Bitdefender Has Been Hi-jacked By Virus

Hi


I am having major problems with a Virus and BitDefender 2010


It started after BitDefender did an overnight scan. It gave


me two results something like:


[system]=]C:\WINDOWS\system32\svchost.exe (full dump)


Generic.PWStealer ( can't remember the rest of the string )


BitDefender could not delete the files, nor could it


Quarantine them, so I just clicked continue.


Then BitDefender said there were issues with my PC;


1. A full system scan had never been performed on my PC


( yet this is done daily at 2am ) and it had just completed


a scan


2. Automatic Updates was disabled.


I enabled automatic updates, but everytime I go back in to


check, it has been disabled again. I also tried doing a


manual update but it failed.


I also tried to do another DEep System Scan, but that


failed too.


I then used my BitDefender Rescue CD ( from March 2009 )


This tonk over 5 Hours to run and came back with No Issues


found.


I also looked in my C:\Windows folder for the sychost.exe


file but could not see it. What i did see though and I have


never seen this before is about 500 files in BLUE text with


names like $NtUninstallKB823182$ The folders are greyed out


and the text is in blue...they just don't look as though


they are supposed to be their?


Bottom line is that I think I have a virus that has taken


over BitDefender and stopping it from doing what's it


supposed to do.


This Virus is not stopping me using the internet or doing


any other work on my PC although I do think it keeps my


Eudora mail siftware from freezing when checking mail.


Ok, one last thing, I also tried running BitDefender in


Safe Mode, but that failed to launch too


Any help, suggestions would be greatly appreciated


Thanks in advance


Bill:)

Comments

  • dave r
    edited September 2009
    Hi


    I am having major problems with a Virus and BitDefender 2010


    It started after BitDefender did an overnight scan. It gave


    me two results something like:


    [system]=]C:\WINDOWS\system32\svchost.exe (full dump)


    Generic.PWStealer ( can't remember the rest of the string )


    BitDefender could not delete the files, nor could it


    Quarantine them, so I just clicked continue.


    Then BitDefender said there were issues with my PC;


    1. A full system scan had never been performed on my PC


    ( yet this is done daily at 2am ) and it had just completed


    a scan


    2. Automatic Updates was disabled.


    I enabled automatic updates, but everytime I go back in to


    check, it has been disabled again. I also tried doing a


    manual update but it failed.


    I also tried to do another DEep System Scan, but that


    failed too.


    I then used my BitDefender Rescue CD ( from March 2009 )


    This tonk over 5 Hours to run and came back with No Issues


    found.


    I also looked in my C:\Windows folder for the sychost.exe


    file but could not see it. What i did see though and I have


    never seen this before is about 500 files in BLUE text with


    names like $NtUninstallKB823182$ The folders are greyed out


    and the text is in blue...they just don't look as though


    they are supposed to be their?


    Bottom line is that I think I have a virus that has taken


    over BitDefender and stopping it from doing what's it


    supposed to do.


    This Virus is not stopping me using the internet or doing


    any other work on my PC although I do think it keeps my


    Eudora mail siftware from freezing when checking mail.


    Ok, one last thing, I also tried running BitDefender in


    Safe Mode, but that failed to launch too


    Any help, suggestions would be greatly appreciated


    Thanks in advance


    Bill:)


    Hi, the files in the windows folder in blue .txt are normal ,they would normally be hidden,they relate to microsoft system files DON'T Delete them,as you will be re-installing windows if you do,


    As for the problems that you describe with bd, firstly the virus, this is probably just a false positive,


    Before you do anything if you could check the log file (virus report) that bd creates at the end of the scan,( to do this you need to open the bd ui,select antivirus, deepscan, on deepscan right click a drop down box should appear,select view logs, and open the log that contains details of this infected file, then if you could either take a screenshot of it, or copy the details of the virus name/location,and the name of the file, and post here),someone maybe able to assist you further


    and as for the bd installation, maybe this is somehow corrupted, personally i would ignore the virus warning, download the bit defender un-install tool, use it to un-install bd, reboot, run the tool again, check that all the folders that bd had made are deleted,use ccleaner (freeware app) to clean the windows registry (select to backup before changes) then re-install/update bd, run a scan and see if it still detects the same file as a virus,btw, if you look in the veiw logs menu ( hover mouse over red ball icon in taskbar left click on it to open bd ui,at the right hand lower corner of the ui," view logs" then antivirus all entries will be in there or should be,then you can post the details of this file and virus name

  • Hi,


    Thanks for the quick response


    I don't seem to be able to get the log you ask for. When I


    open BD I click on Anti-Virus.


    I then see 3 Buttons in the LH Column under "Quick Tasks"


    ...one of them is "scan" This has a drop Down Box and there


    is is; "My Documents Scan" and "Deep System Scan" When I


    right Click In Deep Scan nothing happens.


    There is a "Logs" link right at the bottom of the window in


    the tray and when I open it, it gives two windows; "Real


    Time Protection" and "on-demand Tasks"


    It looks as though the last Deep Scan performed was Sept


    20th all the others failed. When I try to do a manual scan


    it will only work when I select the "My Documents" option.


    Seeing as I can't do a deep Scan or Update my virus


    protections, I think the best thing to do is as you suggest


    ...a complete uninstall and then re-install the software.


    I will let you know what happens


    Thanks Bill:)

  • Hi


    I uninstalled BD ..but when I try to re-install it I am getting an error message saying; "The feature you are trying to access is ona Network that is unavailable"


    It's looking for am installation folder with this file in it 'bdav.msi'


    This is the file I am trying to instal; bitdefender_antivirus_2009_32b.exe


    It is NOT on a network, so I have no idea why I am getting this message

  • Hi


    I uninstalled BD ..but when I try to re-install it I am getting an error message saying; "The feature you are trying to access is ona Network that is unavailable"


    It's looking for am installation folder with this file in it 'bdav.msi'


    This is the file I am trying to instal; bitdefender_antivirus_2009_32b.exe


    It is NOT on a network, so I have no idea why I am getting this message


    Hi, as you have not disclosed if you used the bit defender to un-install or not here is a link for you to download it:http://www.bitdefender.com/uninstall download and run this tool, and re-boot your pc if prompted by the tool, then try again to install bd,as would appear that it was not completely removed from your system

  • Hi, as you have not disclosed if you used the bit defender to un-install or not here is a link for you to download it:http://www.bitdefender.com/uninstall download and run this tool, and re-boot your pc if prompted by the tool, then try again to install bd,as would appear that it was not completely removed from your system


    Hi, as you have not disclosed if you used the bit defender to un-install or not here is a link for you to download it: bit defender un-install tool downloadand run this tool, re-boot your pc if prompted by the tool, then try again to install bd,as would appear that it was not completely removed from your system

  • Hi, as you have not disclosed if you used the bit defender to un-install or not here is a link for you to download it: Bit defender un-install tool downloadand run this tool, re-boot your pc if prompted by the tool, then try again to install bd,as would appear that it was not completely removed from your system


    or this link here on this forum>>>> edit not working in this forum again hence the repeat message

  • Hi


    I have managed to uninstall and re-install BD now and everything seems to be working fine


    Thanks for all your help


    Bill:)