Zero-Access Infection Repair

gamer666

Distinguished
Nov 2, 2008
137
5
18,695
I have got an Zero-Access Virus found out by not being able to access my Windows Defender.

Ran multiple programs such as Hitman PRO, Rouge Killer, adwcleaner Malwarebytes Anti-Malware and ROOTKIT Beta confirming that i had an Zero-Access infection.

I think i have removed the virus but some windows files are still corrupted. How can i repair this?

Receiving error from Microsoft Security Essentials. An error has occurred during the initialization. Error code 0x80073b01
And unable to update/install Microsoft Security Essentials. If i try and uninstall MSE i get
"cant find files that are necessary to uninstall" error.
 
Solution
clean your registry with a good deep cleaner... ccleaner will do most of the work but you may need a dedicated reg cleaner to do it thoroughly.
you may want to delet the Microsoft sse folder then run the regcleaner and it should be just as good as if you had run its uninstaller.


then 1s you have done this go to the cmd prompt (right click and run with admin privs and type sfc /scannow this will repair any broken windows files.
after this get a decent antivirus as MSSE is pretty damn poor even by free av standards...
(dont give me grief saying its good, its not. M.s refuse to allow it to be tested since it failed independent testing...
clean your registry with a good deep cleaner... ccleaner will do most of the work but you may need a dedicated reg cleaner to do it thoroughly.
you may want to delet the Microsoft sse folder then run the regcleaner and it should be just as good as if you had run its uninstaller.


then 1s you have done this go to the cmd prompt (right click and run with admin privs and type sfc /scannow this will repair any broken windows files.
after this get a decent antivirus as MSSE is pretty damn poor even by free av standards...
(dont give me grief saying its good, its not. M.s refuse to allow it to be tested since it failed independent testing https://www.google.co.uk/search?client=opera&q=av+comparisons.org&sourceid=opera&ie=UTF-8&oe=UTF-8#q=microsoft+security+essentials+fails+testing )
 
Solution

gamer666

Distinguished
Nov 2, 2008
137
5
18,695
Okay thankyou.

I have found a bad registry according to fss scan

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1

What would be a good Reg cleaner?
currently got ccleaner

I knew when i got this VIRUS it disguised itself as an adobe flash player update.

Update: SFC scan results. Windows found corrupt files but was unable to fix some of them. Want me to link log?
 
if you can change the value of the dword to 0 this should force windows defender to run and hopefully stop what ever is running at boot time.
change it and reboot after applying.

tuneuputilitys 2010 has a good reg cleaner and theres always REGCLEANER.

have you tried combofix. it will normally kill a lot of stuff that even the best antimalware apps miss. just be carefull with it as it can kill a system easily if its misused.