This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

conficker

i caught the worm conficker via usb stick:

I did the sophos clean up and it could not open the following data:

Log file path: C:\WINDOWS\TEMP\Sophos_MalConficker-A.log

Could not open C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira\AntiVir Desktop\TEMP\avguard.tmp
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\parent.lock
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\places.sqlite-journal
Could not check C:\Dokumente und Einstellungen\Anna\Eigene Dateien\Vorklinik\Pathologie\pathoscheiß\X. Preakanzerosen\VII. Unspezifische Entzündungen\akute eitrige Osteomyelitis\Thumbs.db (corrupt)
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Temp\etilqs_9dueQY88ulHejL8Ycf0P
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\hiberfil.sys
Could not open C:\WINDOWS\system32\CatRoot2\edb.log
Could not open C:\WINDOWS\system32\CatRoot2\tmp.edb
Could not open C:\WINDOWS\system32\config\system.LOG
Could not open C:\WINDOWS\system32\drivers\fidbox.dat
Could not open C:\WINDOWS\system32\drivers\fidbox.idx
Could not open C:\WINDOWS\Temp\Perflib_Perfdata_90.dat
Could not open C:\WINDOWS\Temp\ZLT02fea.TMP
Could not open C:\WINDOWS\Temp\ZLT049fb.TMP
Could not open C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Avira\AntiVir Desktop\TEMP\avguard.tmp
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\parent.lock
Could not open C:\Dokumente und Einstellungen\Anna\Anwendungsdaten\Mozilla\Firefox\Profiles\dqt11ity.default\places.sqlite-journal
Could not check C:\Dokumente und Einstellungen\Anna\Eigene Dateien\Vorklinik\Pathologie\pathoscheiß\X. Preakanzerosen\VII. Unspezifische Entzündungen\akute eitrige Osteomyelitis\Thumbs.db (corrupt)
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\Anna\Lokale Einstellungen\Temp\etilqs_9dueQY88ulHejL8Ycf0P
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat
Could not open C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Microsoft\Windows\UsrClass.dat.LOG
Could not open C:\hiberfil.sys
Could not open C:\WINDOWS\system32\CatRoot2\edb.log
Could not open C:\WINDOWS\system32\CatRoot2\tmp.edb
Could not open C:\WINDOWS\system32\config\system.LOG
Could not open C:\WINDOWS\system32\drivers\fidbox.dat
Could not open C:\WINDOWS\system32\drivers\fidbox.idx
Could not open C:\WINDOWS\Temp\Perflib_Perfdata_90.dat
Could not open C:\WINDOWS\Temp\ZLT02fea.TMP
Could not open C:\WINDOWS\Temp\ZLT049fb.TMP

Scan completed.
Scan completed successfully.

What does it mean?? Am I safe or do I need to delete these files. Please help me cause I have no clue about computers.

Thank you sooo much!!

:3352


This thread was automatically locked due to age.
Parents
  • I didn't know that I have Kaspersky on my machine

    C:\WINDOWS\system32\drivers\fidbox.dat and ...\fidbox.idx "belong" to Kaspersky. As they can't be opened it looks like they still are in use. You should close all "visible" applications like Firefox, Explorer, Notepad the normal way. No need to use the Task Manager (unless an application is unresponsive). In your case it didn't make any real difference though.

    By the way - I think the folder under Eigene Dateien\ would correctly be named Praekanzerosen or Präkanzerosen :smileyhappy:

    Christian

    :3358
Reply
  • I didn't know that I have Kaspersky on my machine

    C:\WINDOWS\system32\drivers\fidbox.dat and ...\fidbox.idx "belong" to Kaspersky. As they can't be opened it looks like they still are in use. You should close all "visible" applications like Firefox, Explorer, Notepad the normal way. No need to use the Task Manager (unless an application is unresponsive). In your case it didn't make any real difference though.

    By the way - I think the folder under Eigene Dateien\ would correctly be named Praekanzerosen or Präkanzerosen :smileyhappy:

    Christian

    :3358
Children
No Data