Windows cannot access the specified device, path, or file...

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by huck167378, Sep 23, 2009.

  1. huck167378

    huck167378 Private E-2

    Gentlemen, I am in desperate need of your expertise. I have been using Avast and Spybot Search and Destroy to keep my computer protected, as well as using CCleaner and Iobit Advanced System Care to keep things streamlined and running smoothly. Avast recently popped up a warning about Braviax.exe, so I tried to do a manual virus scan (as I do once or twice a week) and I got an error message stating "Windows cannot access the specified device, path or file. You may not have the appropriate permission setting to access this file." Confused, I did some research on the message but found nothing relavant to my situation. I tried downloading and installing AntiVir, then clicked on it to run. It started to run, then disappeared after about 5 seconds. I clicked on it again to bring it back up, and Windows gave me the same permissions error. I have now done everything requested of me in the READ AND RUN ME FIRST post, all to no avail.

    I could not download RootRepeal because the page had exceeded bandwidth.

    I tried to install superantispyware, but i received the message "error 1321:windows installer has insufficient privileges to modify this fil: C:\Program Files\SuperAntispyware\SuperAntispyware.exe"
    However, the icon for the program was on my desktop, so I tried to run it, only to receive the original permissions message.

    I installed MalwareBytes and tried to run it, but after five seconds it disappeared and I got the permissions message when I tried again.

    I installed ComboFix and when i ran it, it came up with the message "combofix has detected the presence of rootkit activity and needs to reboot the machine". After it reboots nothing happens, if I run it again the same thing happens.

    Every virus program that I have been able to find has run once for about 5 seconds, or until it tries to do a virus scan, then shuts down. After that I get the permissions message. I would appreciate any advice you guys can give me. I am running Windows XP SP2.
     
  2. huck167378

    huck167378 Private E-2

    Anybody? Anything?
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    I guess you did not read the below link given in the READ & RUN ME:

    Don't Bump! It Only Hurts You!!!


    You did not mention running MGtools. Did you run it?

    You did not read the instructions for running RootRepeal. Please read them and use the correct link.


    Please try doing the below:

    Download and save the below to your PC (save it anywhere you can find it. The Desktop is fine). Then doube click on it to run it.

    AVPFind.bat

    It should take a couple minutes to run. You will see a black command prompt window while it is running and it should close when it is finished. Once it finishes, attach the c:\avplog.txt file that is will hopefully create as long as the malware does not block the batch file from running.



    Now download and Run exeHelper
    • Please download exeHelper to your desktop.
    • Double-click on exeHelper.com to run the fix.
    • A black window should pop up, press any key to close once the fix is completed.
    • Post the contents of log.txt (Will be created in the directory where you ran exeHelper.com)
    Note: If the window shows a message that says "Error deleting file", please re-run the program before posting a log - and post the two logs together (they will both be in the one file).

    Also please try running the below online scan:

    http://www.superantispyware.com/onlinescan.html

    Reboot immediately after scanning if it finds and removes anything. Let me know if anything was found. It does not save a log.

    Then try running these instructions: Using MGtools



    Attach the below logs when finished with all of the above:
    • C:\avplog.txt - from AVPfind
    • log.txt - from exeHelper
    • C:\MGlogs.zip - from MGtools
    The C:\ assumes that drive C is you Windows boot drive. If you boot from another drive, then use the correct drive letter above.
     
  4. huck167378

    huck167378 Private E-2

    Thank you for your help, first and foremost. I'm sorry I missed the rootrepeal link, I was able to run it and it somehow unlocked all the other programs, so I followed your instructions as well as the instructions in the run and read me! sticky. Everything seems to be working now (as far as I can tell, the programs that I first noticed the problems with all seem to be fine now). I have attached the logs you requested, although I did not run the SAS online scan as the one I downloaded worked.

    Just out of curiosity, I have been using Avast for my viruses, Spybot Search and Destroy for the malware, and CCleaner and IObit Advanced Systemcare 3 for the maintenance. Avast runs in the background all the time, and I do manual scans with Avast and Spybot at least once a week. How did I get this infection?? Are these programs crap, or was I just really unlucky? Is there something else I should be using instead? Thank you once again for all your advice, I love this site.
     

    Attached Files:

  5. huck167378

    huck167378 Private E-2

    here are the other two logs you requested.
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You forgot the log from MGtools; however do not do this right now as we will get a new one below.


    • Now download this Win32kDiag and save to C:\Win32kDiag.exe. You must save it here!!!!
    • Click on Start->Run, and copy-paste the following command (the bolded text) into the "Open" box, and click OK. When it's finished, there will be a log called Win32kDiag.txt on your desktop. Please attach this log
    C:\win32kdiag.exe -f -r


    Now download the current version of MGtools and save it to your root folder. Overwrite your previous MGtools.exe file with this one.

    Run MGtools.exe ( Note: If using Vista make sure UAC is still disabled. Also don't double click on it, use right click and select Run As Administrator )

    Now attach the below log:
    • the Win32kDiag log
    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds