Access Denied

Discussion in 'Software' started by SwatShark, Jul 10, 2003.

Thread Status:
Not open for further replies.
  1. SwatShark

    SwatShark Captain Cuffs

    My system has managed to become infected with two different trojans. You gotta love the net :( I've ran the AV but unfortunately it has failed to clean these trojans from my system. Following the directions from Ontrack, they recommend deleting these files. Ok, fine, no problem. They are located in "C:\System Volume Information\" directory. Again, no problem. When I try to open the folder I get the error message below. I am the administrator on my computer and there are no other users. I'm using WinXP Pro with SP1. I've tried booting into safe mode, and safe mode with command prompt, but whenever I select that option I see several files scrolling on the screen then the comp reboots and loads windows normally........no safe mode. Any ideas of how to open this folder so I can get rid of these trojans?
     

    Attached Files:

  2. SwatShark

    SwatShark Captain Cuffs

    An update here. I managed to boot into Safe Mode and tried to open the folder again. I received the same error message. I also managed to boot into safe mode with command prompt. I went to C:\ and used the 'dir' command to list the directories. The directory isn't listed :eek: What gives with that? Is windows hiding the system files in safe mode? If so is there a way show them so that I can access the file. While operating in standard windows I have "Hide system files" unchecked and "Show hidden files and folders" checked so that all is visible. Any thoughts? The directories I'm trying to access are C:\System Volume Information\_restore0D1EAAD5-18FD-4F69-8CB2-2E78919A3B0E\RP46\ and C:\System Volume Information\_restore0D1EAAD5-18FD-4F69-8CB2-2E78919A3B0E\RP77\. Both directories contain the trojans that I need to get rid of. I am assuming (although dangerous) that this directory contains my system restore information. Is there a way I can purge the system restore points and start fresh, thus removing the trojans?
     
    Last edited: Jul 10, 2003
  3. Kodo

    Kodo SNATCHSQUATCH

    turn off system restore. it will delete all restore points and then turn it back on..

    additionally, if you're the admin, you can simply TAKE OWNERSHIP of the file in its' security properties and you can access the file.
     
  4. snakefoot

    snakefoot Sergeant Major

    Gotta love System Restore, capable of restoring any precious vira you might have deleted :)

    Actually it is weird that the AV discovers the vira in the System Restore folder most official vira tools excludes those folders.
     
    Last edited: Jul 10, 2003
  5. SwatShark

    SwatShark Captain Cuffs

    Ok, obiviously I'm doing it wrong. Right click>Sharing & Security>Sharing> the option to make this folder private is greyed out.

    Also, I turned off System Restore, then turned it back on. I'm running the AV again to see if detects the trojans in there again but it still bugs me that I can do what I want to with this file.
     
    Last edited: Jul 10, 2003
  6. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Best bet Swat is to turn off System Restore ( as Kodo first said )and reboot run AV again just to be safe then turn SR back on.
     
  7. SwatShark

    SwatShark Captain Cuffs

    I'm using Ontrack System Suite 4. It's one of the best on the market and I've been using it since it was called Ontrack Fix-It Utility. It's a damn good system suite and I swear by it.
     
  8. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    hahahaha I too late in posting..... ;)
     
  9. SwatShark

    SwatShark Captain Cuffs

    Ok, got rid of the two trojans that where plagueing me, but the ownership of that folder still puzzles me. Why can't I take ownership of it?
     
  10. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    without looking and reading up about system restore... I will have a wild guess and say its a protected file/folder and if you where able to have access to it then System Restore would be pretty pointless as you could mess/fiddle with stuff rendering a restore point useless.
     
  11. SwatShark

    SwatShark Captain Cuffs

    Maybe so, but I was under the impression from Kodo's post that I could take ownership of the folder and go into the folder. I could be wrong though :(
     
  12. Kodo

    Kodo SNATCHSQUATCH

    yes you can.. you have to add your user to the rights of the folder and then give the proper rights to access it. I forgot that only SYSTEM is the default user with rights on that folder.
     
  13. SwatShark

    SwatShark Captain Cuffs

    Ok, howya do dat :confused:
     
  14. †T-Rex †

    †T-Rex † Specialist

    Shouldn't it be under properties? Right click and go to properties... I thought there was a security tab there. Permissions are found there... and BTW... you know any anti-virus besides Norton's Antivirus that checks for trojans? Because I think I may have one myself... my Norton's Antivirus doesn't work... and it's acting very strange. Also, I've had attempted logins on my computer as shown by my Event Viewer under the security logs.

    I've saved the security log, and if need be, I can attach it and let you guys view it, but it would definately have to be someone on the same ISP as me or someone from the ISP, because I have dynamic IP, being on dial-up, and the attempted logins occur on several different dates. If you have any thoughts, let me know... I've since had my firewall up, which has successfully twarted anymore attempts... so I'm good for now.
     
  15. SwatShark

    SwatShark Captain Cuffs

    Sure, Ontrack System Suite........I swear by it. I found the security tab that you're talking about but there isn't anything there to set privelages for.
     
  16. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Once into Security tab click ADD then Advanced then Find Now and pick your name ( you being Admin ) then click OK


    and you should then have access to that folder ;)



    Geez... mines taking up 5.7gb ... time for deletion I think.....
     
  17. SwatShark

    SwatShark Captain Cuffs

    I don't have a security tab. Only general, sharing, and customize. Nothing like that is under either one of those tabs. WTF?
     
  18. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Ah ok... goto Tools > Folder Options > View then at the bottom of the Advanced list is Use Simple File Sharing untick that then apply.


    you should now see the Security Tab



    btw which XP version you have Home or Pro?
     
  19. SwatShark

    SwatShark Captain Cuffs

    I'm using XP Pro and that worked. Thanks Halo.
     
  20. Cashy

    Cashy Private First Class

    you got to stop using that kaaza dude, the root of all evil:D
     
Thread Status:
Not open for further replies.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds