Ok. So after many hours of more scans I have now scanned using both stingers and a normal virus scan to no avail in Safe Mode with networking. They all came back clear.
I finally found where the quarantined items were listed in McAfee and tried to click on "send to mcafee" but each time I have tried it tells me an error occured so sending fails.
As with havasulover75, when I used the Gmer.net it would not allow me to check the boxes system, sections, IAT/EAT, and devices. They were greyed out. When I tried to scan it immeadiately told me nothing had been changed.
My OS is 64bit Windows 7 and I have been using Zone Alarm as a Firewall for the last 2 days since I discovered my firewall whilst it says is on wouldnt turn on (after having uninstalling and reinstalling McAfee nearly 10 days ago now because the firewall would not turn on - which seems to be the time all my problems started)
My quarantine box has the following being found on my system ( a total of 346 trojans in the last week)
Oh and when I try to got to that location I get stuck at assembly since I can't see any folders beyond that point.
Message was edited by: lozah on 03/10/11 23:25:59 CDT
I had the same problem as everyone here. McAfee Technical Support does not help. They want you to pay for the service to have them clean the computer and fix the problem. Which in essence is paying for the product - which obviously doesn't work and to pay for the technical service to fix their own product!!
I have lost all confidence in this product and the company itself. I had a virus (Open Cloud) and I managed to remove the culprit. This is what I had to do to remove it.
Download: Malwarebytes and RKill
I ran both programs to get rid of the virus - WHICH McAfee should have taken care of. I usually used freeware a/v and never had a problem with them. I got a new laptop and decided to purchase McAfee for protection....that was a waste of money.
If you purchased McAfee - count your loses and move on to another a/v program that works. Check out the ratings on CNET Downloads. If you didn't purchase this worthless program....BRAVO!! Get out of here and go get some protection that WORKS!!
Oh and the uninstalling, reinstalling and all the other crap they expect you to do to fix the problem is a farse! It is not fixable and SHAME ON YOU MCAFEE!!! YOU KNOW THAT YOU HAVE A PROBLEM AND DON'T HAVE THE BALLS TO HELP YOUR CONSUMERS!!!
vinoo is now on this thread he will help when he starts back at work. He knows of this issue and will handle this asap. There is a dat 6489 later on today / tommorrow which should help.
Message was edited by: Peacekeeper on 4/10/11 3:31:12 PM
Well my frustration is at a peak. I'm stuck in safe mode now given that this OpenCloud crap spawns about a couple thousand bogus tasks when I try to run in normal mode. Yesterday my problem was just with the firewall staying off but today after running these stingers I can't even use my laptop. For grins I ran McAfee's VirusScan in safe mode and it believed after a couple hours it had found more than a couple thousand infected files. As soon as I went back to normal mode the same OpenCloud junk came up and pretty much locked me out again. From the log I saw that McAfee thought it had found about a half dozen variants of Artemis. Unfortunately I no longer have malwarebytes to even try. Can't install it from safe mode and can't get in to normal mode. I have to agree that my faith in Mcafee is dropping off by the minute ...
Please download the tool listed here-
extract the .exe file.
Once you have that tool saved to the computer that is affected ( you may downlaod it on a good pc and trasfer to bad one via a thumb drive) or login to safe mode with netwowking on bad pc and download it and save it.
Now boot the computer into normaly mode and execute the .exe file on the machine and reboot as instructed.
Repeat the Run process two or three times and report the status
Note if you encounter any Fake alert or open cloud type infection blocking access- just click allow unprotected and proceed- Reply back if you still need assistance.
Safe mode is hosed up for me now on the infected laptop. I downloaded from the link on a different laptop then copied the rootkit remover from a flash drive to the infected laptop running in normal mode. Tried executing and it came back with "64-bit OS not supported yet"
We've logged the 64-bit issue with Engineering and will report back. This threat is a real pig to clean up (understatement of the Year) especially when it's tied in with multiple infections. There is a threat advisory posted already to the Top Threat community space - we will keep updating it as new information becomes available.
Same problem. Same repeated pop-up of trojan found "Artemis!56C9EF26F88B".
I didn't know my firewall is down until reading these. It shows as "on" until I click on firewall settings in security center. There it shows as off. when I click "turn on" it shows as on for about 1/2 a second and goes back to off.
When I leave the firewall settings, security center shows firewall: on. And it shows "your computer is secure". I don't believe either.
I have gotten rid of the virus without the help of McAfee. Thank you very much. Excuse my sarcasim but when you take your hard earned money to purchase a product that is suppose to protect you - or at least the company to stand behind their product - one loses faith when they (me) have to go to other companies to clean up what McAfee couldn't fix.
In order to gain good faith with me - the problem of the firewall not staying up is still an issue. I have read in this thread that others are having the same issue. At least come forth an produce some type of resolution to this issue. If not for me (who is a McAfee consumer) - then for everyone else who is having an issue with the product. This is bad business and not a good sign of Customer Service.
Now, since I am having the issue with the firewall (which I assume is steming from the virus) I can only assume that there maybe a chance that some part of the virus is still attached in some way. If there is any info that you need from me to combat this please let me know. Like I said in the beginning of this statement...I got rid of the virus - using the methods I stated in an earlier thread - I only have the issue of the firewall left.
I will be following this thread.