This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

conficker

i caught the worm conficker via usb stick:

I did the sophos clean up and it could not open the following data:

Log file path: C:\WINDOWS\TEMP\Sophos_MalConficker-A.log

Could not open C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira\AntiVir Desktop\TEMP\avguard.tmp
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\parent.lock
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\places.sqlite-journal
Could not check C:\Dokumente und Einstellungen\Anna\Eigene Dateien\Vorklinik\Pathologie\pathoscheiß\X. Preakanzerosen\VII. Unspezifische Entzündungen\akute eitrige Osteomyelitis\Thumbs.db (corrupt)
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Temp\etilqs_9dueQY88ulHejL8Ycf0P
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\hiberfil.sys
Could not open C:\WINDOWS\system32\CatRoot2\edb.log
Could not open C:\WINDOWS\system32\CatRoot2\tmp.edb
Could not open C:\WINDOWS\system32\config\system.LOG
Could not open C:\WINDOWS\system32\drivers\fidbox.dat
Could not open C:\WINDOWS\system32\drivers\fidbox.idx
Could not open C:\WINDOWS\Temp\Perflib_Perfdata_90.dat
Could not open C:\WINDOWS\Temp\ZLT02fea.TMP
Could not open C:\WINDOWS\Temp\ZLT049fb.TMP
Could not open C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira\AntiVir Desktop\TEMP\avguard.tmp
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\parent.lock
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\places.sqlite-journal
Could not check C:\Dokumente und Einstellungen\Anna\Eigene Dateien\Vorklinik\Pathologie\pathoscheiß\X. Preakanzerosen\VII. Unspezifische Entzündungen\akute eitrige Osteomyelitis\Thumbs.db (corrupt)
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Temp\etilqs_9dueQY88ulHejL8Ycf0P
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\hiberfil.sys
Could not open C:\WINDOWS\system32\CatRoot2\edb.log
Could not open C:\WINDOWS\system32\CatRoot2\tmp.edb
Could not open C:\WINDOWS\system32\config\system.LOG
Could not open C:\WINDOWS\system32\drivers\fidbox.dat
Could not open C:\WINDOWS\system32\drivers\fidbox.idx
Could not open C:\WINDOWS\Temp\Perflib_Perfdata_90.dat
Could not open C:\WINDOWS\Temp\ZLT02fea.TMP
Could not open C:\WINDOWS\Temp\ZLT049fb.TMP

Scan completed.
Scan completed successfully.

What does it mean?? Am I safe or do I need to delete these files. Please help me cause I have no clue about computers.

Thank you sooo much!!

:3352


This thread was automatically locked due to age.
  • Hello totalbeginner,

    if you run a scan you should close all other applications. Looks like Firefox is running.

    All entries are normal and either from Windows, Avira, Kaspersky (do you really have Avira and Kaspersky on your machine?) or Zonealarm. You can't (and shouldn't attempt to) delete any of them.

    Apart from that I deduce your are femals, studying medicine and don't exactly like pathology :smileywink:

    Christian

    :3354
  • I didn't know that I have Kaspersky on my machine,

    I actually only use avira (hey its free) and zone alarm.

    how do i close all other applications?through the task manager?

    Apart from that: you are right - seems kike I am easy to see through :-)

    :3356
  • I didn't know that I have Kaspersky on my machine

    C:\WINDOWS\system32\drivers\fidbox.dat and ...\fidbox.idx "belong" to Kaspersky. As they can't be opened it looks like they still are in use. You should close all "visible" applications like Firefox, Explorer, Notepad the normal way. No need to use the Task Manager (unless an application is unresponsive). In your case it didn't make any real difference though.

    By the way - I think the folder under Eigene Dateien\ would correctly be named Praekanzerosen or Präkanzerosen :smileyhappy:

    Christian

    :3358