1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Solved Trojan Zero Access found by McAfee... can you help?

Discussion in 'Malware and Virus Removal Archive' started by Supawoman, 2012/08/07.

  1. 2012/08/09
    Supawoman

    Supawoman Inactive Thread Starter

    Joined:
    2012/07/12
    Messages:
    34
    Likes Received:
    0
    I have an acer 7738g laptop that has a built in fingerprint reader. When I bought my laptop I set it up to recognise my fingerprint, then when I keyed my passwords in for the first time I had the option to save. That means that when I log into my bank account online, I key in my username but then the fingerprint scanner appears, I swipe my fingerprint over the reader and it logs me in... The passwords are encrypted and stored on my laptop... I have to use my fingerprint to access the the fingerprint software and the store that holds the passwords. Using my fingerprint also stops the potential for key logger software...
     
  2. 2012/08/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    ZeroAcces rootkit is a nasty piece.
    It allows someone from the outside to actually access your computer.
    If you really want to have a peace of mind I'd definitely change all sensitive passwords.

    Good luck and stay safe :)
     

  3. to hide this advert.

  4. 2012/08/09
    Supawoman

    Supawoman Inactive Thread Starter

    Joined:
    2012/07/12
    Messages:
    34
    Likes Received:
    0
    Thanks Broni,

    Will change all my passwords then just to be sure.... just running through the last bits from above...

    Computer is working great, so much quicker than before too... Only problem I still have is the one I have with Microsoft outlook mentioned earlier...
     
  5. 2012/08/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    That would be a subject to different forum.

    Good luck :)
     
  6. 2012/08/09
    Supawoman

    Supawoman Inactive Thread Starter

    Joined:
    2012/07/12
    Messages:
    34
    Likes Received:
    0
    All processes killed
    ========== OTL ==========
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Mcx1-RACHLAPTOP-PC
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: Public
    ->Temp folder emptied: 0 bytes

    User: Rachel Laptop
    ->Temp folder emptied: 578052086 bytes
    ->Temporary Internet Files folder emptied: 89569725 bytes
    ->Java cache emptied: 0 bytes
    ->Google Chrome cache emptied: 10220318 bytes
    ->Flash cache emptied: 942 bytes

    User: TEMP
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: TEMP.RACHLAPTOP-PC
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    User: UpdatusUser
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes
    ->Flash cache emptied: 0 bytes

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 68889 bytes
    RecycleBin emptied: 4175 bytes

    Total Files Cleaned = 647.00 mb


    [EMPTYFLASH]

    User: All Users

    User: Default
    ->Flash cache emptied: 0 bytes

    User: Default User
    ->Flash cache emptied: 0 bytes

    User: Mcx1-RACHLAPTOP-PC
    ->Flash cache emptied: 0 bytes

    User: Public

    User: Rachel Laptop
    ->Flash cache emptied: 0 bytes

    User: TEMP
    ->Flash cache emptied: 0 bytes

    User: TEMP.RACHLAPTOP-PC
    ->Flash cache emptied: 0 bytes

    User: UpdatusUser
    ->Flash cache emptied: 0 bytes

    Total Flash Files Cleaned = 0.00 mb


    [EMPTYJAVA]

    User: All Users

    User: Default

    User: Default User

    User: Mcx1-RACHLAPTOP-PC

    User: Public

    User: Rachel Laptop
    ->Java cache emptied: 0 bytes

    User: TEMP

    User: TEMP.RACHLAPTOP-PC

    User: UpdatusUser

    Total Java Files Cleaned = 0.00 mb

    Restore point Set: OTL Restore Point

    OTL by OldTimer - Version 3.2.56.0 log created on 08092012_190021

    Files\Folders moved on Reboot...
    C:\Users\Rachel Laptop\AppData\Local\Temp\OLC Logging\RCFisher_live_co_uk.txt moved successfully.
    C:\Users\Rachel Laptop\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRF{A2DA49DE-E7C1-4A6C-9C8D-3C2AD8892191}.tmp moved successfully.
    C:\Users\Rachel Laptop\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1D2C6FEC-A13D-4D0F-A50B-ECCEF5B8841F}.tmp moved successfully.

    PendingFileRenameOperations files...
    File C:\Users\Rachel Laptop\AppData\Local\Temp\OLC Logging\RCFisher_live_co_uk.txt not found!
    File C:\Users\Rachel Laptop\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRF{A2DA49DE-E7C1-4A6C-9C8D-3C2AD8892191}.tmp not found!
    File C:\Users\Rachel Laptop\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1D2C6FEC-A13D-4D0F-A50B-ECCEF5B8841F}.tmp not found!

    Registry entries deleted on Reboot...
     
  7. 2012/08/09
    Supawoman

    Supawoman Inactive Thread Starter

    Joined:
    2012/07/12
    Messages:
    34
    Likes Received:
    0
    Hi Broni,

    Thank you so much for the help with resolving my virus/malware problem... :) All seems to be working fine now, I've finished all the last few tasks you suggested I complete and can safely say that all my programmes are fully updated.

    I was completely surprised to be bitten by the zero access virus as I'm usually extremely careful when it comes to what I access on the internet... just goes to show it only takes on lapse to catch a virus...

    Your a STAR!
    :cool:
     
  8. 2012/08/09
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    You're very welcome [​IMG]
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.