Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 





Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > HijackThis Log Help
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read

HijackThis Log Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help.

Reply
 
Thread Tools
Old 04-02-2007, 10:21 PM   #1 (permalink)
Registered User
 
Join Date: Apr 2007
Posts: 1
OS: XP


Help plz..I can't delete these viruses

I have scanned my computer with bit defender deep system scan..

the virus which was detected can't be delete directly
(disinfection failed , delete failed ) ==>> show something like this

here is my scanned result..
anybody plz can solve my problem..
coz i have had my computer format yesterday >"<
i don't want to format it again...

thank you for your help..

//-----------------------------------------------------------------
//
// ProductBitDefender Antivirus Plus v10
// Product10.0
//
// Created on: 03/04/2007 08:47:56
//
//-----------------------------------------------------------------


Virus Statistics

Scan path : C:\
D:\
E:\
F:\
Folders : 3696
Files : 556554
Memory processes scanned : 8
Archives : 4862
Runtime packers : 80583
Identified viruses : 10
Infected files : 10
Memory processes infected : 0
Suspect files : 0
Warnings : 0
Disinfected files : 0
Deleted files : 0
Moved files : 0
I/O errors : 26
Scan time : 01:24:56
Scan speed (files/sec) : 109

Spyware Statistics

Registry keys scanned : 1557
Registry keys infected : 0
Cookies scanned : 37
Cookies infected : 0
Spyware files infected : 0
Spyware threats detected : 0


Virus definitions : 454155
Scan plugins : 16
Archive plugins : 41
Unpack plugins : 6
Mail plugins : 6
System plugins : 5

Virus scan options

Detection
[X] Scan boot sectors
[X] Memory Processes
[X] Scan archives
[X] Scan runtime packers
[X] Scan email

File mask
[ ] Programs
[X] All files
[ ] User defined extensions:
[ ] Exclude extensions: ;

Action

Infected objects
[ ] Ignore
[X] Disinfect
[ ] Delete
[ ] Move to quarantine
[ ] Prompt user

Second action
[ ] Ignore
[ ] Delete
[X] Move to quarantine
[ ] Prompt user

Virus scan options
[X] Enable warnings
[X] Enable heuristics
[ ] Show all files in log
[X] Report file: C:\Documents and Settings\All Users\Application Data\Bitdefender\Desktop\Profiles\Logs\deep_scan\1175561276.log

Spyware scan options

[X] Scan for riskware
[ ] Skip dial and applications from scan
[X] Registry keys
[X] Cookies


Summary:

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0020 Infected: Trojan.Nuker.BattlePong.1.0

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0020 Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0020 Move failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0021 Infected: Trojan.Nuker.IceNuker

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0021 Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0021 Move failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0022 Infected: Trojan.Nuker.Voob

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0022 Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004275.exe=>wise0022 Move failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004287.exe=>(ZIP Sfx o)=>SERV-U32.EXE Infected: Backdoor.Servu.25

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004287.exe=>(ZIP Sfx o)=>SERV-U32.EXE Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004288.exe=>(ZIP Sfx o)=>SERVUDAEMON.EXE Infected: Backdoor.Servu.BE

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004288.exe=>(ZIP Sfx o)=>SERVUDAEMON.EXE Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>SaveNow.exe Detected: Adware.Whenu.Savenow.K

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>SaveNow.exe Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>SaveNow.exe Move failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>Uninst.exe Detected: Adware.Savenow.AU

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>Uninst.exe Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>SaveNowInst.exe=>(CAB Sfx r)=>Uninst.exe Move failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>Newnetbab.exe Detected: Adware.Newdotnet.P

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>Newnetbab.exe Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>cd_install_247.exe=>(ZIP Sfx s)=>cd_clint.dll Detected: Application.Cydoor.D

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>cd_install_247.exe=>(ZIP Sfx s)=>cd_clint.dll Disinfection failed

D:\System Volume Information\_restore{726EE447-9C04-4B7C-BBC1-23CB3F9B7402}\RP7\A0004333.exe=>(ZIP Sfx s)=>cd_install_247.exe=>(ZIP Sfx s)=>cd_htm.dll Detected: Adware.Cydoor.O
shindwerp is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Reply With Quote
Old 04-06-2007, 05:36 AM   #2 (permalink)
Analyst, Security Team
 
MoralTerror's Avatar
 
Join Date: Nov 2005
Location: UK
Posts: 1,966
OS: xp


Re: Help plz..I can't delete these viruses

Hi shindwerp and welcome to TSF

Bitdefender is flagging the infections in your system restore, to clear them out of there you need to remove all previous restore points and create a new clean one. To do that:

Go to Start >> Run - type control sysdm.cpl,,4 & press Enter
  • Tick on the checkbox - Turn off System Restore on all drives
  • Click Apply
Turn it back 'On' by unticking the same checkbox & click OK

If you still have problems then please follow these instructions:

For XP, 2000 or Vista

Download Deckard's System Scanner to your Desktop. Note: You must be logged onto an account with administrator privileges.
  1. Close all applications and windows.
  2. Double-click on dss.exe to run it, and follow the prompts.
  3. When the scan is complete, 2 text files will open - main.txt and extra.txt
  4. Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of main.txt back in this thread (do not attach it).
  5. Please attach extra.txt to your post.


To attach a file to a new post, simply
  1. Click the[Manage Attachments] button under Additional Options > Attach Files on the post composition page, and
  2. copy and paste the following into the "Upload File from your Computer" box:
    C:\Deckard\System Scanner\extra.txt
  3. Click Upload.

-----------------------------------------

For 95, 98 or ME


Download HijackThis to your desktop
  • Make sure you close down EVERY open window and close ALL browser windows. The only thing that should be open is the HijackThis program.
  • If it gives you an intro screen, just choose 'Do a system scan and save a log file'.
  • If not, run a scan and save the log file.
  • Copy the text file (Ctrl+A then Ctrl+C) and paste it (Ctrl+V) into this thread.
  • Do not fix any entries in HijackThis since they may be harmless.
  • Make sure to include the System information at the top of the log as well.
__________________

Proud member of ASAP since 2007

Proud member of UNITE since 2008

Our help is completely free but please consider donating to the site to help keep it running
MoralTerror is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT -7. The time now is 11:33 AM.



Copyright 2001 - 2008, Tech Support Forum

Search Engine Friendly URLs by vBSEO

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82