Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Real-Time Scanning and Firewall is Turn off and unable to update any Software.


  • Please log in to reply
1 reply to this topic

#1 Siva_Lovable

Siva_Lovable

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:04:48 AM

Posted 23 September 2011 - 12:46 PM

Hiya,

Initially i was using Mcafee Antivirus software and whenever if we try to update it says updated without any accessing to the internet. I choosed complete scan but it dint find any virus, spyware etc. so i thought to upgrade the software so i tried to uninstalled it because i wanted to install Mcafee Antivirus Plus. But when i installed it, it says that Your computer is secure, but when you try to update, it doesnt check for it. Real-Time scanning and firewall is turned off and unable to turn on the services. Then i installed McAfee Virtual Technician, it says several problem that dat file, registry is missing and when you try to fix it, it doesnt allow. i thought some problem in the software. so i have uninstalled it and restarted it. Loged in Safe mode with networking and installed SuperAntiSpyware Professional v5.0.1118 and Malwarebytes and when i scanned i found a Trojan Vundo-Variant /F. Removed via SuperAntiSpyware. Then i installed Mcafee Total Protection and again found same problem like Real-Time scanning and Firewall is disabled and unable to turn on. Then installed HouseCall-Free online virus scan from Trend Micro and found Troj-SPNR.03CI11 and again removed it. At present found that even Windows Update is unable to update any file, but it says "Windows is up to date". So i think there might more virus, trojan, etc or just the two trojan which is still present in my system.

Here is the Problem Log File from Mcafee Virtual Technicial

MVT Information
MVT Version : 6.0.0.0
System Information
Operating System : Microsoft Windows Vista Home Premium EditionHome Edition (Build 6002)
Service Pack : Service Pack 2.0
Language : 4009
Internet Explorer Version : 9.0
Internet Explorer Language : en-us
System Drive Type : NTFS
Physical Memory Available : 778332
Physical Memory Total : 1962444
Virtual Memory Available : 2745588
Virtual Memory Total : 4180628
System Architecture : x86 Family 6 Model 23 Stepping 6Intel® Core™2 Duo CPU E7300 @ 2.66GHz
Date Time : 09/23/2011 22:53:18
Time Zone : GMT +05:30
Product Details
Product Name : VirusScan - McAfee Total Protection
Product Version : 15.0.291
Language : en-us
Partner : McAfee
Account ID : 155289342
Health Check Details
Registry OK
File OK
Process OK
Service 4 service(s) incorrect
Expected Service not Present
Expected : installed
Existing : not installed
Service: mcshield
Expected Service not Present
Expected : installed
Existing : not installed
Service: mfevtp
Expected Service not Present
Expected : installed
Existing : not installed
Service: mfefire
Expected Service not Present
Expected : installed
Existing : not installed
Service: mcnaiann
COM OK
DAT and Engine OK
Top Issues OK
SYSTEM OK


Product Name : QuickClean and Shredder - McAfee Total Protection
Product Version : 11.0.393
Language : en-us
Partner : McAfee
Health Check Details
Registry OK
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : SecurityCenter
Product Version : 11.0.608
Language : en-us
Partner : McAfee
Health Check Details
Registry OK
File OK
Process OK
Service 1 service(s) incorrect
Expected Service not Present
Expected : installed
Existing : not installed
Service: mcmscsvc
COM OK
Top Issues OK
SYSTEM OK


Product Name : SiteAdvisor
Product Version : 3.4.143
Language : en-us
Partner : McAfee
Health Check Details
Registry OK
File 3 file(s) incorrect
Expected File not Present
File: c:\program files\mcafee\siteadvisor\elist.dat
Expected File not Present
File: c:\program files\mcafee\siteadvisor\components\imcffplg.xpt
Expected File not Present
File: c:\program files\mcafee\siteadvisor\components\mcffplg.dll
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : Personal Firewall - McAfee Total Protection
Product Version : 12.0.344
Language : en-us
Partner : McAfee
Account ID : 155289342
Health Check Details
Registry OK
File OK
Process OK
Service 1 service(s) incorrect
Expected Service not Present
Expected : installed
Existing : not installed
Service: McMPFSvc
COM OK
Top Issues OK
SYSTEM OK


Product Name : Parental Controls - McAfee Total Protection
Product Version : 13.0.286
Language : en-us
Partner : McAfee
Account ID : 155289342
Health Check Details
Registry OK
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : AntiSpam - McAfee Total Protection
Product Version : 12.0.292
Language : en-us
Partner : McAfee
Account ID : 155289342
Health Check Details
Registry OK
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : McAfee Anti Theft
Product Version : 2.0.403
Language : en-us
Partner : McAfee
Health Check Details
Registry 2 Registry key(s) incorrect
Expected Registry Key not Present
Key: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_MCPVDRV\0000\Control ActiveService
Expected Registry Value not Present
Expected : McPvDrv Driver
Existing : McPvDrv
Key: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MCPVDRV\0000 DeviceDesc
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : McAfee Online Backup powered by Mozy
Product Version : 3.0.128.0
Language : en
Partner : McAfee
Health Check Details
Registry OK
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK


Product Name : McAfee Network Agent
Product Version : 5.0
Language : en-us
Partner : McAfee
Health Check Details
Registry OK
File OK
Process 1 process(s) incorrect
Expected process not running
Expected : running
Existing : not running
McSvHost.exe
Service 1 service(s) incorrect
Expected Service not Present
Expected : installed
Existing : not installed
Service: McNASvc
COM OK
Top Issues OK
SYSTEM OK


Product Name : Network Management Console
Product Version : 5.0
Language : en-us
Partner : McAfee
Health Check Details
Registry OK
File OK
Process OK
Service OK
COM OK
Top Issues OK
SYSTEM OK




So i need a kind help as early as possible.

BC AdBot (Login to Remove)

 


#2 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,707 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:04:18 PM

Posted 23 September 2011 - 04:41 PM

Welcome aboard Posted Image

Download Security Check from HERE, and save it to your Desktop.

* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.

=============================================================================

Please download MiniToolBox and run it.

Checkmark following boxes:
  • Report IE Proxy Settings
  • Report FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size
Click Go and post the result.

=============================================================================

Download Malwarebytes' Anti-Malware (aka MBAM): https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

=============================================================================

Please download GMER from one of the following locations and save it to your desktop:
  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.

    Posted Image
  • GMER will open to the Rootkit/Malware tab and perform an automatic quick scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and be sure to re-enable your anti-virus, Firewall and any other security programs you had disabled.

IMPORTANT! If for some reason GMER refuses to run, try again.
If it still fails, try to UN-check "Devices" in right pane.
If still no joy, try to run it from Safe Mode.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users