Solved W7 64-bit possible rootkit infection Error Code 0x80070424 on Firewall

My recommendation regarding a "Backdoor Trojan" and Rootkit, is to do a "clean" installation of the OS... Your computer has been severly compromised!! :(

I only gave you a link to see if you could start Windows firewall, and since you can't, you'd be best advised to follow karlsnooks and my assessment of your current situation.
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32bit SP1Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz4 GBATI Radeon HD 2600 Pro
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
@Simcut: I should have looked a little closer at the output from RepairWinfire.bat - it looks as though you ran it in a regular command prompt. It's difficult to tell solely from the output, but I'm basing that on the directory in the prompt. It is your user\desktop. I would expect Windows\system32 >
It is possible that you changed directories...

If you did run the batch file in an elevated command prompt, then ignore this post.

If you just clicked on Command Prompt, then try the batch file again - this time with elevated rights

HowTo: Right click on command Prompt, select Run as Administrator - answer yes to User Account control.

Sorry I missed that before.

-->edit: I should just go to bed. I read your 2nd post again and saw that you did have some infections reported. Even if your firewall does start, it's good advice to follow from karl and Jacee.

-->edit2: I queried FwcAgent on my machine and it did not exist. I thought that was odd until I realized Norton Security is acting in place of Windows firewall. So my final question is "Do you have another firewall that replaces Windows firewall?" That really is the last bit I can offer. karl and Jacee have the com. Now I am going to bed - goodnight all.
 
Last edited:

My Computer My Computer

At a glance

x64 (6.3.9600) Win8.1 Pro & soon dual boot x6...AMD A6-3420M APU with Radeon(tm) HD Graphics6.00 GBAMD Radeon(TM) HD 6520G
Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
Sorry Jacee, I should've realized you and the OP weren't done with the clean/install.
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64
OS
Windows 7 Ultimate x64

My Computer My Computer

At a glance

Windows 7 Professional x64 Service Pack 1AMD Athlon X4 6456GB DDR3 1066Sapphire Radeon HD 5670 512MB GDDR5
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavilion P7-1010
OS
Windows 7 Professional x64 Service Pack 1
CPU
AMD Athlon X4 645
Motherboard
Foxxcon N-Alvorix RS880
Memory
6GB DDR3 1066
Graphics Card(s)
Sapphire Radeon HD 5670 512MB GDDR5
Sound Card
Realtek Integrated Audio
Monitor(s) Displays
HP 2011x
Screen Resolution
1600x900
Hard Drives
1. Crucial M4 128GB SSD
2. 1TB Seagate Barracuda 7200.12 RPM
3. 1TB Western Digital Caviar Green 5400RPM
PSU
Seasonic S12 II Bronze 380 Watt
Case
HP OEM
Cooling
Coolermaster Heatsink, AVC Case Fan
Keyboard
HP OEM- Made by Chicony
Mouse
HP OEM- Made by Logitech
Internet Speed
20MBit Down/4 Up
Antivirus
Microsoft Security Essentials
Browser
Internet Explorer 10
Hi guys

Glad to report that I did a reformat of the C drive, and everything is groovy now, Windows Firewall is working again, no pesky viruses either, thanks for your help everyone! :)
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64-BitIntel i5 2500kCorsair Vengeance 8gb DDR3 RAMGeForce GTX 560
OS
Windows 7 Ultimate 64-Bit
CPU
Intel i5 2500k
Motherboard
Gigabyte GA-Z68AP-D3
Memory
Corsair Vengeance 8gb DDR3 RAM
Graphics Card(s)
GeForce GTX 560
Sound Card
Creative X-Fi XtremeMusic
Monitor(s) Displays
Samsung SyncMaster P2450
Screen Resolution
1920x1080
Hard Drives
2 x 500gb Samsung Spinpoint
1 x 1TB Samsung Spinpoint
1 x 1.5TB Seagate Barracuda
PSU
Seasonic M12 700W
Case
Antec Twelve Hundred
Keyboard
Logitech K120
Mouse
Logitech G400
Internet Speed
50mbit Cable (Virgin Media)
Glad you're all fixed up! You can mark the thread as solved (at the top of the page).
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64
OS
Windows 7 Ultimate x64
Will do, thank you again :)
 

My Computer My Computer

At a glance

Windows 7 Ultimate 64-BitIntel i5 2500kCorsair Vengeance 8gb DDR3 RAMGeForce GTX 560
OS
Windows 7 Ultimate 64-Bit
CPU
Intel i5 2500k
Motherboard
Gigabyte GA-Z68AP-D3
Memory
Corsair Vengeance 8gb DDR3 RAM
Graphics Card(s)
GeForce GTX 560
Sound Card
Creative X-Fi XtremeMusic
Monitor(s) Displays
Samsung SyncMaster P2450
Screen Resolution
1920x1080
Hard Drives
2 x 500gb Samsung Spinpoint
1 x 1TB Samsung Spinpoint
1 x 1.5TB Seagate Barracuda
PSU
Seasonic M12 700W
Case
Antec Twelve Hundred
Keyboard
Logitech K120
Mouse
Logitech G400
Internet Speed
50mbit Cable (Virgin Media)
If the firewall will not start, run ComboFix from Bleeping Computer. It will restore all of the firewall keys, permissions, and policies.

ComboFix Download
 

My Computer My Computer

At a glance

Windows 7 X64 Ultimate
OS
Windows 7 X64 Ultimate
Back
Top