Page 5 of 7 FirstFirst 1234567 LastLast
Results 41 to 50 of 67

Thread: Malware problems with my PC

  1. #41
    Member
    Join Date
    Mar 2014
    Location
    Normanton,West Yorkshire,UK
    Posts
    36

    Default Malware Problems with My PC

    Hi Juliet,
    Firstly there were some errors that Windows Repair reported,so I pasted the log:-

    System Variables
    --------------------------------------------------------------------------------
    OS: Windows Vista (TM) Home Premium
    OS Architecture: 32-bit
    OS Version: 6.0.6002
    OS Service Pack: Service Pack 2
    Computer Name: RODLEY
    Windows Drive: C:\
    Windows Path: C:\Windows
    Current Profile: C:\Users\Stephen
    Current Profile SID: S-1-5-21-3375399300-159844686-3421529289-1000
    Current Profile Classes: S-1-5-21-3375399300-159844686-3421529289-1000_Classes
    Profiles Location: C:\Users
    Profiles Location 2: C:\Windows\ServiceProfiles
    Local Settings AppData: C:\Users\Stephen\AppData\Local
    --------------------------------------------------------------------------------

    System Information
    --------------------------------------------------------------------------------
    System Up Time: 0 Days 00:35:17

    Process Count: 62
    Commit Total: 1.01 GB
    Commit Limit: 4.23 GB
    Commit Peak: 1.26 GB
    Handle Count: 16891
    Kernel Total: 198.27 MB
    Kernel Paged: 143.95 MB
    Kernel Non Paged: 54.32 MB
    System Cache: 1.37 GB
    Thread Count: 740
    --------------------------------------------------------------------------------

    Memory Before Cleaning with CleanMem
    --------------------------------------------------------------------------------
    Memory Total: 2.00 GB
    Memory Used: 1.00 GB(50.3163%)
    Memory Avail.: 1,016.14 MB
    --------------------------------------------------------------------------------

    Cleaning Memory Before Starting Repairs...

    Memory After Cleaning with CleanMem
    --------------------------------------------------------------------------------
    Memory Total: 2.00 GB
    Memory Used: 675.87 MB(33.0462%)
    Memory Avail.: 1.34 GB
    --------------------------------------------------------------------------------

    Starting Repairs...
    Start (23/03/2014 10:41:45)

    01 - Reset Registry Permissions 01/03
    HKEY_CURRENT_USER & Sub Keys
    Start (23/03/2014 10:41:45)
    Running Repair Under Current User Account
    Done (23/03/2014 10:42:16)

    01 - Reset Registry Permissions 02/03
    HKEY_LOCAL_MACHINE & Sub Keys
    Start (23/03/2014 10:42:16)
    Running Repair Under System Account
    Done (23/03/2014 10:46:19)

    01 - Reset Registry Permissions 03/03
    HKEY_CLASSES_ROOT & Sub Keys
    Start (23/03/2014 10:46:19)
    Running Repair Under System Account
    Done (23/03/2014 10:46:44)

    02 - Reset File Permissions: C:
    C: & Sub Folders
    Start (23/03/2014 10:46:44)
    Running Repair Under System Account
    Done (23/03/2014 10:55:09)

    02 - Reset File Permissions: D:
    D: & Sub Folders
    Start (23/03/2014 10:55:09)
    Running Repair Under System Account
    Done (23/03/2014 10:55:20)

    02 - Reset File Permissions: All Profiles
    C:\Users & Sub Folders
    Start (23/03/2014 10:55:20)
    Running Repair Under System Account
    Done (23/03/2014 11:00:50)

    02 - Reset File Permissions: Current Profile
    C:\Users\Stephen & Sub Folders
    Start (23/03/2014 11:00:50)
    Running Repair Under System Account
    Done (23/03/2014 11:01:58)

    02 - Reset File Permissions: Cleanup
    Repairing Restricted Folders Permissions To Avoid Infinite Loops
    Start (23/03/2014 11:01:58)
    Running Repair Under System Account
    Processing ACL of: <\\?\C:\Documents and Settings>
    Reading the SD from <\\?\C:\Documents and Settings> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Application Data>
    Reading the SD from <\\?\C:\ProgramData\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Desktop>
    Reading the SD from <\\?\C:\ProgramData\Desktop> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Documents>
    Reading the SD from <\\?\C:\ProgramData\Documents> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Favorites>
    Reading the SD from <\\?\C:\ProgramData\Favorites> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Start Menu>
    Reading the SD from <\\?\C:\ProgramData\Start Menu> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\ProgramData\Templates>
    Reading the SD from <\\?\C:\ProgramData\Templates> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Application Data>
    Reading the SD from <\\?\C:\Users\All Users\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Desktop>
    Reading the SD from <\\?\C:\Users\All Users\Desktop> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Documents>
    Reading the SD from <\\?\C:\Users\All Users\Documents> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Favorites>
    Reading the SD from <\\?\C:\Users\All Users\Favorites> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Start Menu>
    Reading the SD from <\\?\C:\Users\All Users\Start Menu> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\All Users\Templates>
    Reading the SD from <\\?\C:\Users\All Users\Templates> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default User>
    Reading the SD from <\\?\C:\Users\Default User> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Application Data>
    Reading the SD from <\\?\C:\Users\Default\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Cookies>
    Reading the SD from <\\?\C:\Users\Default\Cookies> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Local Settings>
    Reading the SD from <\\?\C:\Users\Default\Local Settings> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\My Documents>
    Reading the SD from <\\?\C:\Users\Default\My Documents> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\NetHood>
    Reading the SD from <\\?\C:\Users\Default\NetHood> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\PrintHood>
    Reading the SD from <\\?\C:\Users\Default\PrintHood> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Recent>
    Reading the SD from <\\?\C:\Users\Default\Recent> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\SendTo>
    Reading the SD from <\\?\C:\Users\Default\SendTo> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Start Menu>
    Reading the SD from <\\?\C:\Users\Default\Start Menu> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Templates>
    Reading the SD from <\\?\C:\Users\Default\Templates> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Application Data>
    Reading the SD from <\\?\C:\Users\Default\AppData\Local\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\AppData\Local\History>
    Reading the SD from <\\?\C:\Users\Default\AppData\Local\History> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Temporary Internet Files>
    Reading the SD from <\\?\C:\Users\Default\AppData\Local\Temporary Internet Files> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Default\Documents\My Music>
    Reading the SD from <\\?\C:\Users\Default\Documents\My Music> failed with: The system cannot find the path specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the path specified.

    Processing ACL of: <\\?\C:\Users\Default\Documents\My Pictures>
    Reading the SD from <\\?\C:\Users\Default\Documents\My Pictures> failed with: The system cannot find the path specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the path specified.

    Processing ACL of: <\\?\C:\Users\Default\Documents\My Videos>
    Reading the SD from <\\?\C:\Users\Default\Documents\My Videos> failed with: The system cannot find the path specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the path specified.

    Processing ACL of: <\\?\C:\Users\Public\Documents\My Music>
    Reading the SD from <\\?\C:\Users\Public\Documents\My Music> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Public\Documents\My Pictures>
    Reading the SD from <\\?\C:\Users\Public\Documents\My Pictures> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Public\Documents\My Videos>
    Reading the SD from <\\?\C:\Users\Public\Documents\My Videos> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Application Data>
    Reading the SD from <\\?\C:\Users\Stephen\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Cookies>
    Reading the SD from <\\?\C:\Users\Stephen\Cookies> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Local Settings>
    Reading the SD from <\\?\C:\Users\Stephen\Local Settings> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\My Documents>
    Reading the SD from <\\?\C:\Users\Stephen\My Documents> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\NetHood>
    Reading the SD from <\\?\C:\Users\Stephen\NetHood> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\PrintHood>
    Reading the SD from <\\?\C:\Users\Stephen\PrintHood> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Recent>
    Reading the SD from <\\?\C:\Users\Stephen\Recent> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\SendTo>
    Reading the SD from <\\?\C:\Users\Stephen\SendTo> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Start Menu>
    Reading the SD from <\\?\C:\Users\Stephen\Start Menu> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Templates>
    Reading the SD from <\\?\C:\Users\Stephen\Templates> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\AppData\Local\Application Data>
    Reading the SD from <\\?\C:\Users\Stephen\AppData\Local\Application Data> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\AppData\Local\History>

    SetACL finished successfully.
    Processing ACL of: <\\?\C:\Users\Stephen\AppData\Local\Temporary Internet Files>

    SetACL finished successfully.
    Processing ACL of: <\\?\C:\Users\Stephen\Documents\My Music>
    Reading the SD from <\\?\C:\Users\Stephen\Documents\My Music> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Documents\My Pictures>
    Reading the SD from <\\?\C:\Users\Stephen\Documents\My Pictures> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Processing ACL of: <\\?\C:\Users\Stephen\Documents\My Videos>
    Reading the SD from <\\?\C:\Users\Stephen\Documents\My Videos> failed with: The system cannot find the file specified.


    SetACL finished with error(s):
    SetACL error message: The call to GetNamedSecurityInfo () failed
    Operating system error message: The system cannot find the file specified.

    Done (23/03/2014 11:02:09)

    03 - Register System Files
    Start (23/03/2014 11:02:09)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:02:55)

    04 - Repair WMI
    Start (23/03/2014 11:02:55)
    Running Repair Under Current User Account
    Done (23/03/2014 11:05:10)

    05 - Repair Windows Firewall
    Start (23/03/2014 11:05:10)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:05:45)

    06 - Repair Internet Explorer
    Start (23/03/2014 11:05:45)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:06:07)

    08 - Repair Hosts File
    Start (23/03/2014 11:06:07)
    Running Repair Under System Account
    Done (23/03/2014 11:06:10)

    09 - Remove Policies Set By Infections
    Start (23/03/2014 11:06:10)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:06:14)

    11 - Repair Icons
    Start (23/03/2014 11:06:14)
    Running Repair Under Current User Account
    Done (23/03/2014 11:06:17)

    12 - Repair Winsock & DNS Cache
    Start (23/03/2014 11:06:17)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:06:42)

    13 - Remove Temp Files
    Start (23/03/2014 11:06:42)
    Running Repair Under System Account
    Done (23/03/2014 11:06:44)

    14 - Repair Proxy Settings
    Start (23/03/2014 11:06:45)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:06:49)

    15 - Unhide Non System Files
    Start (23/03/2014 11:06:49)
    C:\ - Total Files Unhidden: 107 - Check Unhidden_Files.txt for list of files unhidden
    D:\ - Total Files Unhidden: 37 - Check Unhidden_Files.txt for list of files unhidden
    Done (23/03/2014 11:08:17)

    16 - Repair Windows Updates
    Start (23/03/2014 11:08:17)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:08:37)

    19 - Repair Windows Sidebar/Gadgets
    Start (23/03/2014 11:08:37)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:08:41)

    20 - Repair MSI (Windows Installer)
    Start (23/03/2014 11:08:41)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:08:51)

    22.01 - Repair bat Association
    Start (23/03/2014 11:08:51)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:08:56)

    22.02 - Repair cmd Association
    Start (23/03/2014 11:08:56)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:01)

    22.03 - Repair com Association
    Start (23/03/2014 11:09:01)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:06)

    22.04 - Repair Directory Association
    Start (23/03/2014 11:09:06)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:10)

    22.05 - Repair Drive Association
    Start (23/03/2014 11:09:10)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:15)

    22.06 - Repair exe Association
    Start (23/03/2014 11:09:15)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:20)

    22.07 - Repair Folder Association
    Start (23/03/2014 11:09:20)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:24)

    22.08 - Repair inf Association
    Start (23/03/2014 11:09:25)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:29)

    22.09 - Repair lnk (Shortcuts) Association
    Start (23/03/2014 11:09:29)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:34)

    22.10 - Repair msc Association
    Start (23/03/2014 11:09:34)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:39)

    22.11 - Repair reg Association
    Start (23/03/2014 11:09:39)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:43)

    22.12 - Repair scr Association
    Start (23/03/2014 11:09:44)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:48)

    23 - Repair Windows Safe Mode
    Start (23/03/2014 11:09:48)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:09:53)

    25 - Restore Important Windows Services
    Start (23/03/2014 11:09:53)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:10:11)

    26 - Set Windows Services To Default Startup
    Start (23/03/2014 11:10:11)
    Running Repair Under Current User Account
    Running Repair Under System Account
    Done (23/03/2014 11:10:15)

    Cleaning up empty logs...

    All Selected Repairs Done.
    Done (23/03/2014 11:10:15)
    Total Repair Time: 00:28:32


    ...YOU MUST RESTART YOUR SYSTEM...
    Running Repair Under Current User Account

    The AVG removal tool worked,The folders I mentioned are gone.
    Security Check logs:-

    Results of screen317's Security Check version 0.99.81
    Windows Vista Service Pack 2 x86 (UAC is enabled)
    Internet Explorer 9
    Internet Explorer 8
    ``````````````Antivirus/Firewall Check:``````````````
    Windows Firewall Disabled!
    avast! Antivirus
    Antivirus up to date!
    `````````Anti-malware/Other Utilities Check:`````````
    MVPS Hosts File
    SpywareBlaster 5.0
    Spybot - Search & Destroy
    Malwarebytes Anti-Malware version 1.75.0.1300
    Java(TM) 6 Update 22
    Java(TM) 6 Update 37
    Java 7 Update 51
    Java(TM) SE Runtime Environment 6
    Adobe Flash Player 12.0.0.77
    Adobe Reader 8 Adobe Reader out of Date!
    Adobe Reader 10.1.9 Adobe Reader out of Date!
    Mozilla Firefox 27.0.1 Firefox out of Date!
    Google Chrome 33.0.1750.146
    Google Chrome 33.0.1750.154
    ````````Process Check: objlist.exe by Laurent````````
    Spybot Teatimer.exe is disabled!
    Privatefirewall 6.1 pfsvc.exe
    Privacyware Privatefirewall 7.0 PFGUI.exe
    system32 AvastSvc.exe -?-
    AVAST Software Avast AvastUI.exe
    `````````````````System Health check`````````````````
    Total Fragmentation on Drive C: %
    ````````````````````End of Log``````````````````````
    Hope These Scans Help.
    Regards,Laudorum

  2. #42
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    I see damage to Windows system files probably brought on from infections. Have also seen these types of errors made from some people using registry cleaning tools.

    Let's try a couple of things.

    uninstall some programs

    NOTE** Because of the cleanup process some of the programs I have listed may not be in add/remove anymore this is fine just move to the next item on the list.

    You can remove these programs using add/remove or you can use the free uninstaller from Revo (it does allot better of a job

    Programs to remove
    • Malwarebytes Anti-Malware version 1.75.0.1300 <-- is out of date, below I'll supply new instructions
    • Java(TM) 6 Update 22
    • Java(TM) 6 Update 37
    • Java(TM) SE Runtime Environment 6
    • Adobe Flash Player 12.0.0.7
    • Adobe Reader 8 *Adobe Reader out of Date!
    • Adobe Reader 10.1.9 *Adobe Reader out of Date!


    Please download and install Revo Uninstaller Free
    • Double click Revo Uninstaller to run it.
    • From the list of programs double click on The Program to remove
    • When prompted if you want to uninstall click Yes.
    • Be sure the Moderate option is selected then click Next.
    • The program will run, If prompted again click Yes
    • when the built-in uninstaller is finished click on Next.
    • Once the program has searched for leftovers click Next.
    • Check/tick the bolded items only on the list then click Delete
    • when prompted click on Yes and then on next.
    • put a check on any folders that are found and select delete
    • when prompted select yes then on next
    • Once done click Finish.


    *******************

    Update Adobe reader

    Recently there have been vulnerabilities detected in older versions of Adobe Reader. It is strongly suggested that you update to the current version.

    You can download it from http://www.adobe.com/products/acrobat/readstep2.html
    After installing the latest Adobe Reader, uninstall all previous versions.
    If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.

    If you don't like Adobe Reader (53 MB), you can download Foxit PDF Reader(7 MB) from here. It's a much smaller file to download and uses a lot less resources than Adobe Reader.

    Note: When installing FoxitReader, be careful not to install anything to do with AskBar.




    ************

    Adobe Flash Player is out of date!

    Please download and install the latest version from the links below:

    Adobe Flash Player 12.0.0.77 Final for (Internet Explorer)
    Adobe Flash Player 12.0.0.77 Final for (Firefox, Safari, Opera)
    Note: Your browsers should be closed before proceeding with the installation process.

    ************************

    Install Java:

    Please go here to install Java
    • click on the Free Java Download Button
    • click on Agree and start Free download
    • click on Run
    • click on run again
    • click on install
    • when install is complete click on close


    *********************************

    • Step #7 Run ESET Services repair tool
      • Please download ESET Services Repair Tool and save it to your Desktop;
      • Right click and choose Run as administrator;
      • If security notifications appear, click Continue or Run and then click Yes when asked if you want to proceed;
      • Once the tool has finished, you will be prompted to restart your computer. Click Yes to restart.




    then run the system file checker again

    Go to Start and type in cmd
    Right-click on the cmd icon above, and click Run As Administrator
    At the command prompt, type sfc /scannow, and then press ENTER.
    Note This command may take several minutes to finish. You may be prompted to provide Windows installation source files when you run the sfc /scannow command.
    At the command prompt, type exit, and then press ENTER to close the command prompt.



    do you have your installation CD?

    ***************

    new Updated Malwarebytes Anti-Malware tool.

    Please download Malwarebytes Anti-Malware to your desktop
    Install the progamme and select update
    Once it has updated select Settings > Detection and Protection
    Tick Scan for rootkits


    Go back to the Dashboard and select Scan Now



    If threats are detected, click the Apply Actions button, MBAM will ask for a reboot.





    On completion of the scan (or after the reboot) select View Detailed Log
    Select Export > Select text file and save to the desktop
    Attach/Post that log
    Last edited by Juliet; 2014-03-28 at 19:06.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  3. #43
    Member
    Join Date
    Mar 2014
    Location
    Normanton,West Yorkshire,UK
    Posts
    36

    Default Malware Problems with My PC

    Juliet, I do not have,and never have had a boot disc for Vista,It came pre-installed by Dell.

  4. #44
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    OK
    Can you run the other instructions I listed?
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  5. #45
    Member
    Join Date
    Mar 2014
    Location
    Normanton,West Yorkshire,UK
    Posts
    36

    Default Malware Problems with My PC

    Hi Again,I havn't got that far yet Juliet.I am having trouble deleting MBAM with Revo,I got the dreaded error 5-Access is denied.I have manually deleted almost everything apart from :-vojfezar.thm in the MBAM Prog file.I can't change the permissions or delete.have tried with spybot,but no luck.Do you know of anything else I could try,or shall I just leave it?
    Regards

  6. #46
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    Just leave it for now and see if we can install over the top.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  7. #47
    Member
    Join Date
    Mar 2014
    Location
    Normanton,West Yorkshire,UK
    Posts
    36

    Default Malware Problems with My PC

    Just to confirm I have deleted all items on list apart from MBAM.
    I also have some other files I cannot open:-c\users\stephen\app data\local\temp internet files and c\users\rodley\app data\local\temp internet files.
    This is the error 5 alert again.
    Don't know if these are important,but ithought it best youknow.
    Regards

  8. #48
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    IE5 temp content is hidden on Windows Vista.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  9. #49
    Member
    Join Date
    Mar 2014
    Location
    Normanton,West Yorkshire,UK
    Posts
    36

    Default Malware Problems with My PC

    java and Adobe are now updated.

    ESET Services Repair Tool log:-

    Log Opened: 2014-03-28 @ 23:01:26
    23:01:26 - -----------------
    23:01:26 - | Begin Logging |
    23:01:26 - -----------------
    23:01:26 - Fix started on a WIN_VISTA X86 computer
    23:01:26 - Prep in progress. Please Wait.
    23:01:29 - Prep complete
    23:01:29 - Repairing Services Now. Please wait...
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\BFE.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\Persistent\SubLayer>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\Persistent\Provider>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\Persistent\Filter>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\Persistent>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\BootTime\Filter>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy\BootTime>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters\Policy>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE\Parameters>
    ERROR: Writing SD to <machine\System\CurrentControlset\Services\BFE\Parameters> failed with: Access is denied.
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BFE>
    ERROR: Writing SD to <machine\System\CurrentControlset\Services\BFE> failed with: Access is denied.

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\BITS.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BITS\Security>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BITS\Performance>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BITS\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\BITS>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\iphlpsvc.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\iphlpsvc\Teredo>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\iphlpsvc\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\iphlpsvc\Interfaces>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\iphlpsvc\config>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\iphlpsvc>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\MpsSvc.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc\Security>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc\Parameters\PortKeywords\Teredo>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc\Parameters\PortKeywords\RPC-EPMap>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc\Parameters\PortKeywords>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\MpsSvc>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\SharedAccess.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static\System>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Configurable>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\GloballyOpenPorts>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters\FirewallPolicy>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Epoch>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile\Logging>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults\FirewallPolicy>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess\Defaults>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\SharedAccess>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\WinDefend.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\WinDefend\Security>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\WinDefend\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\WinDefend>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\wscsvc.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wscsvc\Security>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wscsvc\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wscsvc>

    SetACL finished successfully.
    INFO: The restore action ignores the object name parameter (paths are read from the backup file). However, other actions that require the object name may be combined with -restore.
    INFORMATION: Input file for restore operation opened: '.\Vista\wuauserv.sddl'
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wuauserv\Security>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wuauserv\Parameters>
    INFORMATION: Restoring SD of: <machine\System\CurrentControlset\Services\wuauserv>

    SetACL finished successfully.
    23:01:57 - Services Repair Complete.
    23:02:03 - Reboot Initiated

    System File Check:-No Integrity Violations

    MBAM log:-

    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 29/03/2014
    Scan Time: 00:21:21
    Logfile: Mbam log 03 29 2014.txt
    Administrator: Yes

    Version: 2.00.0.1000
    Malware Database: v2014.03.28.09
    Rootkit Database: v2014.03.27.01
    License: Free
    Malware Protection: Disabled
    Malicious Website Protection: Disabled
    Chameleon: Disabled

    OS: Windows Vista Service Pack 2
    CPU: x86
    File System: NTFS
    User: Stephen

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 250031
    Time Elapsed: 19 min, 1 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Enabled
    Shuriken: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 0
    (No malicious items detected)

    Registry Values: 0
    (No malicious items detected)

    Registry Data: 0
    (No malicious items detected)

    Folders: 0
    (No malicious items detected)

    Files: 0
    (No malicious items detected)

    Physical Sectors: 0
    (No malicious items detected)


    (end)
    I look forward to your reply.
    Regards,Laudorum

  10. #50
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    Download

    http://download.bleepingcomputer.com.../vista/BFE.reg



    right click or double click on the reg file, You should get a UAC prompt now

    Click YES & Restart your PC

    Now,Press Windows+ R key and type

    regedit and click ok

    go to

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE

    Right click on it-permissions

    Click on ADD and type

    Everyone and click ok

    Now Click on Everyone

    Below you have permission for users

    Select full control and click ok


    Now,open RUN and type

    services.msc and click ok

    If you receive the User Account Control prompt, click Yes or Continue.
    In the Services window, under the Name column, locate and double-click Base Filtering Engine.
    To the right of Startup type, verify that Automatic appears.

    If Startup type is not Automatic, then in the drop-down list, click Automatic.
    To the right of Service Status, verify that Started appears.

    If the Service status is not Started, then click Start.
    Click OK.
    Exit the Services window.
    Restart the computer.

    How is the computer running today?
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •