We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

HELP: Trojan on pc which is now removed but so is AVG

Options
17810121316

Comments

  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker

    \\?\c:\\Users\Default\Documents\My Pictures: JUNCTION
    Print Name : C:\Users\Default\Pictures
    Substitute Name: C:\Users\Default\Pictures

    \\?\c:\\Users\Default\Documents\My Videos: JUNCTION
    Print Name : C:\Users\Default\Videos
    Substitute Name: C:\Users\Default\Videos

    \\?\c:\\Users\Public\Documents\My Music: JUNCTION
    Print Name : C:\Users\Public\Music
    Substitute Name: C:\Users\Public\Music

    \\?\c:\\Users\Public\Documents\My Pictures: JUNCTION
    Print Name : C:\Users\Public\Pictures
    Substitute Name: C:\Users\Public\Pictures

    \\?\c:\\Users\Public\Documents\My Videos: JUNCTION
    Print Name : C:\Users\Public\Videos
    Substitute Name: C:\Users\Public\Videos


    Failed to open \\?\c:\\Windows\LiveKernelReports: Access is denied.



    Failed to open \\?\c:\\Windows\MEMORY.DMP: Access is denied.



    Failed to open \\?\c:\\Windows\Minidump: Access is denied.



    Failed to open \\?\c:\\Windows\ModemLogs: Access is denied.



    Failed to open \\?\c:\\Windows\Prefetch: Access is denied.


    ...

    ...

    ...


    Failed to open \\?\c:\\Windows\Logs\SystemRestore: Access is denied.



    Failed to open \\?\c:\\Windows\Logs\WindowsBackup: Access is denied.



    Failed to open \\?\c:\\Windows\Logs\CBS\CBS.log: Access is denied.



    Failed to open \\?\c:\\Windows\Logs\CBS\CBS.persist.log: Access is denied.



    Failed to open \\?\c:\\Windows\Logs\DPX\setupact.log: Access is denied.



    Failed to open \\?\c:\\Windows\Logs\DPX\setuperr.log: Access is denied.


    ..
    Failed to open \\?\c:\\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe.config: Access is denied.


    .
    Failed to open \\?\c:\\Windows\Panther\UnattendGC\diagerr.xml: Access is denied.



    Failed to open \\?\c:\\Windows\Panther\UnattendGC\diagwrn.xml: Access is denied.



    Failed to open \\?\c:\\Windows\Panther\UnattendGC\setupact.log: Access is denied.



    Failed to open \\?\c:\\Windows\Panther\UnattendGC\setuperr.log: Access is denied.



    Failed to open \\?\c:\\Windows\security\database\secedit.sdb: Access is denied.



    Failed to open \\?\c:\\Windows\ServiceProfiles\LocalService: Access is denied.



    Failed to open \\?\c:\\Windows\ServiceProfiles\NetworkService: Access is denied.




    ...

    ...

    ...

    ..
    Failed to open \\?\c:\\Windows\System32\config: Access is denied.


    .
    Failed to open \\?\c:\\Windows\System32\ias: Access is denied.





    Failed to open \\?\c:\\Windows\System32\Msdtc: Access is denied.



    Failed to open \\?\c:\\Windows\System32\networklist: Access is denied.


    ..
    Failed to open \\?\c:\\Windows\System32\WDI: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wfp: Access is denied.


    .

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...
    Failed to open \\?\c:\\Windows\System32\LogFiles\HTTPERR: Access is denied.



    Failed to open \\?\c:\\Windows\System32\LogFiles\WMI: Access is denied.





    Failed to open \\?\c:\\Windows\System32\restore\MachineGuid.txt: Access is denied.


    .
    Failed to open \\?\c:\\Windows\System32\sysprep\Panther\diagerr.xml: Access is denied.



    Failed to open \\?\c:\\Windows\System32\sysprep\Panther\diagwrn.xml: Access is denied.



    Failed to open \\?\c:\\Windows\System32\sysprep\Panther\setupact.log: Access is denied.



    Failed to open \\?\c:\\Windows\System32\sysprep\Panther\setuperr.log: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\MOF: Access is denied.


    .
    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\0296C47314AB746EC35476488248FCD9.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\040270F850D5C3C91057DDDA2DA294D8.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\073C87A5E65451B9C103BE54832C90C3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\0A9DBC92D554324656F61F9862679F27.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\0DF617D6737A7561E732F853792261C3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\1E2E58C73053C7775EB226DB5E739137.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\26C097A9392F8C541AD42E89B7909073.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\2A811E5CCC22CC9D7AE2B04EF0402688.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\2AA23BB86A5EBD8BC2D820944E55B233.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\2CE523184A801AA7361A7039E2D6B41D.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\2CEA854D125A606E70A7CD04392A2AAE.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\2D57A7682ACD19214C258D31A06D008F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\3460B7617E0429A960E481B197F238A3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\376786241A5443E41378D25CF812FCC1.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\39EF661167099C8B2F81F813871BA3BC.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\3DC0BABDCA20E5E319117C21BD4BD795.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\3EFE5AEBC6F1152375E7674497F7043F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\422F2CA2C538F8B8C6D7F7D2B92DC785.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\494C62FAA08CD5217399BAA555FF491B.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\4A01E0F376B5833EBA98F0D1D5F60CD1.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\4B471F64BAF831EC7945C820FD5A16E5.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\4CB32C0A77CD4D9B0C9618F73F786C32.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\5774C77265BE4C55B5C6C9718979E015.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\5966D45C7B25EACA46E87DD8E5703964.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\5B5D21CF62E70BACF9D085E6AA6CE143.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\63E48B1766A961491E55D10F8F08C0E7.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\68C49405800705A386C338BECA8D0719.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\69554D930FCA40B0304B9A43A8036F2D.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\6F8564A71977AE6B940705DCC4847A8D.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\72F867EF62976CE9F70993FF3E68A4EB.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\75054C3771DF289038069A9BB1C1FB6E.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\7851AF96EA828F912853F32DB0D96138.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\79CD84A83C85E4F4FEED13F704AFD1A6.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\7BDE76979585395D59B5DA1D62E63C50.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\7F417E1A6D819A9B2FEB55DA6858EA0A.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\87AA2A001CE3E89926688B93E4DC2992.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\8C718B5AFD373885B68D2836088CAF9A.mof: Access is denied.
  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\8E7C06671AFE3C491CA1A729ECB02971.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\902DBFF6F0C3BF7CE18405EF33C5B2C0.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\903E49C444C46FEF5F2C3A189C9CEF71.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\9202D7C90F498A9BFE4E12205CBE26F1.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\96ABB1671705F680578FE240427CBD4F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\9A72EE7775E8021F75961342B8AFD1B4.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\9AD3182A2F39A3E091E15109132EC6CC.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\9CD33F0956942860B50AA1B9330DEFAF.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\9E06E4FE97F0CBB8D659894823F805D7.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\A80FF2DC09487ECD60AFB147B262BDD7.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\A851D3BCFCE697C24E7112D24AFBE9E3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\AA6E0E396C238977CA909EFD82299737.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\AA742824DCADA846BA4B665D686DD5D6.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\BA991ACFF19ADCEED9AFD4DD6559F22A.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\BBF206490BAA431B592F9A13534F43F6.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\BE81B2C0741907C1FC1C42B6223E59AD.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\D1A1B12A7DA3F9675C01397A26DBF4B3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\D361F8B496FD6DAF7BEEF497E09C0DC1.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\D4C4BA54B6A8FA6211E60E2ADFF7426A.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\D5B60695D4528B9B368FC0C80DC5129F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\DE391013DA56ABA39FFF40A9ABDF052F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\DF2FB1F3C8DCD25B01FDE5A4697177CB.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\DF80FD3849FFF74B4BF43E2EA8ADEC8A.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\DFB9AD54AC2D3B8122567AAD3BF3EB7F.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\E04DE4CDFEC284A342159BB920976701.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\E478A5DB75C9721E744C05D78DBACFD3.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\E737DE61441445E1FDFCA45EF5E7D987.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\E9D8A460B2C986DD5FF19F299F4A27EC.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\EC45C70F2A3D9DED718E71631C38E2FE.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\F01326692CC5736EBAC31B9FC2381CF2.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\F81E6BEBC3067C406E6C491608474198.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\wbem\AutoRecover\FBD0E57ECE5A9402023443B148D93F98.mof: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\AMPingLog.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Application.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\DFS Replication.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\HardwareEvents.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\IntelDH.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Internet Explorer.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Key Management Service.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Media Center.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Bluetooth-MTPEnum%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-CorruptedFileRecovery-Client%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-CorruptedFileRecovery-Server%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-DateTimeControlPanel%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-PLA%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Networking%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnostic%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticDataCollector%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticResolver%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-DriverFrameworks-UserMode%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Forwarding%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Help%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-International%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WDI%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WHEA.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-LanguagePackSetup%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-MUI%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-NetworkAccessProtection%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-ParentalControls%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-PowerShell%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Metrics.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Resolver%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Leak-Diagnostic%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-RestartManager%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-TaskScheduler%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-TerminalServices-RDPClient%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-UAC%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-UAC-FileVirtualization%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-WindowsUpdateClient%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Winlogon%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-WinRM%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-Wired-AutoConfig%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-WPD-ClassInstaller%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Microsoft-Windows-WPD-MTPClassDriver%4Operational.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\ODiag.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\OSession.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Security.evtx: Access is denied.


  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Setup.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\System.evtx: Access is denied.



    Failed to open \\?\c:\\Windows\System32\winevt\Logs\Windows PowerShell.evtx: Access is denied.


    .

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    .
    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.16386_none_cef7ceb03914a67f\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.16830_none_cf27e60e38f17483\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.21023_none_cfbf2bc5520477a3\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6001.18000_none_d12e90ac35ffb753\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6001.18226_none_d11ef65c360a818d\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6001.22389_none_d16ab47d4f561502\dnary.xsd: Access is denied.



    Failed to open \\?\c:\\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6002.18005_none_d31a09b83321829f\dnary.xsd: Access is denied.


    ..

    ...

    ...

    ...

    ...

    ...

    ...

    ...
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Try this and then see if you can run a quick scan with malwarebytes (After updating it)

    Download GrantPerms.zip & save it to your desktop.

    http://download.bleepingcomputer.com/farbar/GrantPerms.zip
    • Right click GrantPerms.zip and choose extract all...
    • When the Compressed Folders Extraction wizard opens, click Next > Next > Finish.
    • Right click on GrantPerms.exe and choose "Run as Administrator" to run it.
    • Copy and paste the contents of the codebox below into the whitebox (Don't include Code:)
    [FONT=Times New Roman][FONT=Verdana][SIZE=2]c:\\Program Files\AVG\AVG9\avgtray.exe[/SIZE][/FONT][/FONT]
    [FONT=Times New Roman][FONT=Verdana][SIZE=2]c:\\Program Files\Malwarebytes' Anti-Malware 11 October 2011 JOE\mbam.exe[/SIZE][/FONT][/FONT]
    [FONT=Times New Roman][FONT=Verdana][SIZE=2]c:\\Program Files\PC-Doctor 5 for Windows\Configuration\config.xml[/SIZE][/FONT][/FONT]
     
    
    

    • Click Unlock
    • When done, click "OK".
    • Click List Permissions and post contents of the log file that opens (Perms.txt)
  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    GrantPerms by Farbar
    Ran by charley at 2011-10-12 21:52:08
    ===============================================
    [URL="file://\\?\c:\\Program"]\\?\c:\\Program[/URL] Files\AVG\AVG9\avgtray.exe
    Owner: BUILTIN\Administrators
    DACL(P)(AI):
    BUILTIN\Administrators FULL ALLOW (NI)
    NT AUTHORITY\SYSTEM FULL ALLOW (NI)
    BUILTIN\Users READ/EXECUTE ALLOW (NI)

    [URL="file://\\?\c:\\Program"]\\?\c:\\Program[/URL] Files\Malwarebytes' Anti-Malware 11 October 2011 JOE\mbam.exe
    Owner: BUILTIN\Administrators
    DACL(P)(AI):
    BUILTIN\Administrators FULL ALLOW (NI)
    NT AUTHORITY\SYSTEM FULL ALLOW (NI)
    BUILTIN\Users READ/EXECUTE ALLOW (NI)

    [URL="file://\\?\c:\\Program"]\\?\c:\\Program[/URL] Files\PC-Doctor 5 for Windows\Configuration\config.xml
    Owner: BUILTIN\Administrators
    DACL(NP)(AI):
    NT AUTHORITY\SYSTEM FULL ALLOW (I)
    BUILTIN\Administrators FULL ALLOW (I)
    BUILTIN\Users READ/EXECUTE ALLOW (I)
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Just run a Quick scan with MBAM.
  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    waddler_8 wrote: »
    Just run a Quick scan with MBAM.

    It is running at the moment as she actually let me run it! :j Will this give me another report or log?
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Yes. Post it even if it doesn't find anything.
  • Jo4
    Jo4 Posts: 6,839 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    Sugar, she has found 1 infection so far, take it this is the news you really didn't want to hear?!?
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    It depends what it is really. There's something in the combofix log I want to take a look at, but we're getting there. It's come a long way since not being able to do anything yesterday.

    The problem with malware is there often isn't a "one click fix" solution - especially with infections such as these.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.8K Banking & Borrowing
  • 253K Reduce Debt & Boost Income
  • 453.4K Spending & Discounts
  • 243.7K Work, Benefits & Business
  • 598.5K Mortgages, Homes & Bills
  • 176.8K Life & Family
  • 257K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.