing your computing knowledge, please feel free to post a reply! Best of all - Registration and all assistance, is FREE! Once you've completed registration, simply click the appropriate category below, click on the "new topic" button, and post your question! What are you waiting for? (registering removes advertising)
Group: Admin
Posts: 16,277
Joined: 21-May 03
Member No.: 1
Operating System:
Windows Vista Ultimate
Want to remove System Live Protect (AKA LiveProtect)?
System Live Protect:
How-to remove System Live Protect from your system. System Live Protect is a rougue spyware application. System Live Protect is often installed without consent through a trojan. System Live Protect displays exaggerated or false reports of system errors and infections, then prompts the user to purchase a registered version to remove the purported threats. DO NOT purchase System Live Protect, remove it!
Luckily, S!Ri has made a tool that makes removing System Live Protect an easy, automated task. Simply follow the instructions below:
Select 1 and hit Enter to create a report of the infected files. The report can be found at the root of the system drive, usually at C:\rapport.txt
Clean:
Reboot your computer in Safe Mode (before the Windows icon appears, tap the F8 key continually)
Double-click SmitfraudFix.exe
Select 2 and hit Enter to delete infect files.
You will be prompted: Do you want to clean the registry ? answer Y (yes) and hit Enter in order to remove the Desktop background and clean registry keys associated with the infection.
The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found): Replace infected file ? answer Y (yes) and hit Enter to restore a clean file.
A reboot may be needed to finish the cleaning process. The report can be found at the root of the system drive, usually at C:\rapport.txt
Optional:
To restore Trusted and Restricted site zone, select 3 and hit Enter.
You will be prompted: Restore Trusted Zone ? answer Y (yes) and hit Enter to delete trusted zone.
Note: process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool". It is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user. http://www.beyondlogic.org/consulting/proc...processutil.htm
Has SmitFraudFix helped you? A tool like this takes a lot of time to keep updated. Please consider a donation to S!Ri so he can continue his hard work.
Are you still having problems with System Live Protect, or other malware on your system? Please start a new topic in our Malware Removal Forum, after following these instructions.
Group: Admin
Posts: 16,277
Joined: 21-May 03
Member No.: 1
Operating System:
Windows Vista Ultimate
This topic has been left open to allow specific questions and comments related ONLY to this guide. It's NOT for posting HJT logs, links to your logs, or any other general malware help. Replies not following these rules will be deleted. Thanks for your cooperation.
Group: Admin
Posts: 16,277
Joined: 21-May 03
Member No.: 1
Operating System:
Windows Vista Ultimate
QUOTE(MarkN @ Jul 27 2007, 09:46 AM)
Is this System Live Protect automatically installed on all Vista OS's?
NO! System Live Protect is malicious software (malware), usually installed by a trojan. It's designed to look like a legitimate program, and only purpose is to entice you to buy it.
Group: Member
Posts: 3
Joined: 1-August 07
Member No.: 220,625
Operating System:
Vista
I was infected with this on my laptop running vista. Sadly smitfraudfix is not compatible with vista or so it tells me when I try to run the app in safe mode.
Smitfraudfix v2.207 Unsupported Version. WIndows 2000 / Xp required
press any key to continue.
any suggestions or advice on where to go from here? I'm not finding much through google.
I used ctrl-alt-del to kill the system live process i saw, and was able to delete the folder...but i still get popups telling me my computer is infected and to download and install system live protect.
Group: Member
Posts: 6
Joined: 23-August 07
Member No.: 222,554
Operating System:
XP
Hello! Thank you so much for the tutorial! My background was messed up, it kept going back to red and my icons were flashign white. I followed the tutorial however when I got back on my computer this white X showed up in my toolbar again... >.< I'm pretty sure it's the System Live Protect thing, do I have to do more to get rid of it? My background is back to normal now and everythig seems to be running okay it's just that this...
showed up again... Basically, how do I get rid of that X I guess?
This post has been edited by Princess Kairi: Aug 23 2007, 09:07 PM
Group: Geek U Moderator
Posts: 18,588
Joined: 5-July 04
From: Boston Ma.
Member No.: 2,804
Operating System:
XP Pro,ME, 98
Hello and welcome Princess Kairi I see yuo started a topic in the malware forum that would have been the next suggestion Someone should be along shortly to help you
--------------------
Please do not PM me asking for support. Post on the forums
Don77 Malware Page <--Have I helped you? Please consider donating to help me continue the fight against malware, Thank you
Group: Member
Posts: 3
Joined: 9-September 07
Member No.: 224,018
Operating System:
XP
Hello, I keep getting the "shield with an X on it" from System Live Protect. I have run the Smitfraudfix. The program does not appear to be on my computer, but it ask to install it. Could you please help?
The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.