 |
 | Virus that i cant seem to shake |  |
puffysoft
Joined: 16 Feb 2012 |
Posts: 0 |
|
|
 |
Posted: Thu Feb 16, 2012 8:33 am |
|
 |
 |
 |
 |
so i have had this virus before and it starts off by disabling my default gateway, then it took over avast,which i had to uninstall, after that it messeswith my internet connection which i have fixed by disabling Upnp under administrative tools>services. but i don't think its gone yet. here is an overview of what clam is showing me is wrong. i also have Peer Blocker giving me a weird addressed accessing me that i didn't see before its source: [fe80::c820:94ac:7ca2:6f49]:546 destination: [ff02::1:2] :547
also i'm getting multiple IMGP accesses i don't know what those are. was wondering if you guys could help me , also assume i don't know anything about computers
Scan Started Wed Feb 15 20:39:28 2012
-------------------------------------------------------------------------------
WARNING: Can't open file C:\hiberfil.sys: Permission denied
WARNING: Can't open file C:\pagefile.sys: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\cevakrnl.rv7: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.004: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.017: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.036: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.042: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.056: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.061: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.070: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.078: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.083: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.097: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.112: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.118: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.122: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.126: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.129: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.133: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.142: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.161: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.164: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.167: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.169: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.171: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.174: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.176: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.178: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.182: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.185: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.188: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.191: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.194: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.196: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.198: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.201: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.203: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.206: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.208: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.210: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.213: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.215: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.226: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.243: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.247: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.251: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.260: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.268: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.297: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.302: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.306: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.308: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.311: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.313: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.319: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.324: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.327: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.329: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.337: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.340: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.345: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.351: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.357: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.361: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.363: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.367: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.372: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.379: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.387: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.396: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.404: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.416: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.432: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.474: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.494: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.513: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.534: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.551: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\emalware.560: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i02: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i07: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i09: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i18: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i23: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i27: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\e_spyw.i34: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\mbx.xmd: No such file or directory
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\pdftok.cvd: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\Plugins\viza.xmd: Permission denied
WARNING: Can't open file C:\Program Files\Common Files\BitDefender\BitDefender Threat Scanner\av32bit_27583\versions.id.8103F8162EF318876CD0332EF1B2002E: No such file or directory
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\00b46a85bf6cf610206bf1349a927910_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\01e1e44c5459ecc852cff5b31476c736_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\04040ef79d07953ffed776901e31a334_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0e5e50179cd5151efea4c190e0f90f3c_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\10fc1b35c59d5c44bbb8ca86dda67336_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2fc8a1a9a2de3fea111834c71aefff1b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\44259e330bad2a0be5f5114469e0322c_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4497d4548a419356913a2f319dffbbc9_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\465d25c53365d60580192511e079b76e_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\87e46a3e49194cfbeb1f67d1b8f6ea8f_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8af06a97e2dd51cef202434b20f94d1b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8ca4cefdc7b5d7e43b1c471aadda42e6_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\94577600973be1a2b65b20c0ec9f7c19_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\96abd689721960b81f226398938c337b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a5c3d01ed344b7288f7e47c787adb481_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ac155daf31df68b968864bc7b314edb6_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d31588bcc84d3a03bbcc7541d88ae4b5_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e93fd35784910ee8a8d95de2e0de74b8_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ecada9d246cf74ad11a872c2b05f23af_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\eef9f443fcf35cf62ae6ba263602de2d_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fce3524784e7772b1df0a1f437de071e_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Search\Data\Applications\Windows\tmp.edb: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb: Permission denied
WARNING: Can't open file C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\MpSfc.bin: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\00b46a85bf6cf610206bf1349a927910_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\01e1e44c5459ecc852cff5b31476c736_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\04040ef79d07953ffed776901e31a334_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\0e5e50179cd5151efea4c190e0f90f3c_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\10fc1b35c59d5c44bbb8ca86dda67336_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\2fc8a1a9a2de3fea111834c71aefff1b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\44259e330bad2a0be5f5114469e0322c_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\4497d4548a419356913a2f319dffbbc9_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\465d25c53365d60580192511e079b76e_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\87e46a3e49194cfbeb1f67d1b8f6ea8f_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\8af06a97e2dd51cef202434b20f94d1b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\8ca4cefdc7b5d7e43b1c471aadda42e6_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\94577600973be1a2b65b20c0ec9f7c19_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\96abd689721960b81f226398938c337b_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\a5c3d01ed344b7288f7e47c787adb481_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\ac155daf31df68b968864bc7b314edb6_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\d31588bcc84d3a03bbcc7541d88ae4b5_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\e93fd35784910ee8a8d95de2e0de74b8_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\ecada9d246cf74ad11a872c2b05f23af_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\eef9f443fcf35cf62ae6ba263602de2d_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Crypto\RSA\MachineKeys\fce3524784e7772b1df0a1f437de071e_018cd37f-eaa7-4133-ac27-b7c867861d65: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Search\Data\Applications\Windows\tmp.edb: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Search\Data\Applications\Windows\Windows.edb: Permission denied
WARNING: Can't open file C:\Users\All Users\Microsoft\Windows Defender\Scans\History\CacheManager\MpSfc.bin: Permission denied
WARNING: Can't open file C:\Users\troll\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1: Permission denied
WARNING: Can't open file C:\Users\troll\ntuser.dat.LOG1: Permission denied
WARNING: Can't open file C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\PeerNetworking\0fb33fc0983edfa8190f1486ba4412def290e1a8.HomeGroupClassifier\02b03453d45e3928d134efe70ba7bbdf\grouping\db.mdb: Permission denied
WARNING: Can't open file C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\PeerNetworking\0fb33fc0983edfa8190f1486ba4412def290e1a8.HomeGroupClassifier\02b03453d45e3928d134efe70ba7bbdf\grouping\tmp.edb: Permission denied
WARNING: Can't open file C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1: Permission denied
WARNING: Can't open file C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1: Permission denied
WARNING: Can't open file C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0: Permission denied
WARNING: Can't open file C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0: Permission denied
WARNING: Can't open file C:\Windows\System32\catroot2\127D0A1D-4EF2-11D1-8608-00C04FC295EE\catdb: Permission denied
WARNING: Can't open file C:\Windows\System32\catroot2\F750E6C3-38EE-11D1-85E5-00C04FC295EE\catdb: Permission denied
WARNING: Can't open file C:\Windows\System32\config\DEFAULT: Permission denied
WARNING: Can't open file C:\Windows\System32\config\DEFAULT.LOG1: Permission denied
WARNING: Can't open file C:\Windows\System32\config\RegBack\DEFAULT: Permission denied
WARNING: Can't open file C:\Windows\System32\config\RegBack\SAM: Permission denied
WARNING: Can't open file C:\Windows\System32\config\RegBack\SECURITY: Permission denied
WARNING: Can't open file C:\Windows\System32\config\RegBack\SOFTWARE: Permission denied
WARNING: Can't open file C:\Windows\System32\config\RegBack\SYSTEM: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SAM: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SAM.LOG1: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SECURITY: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SECURITY.LOG1: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SOFTWARE: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SOFTWARE.LOG1: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SYSTEM: Permission denied
WARNING: Can't open file C:\Windows\System32\config\SYSTEM.LOG1: Permission denied
WARNING: Can't open file C:\Windows\Temp\IswTmp\Logs\ISWSHEX.swl: Permission denied
WARNING: Can't open file C:\Windows\Temp\ZLT03176.TMP: Permission denied
|
|
 |
 | |  |
GuitarBob
Joined: 09 Jul 2006 |
Posts: 9 |
Location: USA |
|
 |
Posted: Thu Feb 16, 2012 1:18 pm |
|
 |
 |
 |
 |
Make sure your antivirus program(s) are up-to-date with their signatures, if you can update them. I see you now have Bitdefender with ClamWin, right? Do a normal scan of the computer with each one. Download Kaspersky's free TDSSKiller anti-rootkit program at https://support.kaspersky.com/faq/?qid=208283363 on the web. Run a normal scan with TDSSKiller--don't do any configuring of it. Update it if an update is available. Updates are in a zipped file, so you will have to know how to use WinZip, 7-zip, G-zip or some other zipping program.
Then get into Windows safe mode by hitting F8 upon bootup about once a second until you see a menu screen. Then choose safe mode with networking so you can update your antiviruses if you were not able to update before. Then run a normal scan with each antivirus program, including TDSSKiller in safe mode. Some viruses are unable to hide from detection in safe mode.
Reboot the computer and run another scan with the antiviruses and TDSSKiller. I hope you are clean at this point. If you are not, get the free rescue CD from F-Secure at https://www.f-secure.com/en/web/labs_global/removal/rescue-cd on the web. Read all the instructions at the web site about how to use the rescue CD. You burn it to a CD as an ISO file. It has an AV that boots up with the Linux operating system. Windows viruses can't hide from the Linux AV, providing it has signatures for them. When you are ready to use the AV, use it on a computer with a direct connection to the internet. Do not use if with a wireless connection, as it will be unable to properly update. Just follow the instructions on screen when the Linux AV boots up.
That's it! If you are still infected, you need professional help now. Good luck!
Regards,
|
|
 |
 | |  |
puffysoft
Joined: 16 Feb 2012 |
Posts: 0 |
|
|
 |
Posted: Fri Feb 17, 2012 4:46 am |
|
 |
 |
 |
 |
thanks for the advice, but if someone would be kind enough to explain these errors to me that would also help
|
|
GuitarBob
Joined: 09 Jul 2006 |
Posts: 9 |
Location: USA |
|
 |
Posted: Fri Feb 17, 2012 5:33 am |
|
 |
 |
 |
 |
You have a lot of files that had permission denied for ClamWin to open/inspect. A lot of them like that may/may not be suspect of being infected. Some files are like that because they are being used at the time ClamWin is scanning. I don't know what you are running on your system, and if you follow the scan/clean advice, they may be taken care of if they are virus-related.
If you used ClamWin before the virus attacked you, did you notice that many permission denied files? Or did you install ClamWin after the virus attack? It is hard to clean up every little thing if a virus attacks before you install an AV, but, again, try the scan/cleaning advice.
Regards,
|
|
puffysoft
Joined: 16 Feb 2012 |
Posts: 0 |
|
|
 |
Posted: Sat Feb 18, 2012 6:49 am |
|
 |
 |
 |
 |
how do i use cd recovery?
|
|
puffysoft
Joined: 16 Feb 2012 |
Posts: 0 |
|
|
 |
Posted: Sat Feb 18, 2012 10:34 am |
|
 |
 |
 |
 |
sorry for the double post, also now it seems that y computer doesn't recognize any of the antivirus i have installed as anti virus,malaware bites, bit defender, clamwin,
|
|
 |
 | |  |
GuitarBob
Joined: 09 Jul 2006 |
Posts: 9 |
Location: USA |
|
 |
Posted: Sat Feb 18, 2012 12:32 pm |
|
 |
 |
 |
 |
One real-time AV is enough! There can be conflicts if you use more than one real-time AV. ClamWin isn't real-time, so it is okay to use with a real-time AV because it only scans "on demand" when you tell it to or when it is scheduled.
Were you able to use the Kaspersky TDSSKiller? Were you able to enter Windows safe mode? You really need to try these steps before using a rescue CD. If the answer is "no" to both of these, however, you probably do need a rescue CD.
Go to the F-Secure site at https://www.f-secure.com/en/web/labs_global/removal/rescue-cd on the web. Download the rescue CD, the release notes, and the user's guide. It is probably best to do this from a "clean" computer, if possible. Read the user's guide to learn what to do. You essentially burn the rescue CD file to a CD as an ISO file. Then you boot up the infected computer with the CD you created. You may have to select an option during your computer's start up routine to boot up with an alternate source. You should be on a wired DSL connection (not wireless) when you boot up with the rescue CD. Select the default option when the CD starts to run.
Many PCs will let you "roll back" the PC to the way it was when you brought it home. You usually have to hit a certain key sequence upon startup. Read your original PC user's manual to see if you can do this, and if so, how.
If you are unable to do any of this, you need professional help.
Regards,
|
|
 |
 | |  |
puffysoft
Joined: 16 Feb 2012 |
Posts: 0 |
|
|
 |
Posted: Mon Feb 20, 2012 8:30 am |
|
 |
 |
 |
 |
im probably going ti just wipe the shit
i wish there was a wayi could get this virus to you guys so you could look at it
|
|
GuitarBob
Joined: 09 Jul 2006 |
Posts: 9 |
Location: USA |
|
 |
Posted: Mon Feb 20, 2012 1:07 pm |
|
 |
 |
 |
 |
Deleting a virus can take some time, but if you follow the steps I gave you, I think they will help.
You can send undetected viruses to Clam AV at https://cgi.clamav.net/sendvirus.cgi on the web. This page is a form that you fill out, and then you can upload the file containing the virus. Clam AV will look at it and get a signature for it.
Clam AV furnishes the scanning engine and virus signatures used by Clam Win.
Regards,
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
All times are GMT
Page 1 of 1
|
|
|
Powered by phpBB © phpBB Group
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.
|  |