Kindly be advised we cannot cancel subscriptions or issue refunds on the forum.
You may cancel your Bitdefender subscription from Bitdefender Central or by contacting Customer Support at: https://www.bitdefender.com/consumer/support/help/

Thank you for your understanding.

Am I in trouble?

Options
Cagnazzo
edited May 2007 in Malware talk

Ok, I've scanned my computer for viruses, and found seven viruses, and overall thirteen infected objects. Yet I can't get rid of them at all, most likely being due to the fact that they're all in C:\System Volume Information, which I know can't be accessed. However, I believe it's slowing down my cable internet, because these past few days, it's been *consistently* slow, almost at dial-up speeds. I've gotten rid of all Firefox add-ons and cleared the internet cache, but to no avail. I've been hovering around 40KB/sec speeds these past few days, and if I'm lucky, MAYBE I'll get around 300KB/sec.


Am I in trouble, or just going crazy? Thanks in advance.


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0004 Detected: Adware.ToolBar888.B


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0004 Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0004 Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0005 Detected: Adware.Softomate.S


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0005 Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0005 Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0006 Detected: Adware.ToolBar888.B


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0006 Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0006 Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0007 Detected: Adware.ToolBar888.B


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0007 Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o)=>lzma_solid_nsis0007 Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034142.exe=>(NSIS 2o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034157.exe=>(NSIS o)=>lzma_nsis0006 Infected: Trojan.FatObfus.Gen


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034157.exe=>(NSIS o)=>lzma_nsis0006 Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034157.exe=>(NSIS o)=>lzma_nsis0006 Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP112\A0034157.exe=>(NSIS o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>keygen.exe Infected: MemScan:Trojan.Vundo.AJ


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>keygen.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>keygen.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>patch.exe Infected: Trojan.Agent.AUU


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>patch.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>patch.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>crack.exe Infected: Trojan.Inject.BW


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>crack.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>crack.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>install.exe Infected: Trojan.Downloader.JIOX


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>install.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o)=>install.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP159\A0045845.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>keygen.exe Infected: MemScan:Trojan.Vundo.AJ


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>keygen.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>keygen.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>patch.exe Infected: Trojan.Agent.AUU


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>patch.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>patch.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>crack.exe Infected: Trojan.Inject.BW


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>crack.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>crack.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>install.exe Infected: Trojan.Downloader.JIOX


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>install.exe Move failed


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o)=>install.exe Deleted


C:\System Volume Information\_restore{997DE153-4119-4249-ADAF-569238C435AD}\RP166\A0047272.exe=>(RAR Sfx o) Archive repacking has failed (marked actions not taken)

Comments

  • The viruses you found are located in the System Volume Information, a system folder which stores restore points for yor computer in case you will use System Restore. If you want to get ride of them, go to System Properties -> System Restore and then check the "Turn off System Restore on all drives", then apply. You should then re-enable System Restore by un-checking the checkbox then apply.

  • Cagnazzo
    edited May 2007
    Options
    The viruses you found are located in the System Volume Information, a system folder which stores restore points for yor computer in case you will use System Restore. If you want to get ride of them, go to System Properties -> System Restore and then check the "Turn off System Restore on all drives", then apply. You should then re-enable System Restore by un-checking the checkbox then apply.


    Alright, thanks for that; I'm scanning again as we speak to make sure.


    To clarify, by turning off System Restore, it will automatically get rid of what's stored in System Volume Information, and when I turn it on again, then it will have "a clean slate" of sorts?

  • When you turn off System Restore, it will delete all the backup files inside System Volume Information. When you turn it back on, you will have an empty folder waiting to store new, fresh restore points. :)


    Glad I could help you!


    Andrei

  • Cagnazzo
    edited May 2007
    Options

    Ok, thanks a heap. :)


    BUUUT...I'm still having rather slow internet, however I believe I sourced the problem to a registry error somewhere...then again, this is another discussion for another day...

  • How long do you have internet speed problems? Since you installed BD? This could due to other programs which consume internet bandwidth; try to disable automatic updates both for Windows and BD, and run some manual updates, 1 or 2 times a day, and see if the internet speed goes to normal. I never had this kind of problems, but I am running manual updates every day. (My real internet speed is about 600-700 Kb/s).

  • Niels
    Options

    For your slow internet problem you can try the following:


    Go to start,make connection,show all connections,then rightclick on the icon of your connection and choose for repair. Are you sure you didn't exceed the amount of download that your isp allows you to download? Because when you exceed that amount your internet speed will be reduced.


    Regards


    Niels

  • For your slow internet problem you can try the following:


    Go to start,make connection,show all connections,then rightclick on the icon of your connection and choose for repair. Are you sure you didn't exceed the amount of download that your isp allows you to download? Because when you exceed that amount your internet speed will be reduced.


    Regards


    Niels


    It's true, many ISP's apply FUP (Fair Usage Policy), which means that if you donwload more than your limit is, they will reduce your internet speed. My ISP uses FUP, my limit is 4 Gb / week, but I have to say that It never reduced my speed! :rolleyes:

  • Niels
    Options

    In my country that is the case when you exceed your download or upload limit. You will get on small band till the next month or when you buy more credits so you can download or upload at the normal speed again. It could be that this isn't case in other countries.

  • AndreiASM
    edited May 2007
    Options

    Ask you ISP if they apply FUP (Fair Usage Policy), only they can tell you. As for infected files/worms/trojans inside System Volume Information, they are harmles, since they can't be accesed.

  • Cagnazzo
    Options

    Alright, thanks for that again. At first, I thought it was just my computer, but apparently my mom is having trouble getting the internet to work as well.

  • Niels
    Options

    Hi Cagnazzo


    Did you already tried what I suggested in my previous post? Otherwise you have to contact your isp.


    Regards


    Niels