Mourning the loss of our friend, WhitPhil.
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
 
Malware Removal & HijackThis Logs
Tag Cloud
access audio black screen blue screen boot bsod connection crash desktop driver drivers dvd email error excel firefox hard drive hardware hijackthis internet keyboard laptop malware monitor motherboard network networking outlook problem processor recovery registry cleaner router screen slow sound spyware tdlwsp.dll trojan upgrade vba video virus vista vundo windows windows 7 windows vista windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > Malware Removal & HijackThis Logs >
Potentially malicious or infected application says Bit Defender (In Progress)

Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

 
Thread Tools
Cjreef's Avatar
Member with 45 posts.
 
Join Date: Aug 2009
05-Oct-2009, 08:09 PM #76
Thanks for letting me know. I was getting worried about you as others were too.
Cookiegal's Avatar
Administrator with 63,642 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
06-Oct-2009, 06:07 PM #77
I don't see anything out of place there.

Have you heard anything back from the BitDefender people?
Cjreef's Avatar
Member with 45 posts.
 
Join Date: Aug 2009
06-Oct-2009, 08:15 PM #78
I finally did today. I had not heard since 9/29 and sent them an email. They claim they replied to me 3 days ago. It's always possible that I deleted the message by mistake but find it hard to believe since I was really anxious to hear from them. By the way, they do advertise that they provide phone support but I could not find a phone number on their website. Any idea what it might be?

Anyway, they sent me a new file to download, save with the extension .zip, unzip and run. It picked up two files which I had to send to them zipped and password protected. I will let you know when I hear from them again.

The file they sent, if it means anything to you, was pdmp_crypted. The two files picked up were Datasafeonline.exe and sprtcmd.exe.
Cookiegal's Avatar
Administrator with 63,642 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
06-Oct-2009, 09:52 PM #79
Those files both belong to Dell, one for their support tool and the other for on-line storage.

I have no idea of a phone number for them.
Cjreef's Avatar
Member with 45 posts.
 
Join Date: Aug 2009
28-Oct-2009, 09:33 PM #80
Hello Cookiegal,

After complaining that it was taking an awful long time, I finally received a reply from Bit Defender. I am more confused than ever so I decided not to do anything until I get more information from them. I am very frustrated with BitDefender at this point. Here is what they wanted me to do and my response to them:


Thank you for your response.

Could you please let me know what the problem is that we are trying to fix, that is, what you found out from the information that you requested and that I sent you. I am concerned that with the passage of so much time things might be getting a bit confused.

You are instructing me to run the .bat file. The mbrfix folder contains 7 items of which 2 have the extension .exe and 4 .bat. The last one is a FireFox documentation.

Because of the above and the fact that the documentation warns that incorrect use of the program may cause loss of all data I will need more precise instructions. I am assuming I can ignore the 64 version and that I should run the MBRFIX.EXE program but that is neither of the .bat files and you want me to run a.bat file. I need to be sure. And, again, I would like to know what it is going to do to my computer because I don’t understand how the MBR has anything to do with the message I get about the “svchost” application.

With thanks, Claude Poole.

-----Original Message-----
From: BitDefender Support Team [mailto:support@bitdefender.com]
Sent: Wednesday, October 28, 2009 1:12 PM
To: Claude Poole
Subject: Re: [Ticket ID:200909231009352] I need help with this screen



Dear Claude Poole,

Attached to this email you will find an archive "fixmbr.zip" containing the
utility used to restore the altered MBR.

Please download the attachment, disable the BitDefender real-time protection
and any other active security solutions, unpack the archive and run the .bat
file.

Once the process is completed enable the real-time protection.

~

[how to DISABLE THE REAL-TIME PROTECTION on version 2008]
In order to disable the Real-time protection please open BitDefender, select
"Settings", go to "Antivirus" > "Shield" and click on "Real-time protection is
enabled", select the time interval that suites your troubleshooting needs and
click "OK"; the message will change to "Real-time protection is disabled".
-----

[how to DISABLE THE REAL-TIME PROTECTION on version v10]
In order to disable the real-time protection please open BitDefender, go to
"Antivirus" > "Shield" and click on "Real-time protection is enabled"; this
message will change to "Real-time protection is disabled".
-----


If the situation persists or you require further assistance please do not
hesitate to contact us.
Best regards,

Cristian Raducu
BitDefender Technical Support Engineer
Cjreef's Avatar
Member with 45 posts.
 
Join Date: Aug 2009
29-Oct-2009, 12:05 PM #81
BitDefender sent me an explanation:
"The virus injected itself into the Master Boot Record and the only way to
remove it is to restore the MBR.
The archive contains 4 bat files:
Look at the file name and run the one that fits your operating system:

fix32_vista.bat ->Vista 32 OS
fix32_w2k_xp.bat -> Windows 2000/Windows XP 32 OS

and the rest are for x64 OS which we can exclude.
Loss of data may occur if you don't run the proper bat file."

I clicked on the bat file for Windows XP. A black screen came on for a fraction of a second, disappeared, then nothing.
I sent them another email, will let you know what happens.

If you have any ideas, please let me know, thank you.
Cjreef's Avatar
Member with 45 posts.
 
Join Date: Aug 2009
29-Oct-2009, 05:51 PM #82
"I clicked on the bat file for Windows XP. A black screen came on for a fraction of a second, disappeared, then nothing."

Bit Defender says that's normal.

I will let you know if the problem is solved.

Thanks for all your help.
Cookiegal's Avatar
Administrator with 63,642 posts.
 
Join Date: Aug 2003
Location: Quebec, Canada
30-Oct-2009, 07:16 PM #83
OK, thanks.
Reply Bookmark and Share

Smart Search

Find your solution!



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.

Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -5. The time now is 12:44 PM.
Copyright © 1996 - 2009 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2009, Jelsoft Enterprises Ltd.
Powered by Cermak Technologies, Inc.