Author Topic: Error 5 on MalPE  (Read 146 times)

0 Members and 1 Guest are viewing this topic.

September 26, 2019, 12:46:06 am

whitebro2

  • Newbie

  • Offline
  • *

  • 3
  • Reputation:
    0
    • View Profile
Error 5 on MalPE
« on: September 26, 2019, 12:46:06 am »
I got error 5 trying to remove cmdl32, UevAgentPolicyGenerator, and xpsrchvw.  Are those rootkits?
« Last Edit: September 28, 2019, 03:43:46 pm by whitebro2 »

Reply #1September 26, 2019, 01:25:16 pm

Curson

  • Global Moderator
  • Hero Member

  • Offline
  • *****

  • 2333
  • Reputation:
    82
    • View Profile
Re: Error 5 on MalPE
« Reply #1 on: September 26, 2019, 01:25:16 pm »
Hi whitebro2,

Welcome to Adlice.com Forum.
No, these are not rootkits but they probably are protected by a malicious driver.

Please download Farbar Recovery Scan Tool (x64) and save it to your Desktop.
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please attach log back here using the "Attachments and other options > Attach" feature.
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe). Please also attach that along with the FRST.txt into your reply.
Regards.

Reply #2September 26, 2019, 05:56:27 pm

whitebro2

  • Newbie

  • Offline
  • *

  • 3
  • Reputation:
    0
    • View Profile
Re: Error 5 on MalPE
« Reply #2 on: September 26, 2019, 05:56:27 pm »
Both are attached.
« Last Edit: September 28, 2019, 03:44:45 pm by whitebro2 »

Reply #3September 27, 2019, 03:46:39 pm

Curson

  • Global Moderator
  • Hero Member

  • Offline
  • *****

  • 2333
  • Reputation:
    82
    • View Profile
Re: Error 5 on MalPE
« Reply #3 on: September 27, 2019, 03:46:39 pm »
Hi whitebro2,

Download attached fixlist.txt file and save it to the Desktop.
NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system !

Run FRST and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please attach it to your reply. A zip archive with the naming format Date_Time.zip should also be there. Please attach it as well.

Regards.

Reply #4September 27, 2019, 05:47:14 pm

whitebro2

  • Newbie

  • Offline
  • *

  • 3
  • Reputation:
    0
    • View Profile
Re: Error 5 on MalPE
« Reply #4 on: September 27, 2019, 05:47:14 pm »
Both are attached.
« Last Edit: September 28, 2019, 03:46:10 pm by whitebro2 »

Reply #5September 28, 2019, 11:19:05 am

Curson

  • Global Moderator
  • Hero Member

  • Offline
  • *****

  • 2333
  • Reputation:
    82
    • View Profile
Re: Error 5 on MalPE
« Reply #5 on: September 28, 2019, 11:19:05 am »
Hi whitebro2,

Thanks for your feedback. Your computer is clean.
​​You have enabled RogueKiller MalPE engine, which uses a predictive AI model. The engine is still is in beta state and prone to false positives detection, like some files in your case.

For the time being, these files will continue to be detected, unless you disable MalPE. If you decide to continue to use it, please ignore these detections until we improve the AI.

Regards.