Solved windows backup failed with a MSE alert

drmax

New member
Member
VIP
Local time
4:58 AM
Messages
314
Windows backup fails with MSE reporting "exploit:Blacole.BI" When I removed the threat (never allow for what I read about it) MSE goes green again, but backup never is accomplished. This just started happening within the last 7 days. Did a full MSE scan and no issues. I have not changed any settings to create this. What next?
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
Do you have System Restore points dating back more than 7 days? If so, try one.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Ignatz Special; 4 speed manual gearbox; factory air conditioning; one of one
OS
Windows 7 Home Premium SP1, 64-bit
CPU
Intel Skylake i5-6600K, not overclocked
Motherboard
AsRock Z170M Extreme 4, micro ATX
Memory
8 GB HyperX DDR4-2666 (2 x 4 GB)
Graphics Card(s)
none; graphics are integrated on CPU
Sound Card
onboard: Realtek ALC1150; external: USB Behringer UF0-202
Monitor(s) Displays
Dell S2340M 23 inch IPS
Screen Resolution
1600 x 900
Hard Drives
System: Crucial MX100 series SSD, 128 GB;
Data: Samsung Spinpoint 103SJ, 1 TB;
Backup: WD Caviar Green WD30EZRX-00D8PB0, 3 TB
PSU
Rosewill SilentNight 500 watt fanless, semi-modular
Case
Antec Solo II
Cooling
Noctua NH-U12S; Noctua F12 intake, Noctua S12A exhaust
Keyboard
Microsoft 200 6JH-00001 USB
Mouse
Dell or Microsoft optical wired; USB
Antivirus
Microsoft Security Essentials and Malwarebytes Premium
Browser
Pale Moon
Other Info
All fans PWM; speeds at idle: CPU circa 500 rpm; intake circa 600 rpm; exhaust circa 600 rpm; CPU temps 27 idle and 47 C load in a warm room (27 C/81 F) when running Intel Extreme Tuning Utility stress test.
do you know that i don't somehow have a virus, that could be causing this. everytime i try to back up, mse finds this. i'm running kasperski now to check. i've spend endless hours restoring to an earlier point, only to have that not fix the issue, then to format hard drive and start over. yes i have earlier restore points, but would only do this as an absolute last resort.
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
yes i have earlier restore points, but would only do this as an absolute last resort.

Why only as an absolute last resort? Have you made a lot of system changes in the last week that you don't want to give up?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Ignatz Special; 4 speed manual gearbox; factory air conditioning; one of one
OS
Windows 7 Home Premium SP1, 64-bit
CPU
Intel Skylake i5-6600K, not overclocked
Motherboard
AsRock Z170M Extreme 4, micro ATX
Memory
8 GB HyperX DDR4-2666 (2 x 4 GB)
Graphics Card(s)
none; graphics are integrated on CPU
Sound Card
onboard: Realtek ALC1150; external: USB Behringer UF0-202
Monitor(s) Displays
Dell S2340M 23 inch IPS
Screen Resolution
1600 x 900
Hard Drives
System: Crucial MX100 series SSD, 128 GB;
Data: Samsung Spinpoint 103SJ, 1 TB;
Backup: WD Caviar Green WD30EZRX-00D8PB0, 3 TB
PSU
Rosewill SilentNight 500 watt fanless, semi-modular
Case
Antec Solo II
Cooling
Noctua NH-U12S; Noctua F12 intake, Noctua S12A exhaust
Keyboard
Microsoft 200 6JH-00001 USB
Mouse
Dell or Microsoft optical wired; USB
Antivirus
Microsoft Security Essentials and Malwarebytes Premium
Browser
Pale Moon
Other Info
All fans PWM; speeds at idle: CPU circa 500 rpm; intake circa 600 rpm; exhaust circa 600 rpm; CPU temps 27 idle and 47 C load in a warm room (27 C/81 F) when running Intel Extreme Tuning Utility stress test.
yes i have earlier restore points, but would only do this as an absolute last resort.

Why only as an absolute last resort? Have you made a lot of system changes in the last week that you don't want to give up?
bad luck with other resore issues, in the past. seems its always been a bug, that by restoring, does nothing. i'm trying to pinpoint the issue where the problem is, now and will post back. is there a "virus" section or specialist here at this forum?
thx, dm
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
ran backup again and it would appear this is located in f:device/harddiskshadowcopyvolume54....bla bla bla. I can't copy/paste this and it's nearly a mile long. i'll set this out until someone can tell me how to remove whatever it is i have. thx, dm

**some of the location states sun/java/deployment. wonder if i uninstall java, this would rid of it.
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
I'd start a new thread in the System Security section if a moderator doesn't move this thread to that section.

I find it odd that a google search for that supposed virus "exploit:Blacole.BI" generates only 3 hits.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Ignatz Special; 4 speed manual gearbox; factory air conditioning; one of one
OS
Windows 7 Home Premium SP1, 64-bit
CPU
Intel Skylake i5-6600K, not overclocked
Motherboard
AsRock Z170M Extreme 4, micro ATX
Memory
8 GB HyperX DDR4-2666 (2 x 4 GB)
Graphics Card(s)
none; graphics are integrated on CPU
Sound Card
onboard: Realtek ALC1150; external: USB Behringer UF0-202
Monitor(s) Displays
Dell S2340M 23 inch IPS
Screen Resolution
1600 x 900
Hard Drives
System: Crucial MX100 series SSD, 128 GB;
Data: Samsung Spinpoint 103SJ, 1 TB;
Backup: WD Caviar Green WD30EZRX-00D8PB0, 3 TB
PSU
Rosewill SilentNight 500 watt fanless, semi-modular
Case
Antec Solo II
Cooling
Noctua NH-U12S; Noctua F12 intake, Noctua S12A exhaust
Keyboard
Microsoft 200 6JH-00001 USB
Mouse
Dell or Microsoft optical wired; USB
Antivirus
Microsoft Security Essentials and Malwarebytes Premium
Browser
Pale Moon
Other Info
All fans PWM; speeds at idle: CPU circa 500 rpm; intake circa 600 rpm; exhaust circa 600 rpm; CPU temps 27 idle and 47 C load in a warm room (27 C/81 F) when running Intel Extreme Tuning Utility stress test.
I'd start a new thread in the System Security section if a moderator doesn't move this thread to that section.

I find it odd that a google search for that supposed virus "exploit:Blacole.BI" generates only 3 hits.
odd yes. most likely because i didn't start in correct section. i'll move it over later. thx
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
I found a Java trojan by doing (for no real reason) my first file Backup operation. I found that each time I retried, it was still there. I had to run a manual scan. Then I manually scanned the FOLDER it said the virus was in. Eventually, my file backup worked. Save for the luck of this Backup, I'd never know I had this Trojan in spite of having MSE up-to-date every day.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Windows 7
CPU
AMD Phenom II X2 (dual-core)
Motherboard
GA-MA785GM-US2H
Memory
4G
Graphics Card(s)
integrated ATI HD 4200
Sound Card
integrated
Monitor(s) Displays
Samsung 24"
Screen Resolution
1920x1080
Hard Drives
1 SSD - Samsung 840 - 500 GB - OS and DATA partitions
1 SSD - Intel 320 - 120 GB (used for backups) - Misc/BACKUP
1 SATA HD - WD, 500 GB - BACKUP
PSU
Ultra X4 500W
Case
Ultra X-blaster
Keyboard
Microsoft Digital Media Pro
Mouse
Logitech WIRED!
Internet Speed
15 Mbps FIOS
I found a Java trojan by doing (for no real reason) my first file Backup operation. I found that each time I retried, it was still there. I had to run a manual scan. Then I manually scanned the FOLDER it said the virus was in. Eventually, my file backup worked. Save for the luck of this Backup, I'd never know I had this Trojan in spite of having MSE up-to-date every day.
Uh...I have accomplished manual scanning on either of my drives and it does "not" show anything. It only comes about when I try to do my weekly backup. So I try to do a, I guess "manual" backup and it pops up. I clean it, it goess green, but unable to do a complete back up, due to this. I don't understand. Looks like I'll have to head to a different forum that specializes in this and see what they say.
DM
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
Are you sure the folder that the virus resides in IS covered by the scan?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Windows 7
CPU
AMD Phenom II X2 (dual-core)
Motherboard
GA-MA785GM-US2H
Memory
4G
Graphics Card(s)
integrated ATI HD 4200
Sound Card
integrated
Monitor(s) Displays
Samsung 24"
Screen Resolution
1920x1080
Hard Drives
1 SSD - Samsung 840 - 500 GB - OS and DATA partitions
1 SSD - Intel 320 - 120 GB (used for backups) - Misc/BACKUP
1 SATA HD - WD, 500 GB - BACKUP
PSU
Ultra X4 500W
Case
Ultra X-blaster
Keyboard
Microsoft Digital Media Pro
Mouse
Logitech WIRED!
Internet Speed
15 Mbps FIOS
no, not at all sure. if it does a full scan, i would assume it would be covered. maybe i should have kept avast.
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
fixed

deleted java and back up now runs. no threats detects. now off to the java threads as my new installation will not work....:confused:
 

My Computer

OS
W7 premium 64
CPU
amd a8-3850
Motherboard
asus f1-a75v pro
Memory
8G g-skill
Graphics Card(s)
asus gt-520 silent
Monitor(s) Displays
LED viewsonic 24"
Hard Drives
seagate sata 120
wd 2T green
PSU
cool master 600W silent pro (80+bronze)
Back
Top