14gb Quarantine Folder Cannot Delete

Discussion in 'Malware Help (A Specialist Will Reply)' started by online, Aug 12, 2006.

  1. online

    online Private E-2

    Hi MajorGreek

    I was able to move throught step 0-5 of the readme instruction in safe mode, however I got stuck at the step to use the 'windowsdefender' scan. during the scan of the quarantine folder it took over 3 hours scaning temporary files so I had to stop it since it was going on an on.

    In the first place your instuction was to clean out those Quarantine item however norton is not showing it when i select it. so I went manualy and check the size of the folder it was over 14 GB large

    Firstly I have a Dell Inspiron 600m, intel(R) Celeron(R)M 140GHz, 768MB Ram- Windows XP Home Ver.2002

    My Problem is that I have this blue background Covering my original background picture with a meaasge saying...


    'Warning! Spyware threat detected! System error #1752

    Your computer has several fatal errors due to spyware activity.
    Your IP address is 127.0.0.1and via this address an unauthorized
    access was gained by another computer. It is strictly recommeded
    to install an anti-virus software to close all security breaches.


    Your IP address: 127.0.0.1
    They know you're using: Internet Explorer
    Your computer is: Intel(R) Celeron(R) M processor 1.40GHz, 767.23 MB of RAM

    Risk status for further investigation: VERY HIGH RISK

    To protect your computer from spyware attacks - click here
    To erase the tracks of your internet activity - click here"



    Also the Norton has a pop up window which will not go away saying...

    "Virus alert - High risk
    odject name C:\WINDOWS TEMP\temp7ctmp(this temp file keeps changing)
    Virus name: Trojan.LowZone
    Action taken: Acess to the file was denied"


    Should I uninstall norton or manually trash the quarantine folder?
     
  2. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    You may have to manually delete the contents of the Norton Quarantine folder a little at a time.

    Once you are ready post your logs.
     
  3. online

    online Private E-2

    Thanks for your reply, I will try it to empty the contents of the folder manualy, but what I notice is once any file is delete it automaticaly generates another, for instant I Went onto the Bitfinder online scaner an it scan that Quarantine folder for over 10 hours and it could not complete the task.
     
  4. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    If your AV scanner is active when you delete the file from Quarantine it is going to generate a new quarantine entry every time.

    Do this.

    Disconnect your computer from the Internet, physically unplug the cable. then boot to Safe Mode. Make sure you have no process from your AV running. Navigate to the quarantine folder, delete the items a few at a time, make sure you empty the Recycle Bin periodically. Once everything has been deleted from the Quarantine folder, do the following:

    Run CCleaner. If you have Windows XP delete the contents of C:\WINDOWS\Prefetch.

    Then, as an added precaution, Go to Start -> Run and type: cleanmgr and then click OK. Make sure the boxes for these are checked:
    Temporary Files
    Temporary Internet Files
    Recycle Bin

    And Click OK.

    Now turn off the computer, reconnect your Internet cable and restart your computer. Now complete the scans from our tutorial.
     
  5. online

    online Private E-2

    Thanks that did it, the file in now empty and when i rescaned it picked up the 3 virus Trojan Lowzone- computer working much faster now and the nortan pop up window is gone. However i still have the blue background-I tried restoring the original background, it didi return but the blue calapsed into a small box at the top left corner of the window, the window has scroll bars but i cannot X it out or delete
     
  6. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Ok, now that we have eliminated the 14Gb Quarantine folder; our tutorial shouldn't be as difficult to complete.

    Please follow the steps below:

    - Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis:

    Downloading, Installing, and Running HijackThis

    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.

    When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • CounterSpy - ONLY IF you were not able to run Windows Defender
    • Bitdefender - from step 6
    • Panda Scan - from step 6
    • HijackThis
     
  7. online

    online Private E-2

    Here are the post results- but I new to know how to get that blue screen out.
    Thanks guys.
     

    Attached Files:

  8. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    I need the rest of the logs; BitDefender Online, Panda ActiveScan, and GetRunKey.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds