Windows defender Error code: 0x80073b01

Anonymous
2013-05-13T04:39:35+00:00

So yesterday I was on a site and a flash player update popped up and said that there was an update for "flash". I checked the certificate and it looked legit, so I had just clicked ask me later and then Windows Defender freaks out saying virus detected over and over. I tried clicking on the popup but nothing, then it said that windows needed to be restarted to delete a virus(or malware couldn't remember what it said). so I restarted it and i am not getting the error code. I also received an alert stating that windows could not make a backup because of a bad file or virus.

I have also reverted back to a previous backup and still the same problem.

Windows for home | Previous Windows versions | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
Answer accepted by question author
Anonymous
2013-05-25T16:13:08+00:00

stunnedjack:

If you have not resolved the problem yet, please note that a possible fix has been posted (by user bhringer) here.

You may wish to try using HitmanPro 3.7 (v3.7.5.198-Beta) with Kickstart 2.2.

A HitmanPro.Kickstart User Manual & FAQ (PDF File) is available here.

"The latest variant of ZeroAccess/Sirefef disables Microsoft Security Essentials and Windows Defender by placing a Reparse Point (Junction/Symbolic Link) on the files of these products. The result is that these antivirus products are disabled by the malware! More info can be found here at KernelMode.info."

"This BETA release of HitmanPro now detects and removes these Reparse Points so that the mentioned AV products will function again."

See original Source.

<EDITED/ADDED>

On june 3, 2013, BETA release of HitmanPro referenced above was RTM'd to final version 3.7.6 Build 201, to include improvements, fixes and "additional repairs of folders and corresponding files in Winsxs folders. In addition, ACL security is reset". See: HitmanPro Release History.

For additional information, see: HitmanPro rescues anti-virus programs from malware attack.

To download the latest version of the tool, please visit HitmanPro 3.7 with Kickstart download site.

HitmanPro.Kickstart User Manual & FAQ (Video & PDF File) is available here.

<EDITED/ADDED>

See probably related/additional information:

Good Luck - Please post back and tell us how it goes.

PD.- David s. cole and Footos29 might wish to give it a shot whilst still awaiting for their disks :-)

Was this answer helpful?

3 people found this answer helpful.
0 comments No comments

65 additional answers

Sort by: Newest
  1. Anonymous
    2013-06-04T03:28:00+00:00

    Here is my log from MBAR Anti Rootkit Beta

    6/1/2013 2:24:34 AM
    mbar-log-2013-06-01 (02-24-34).txt
    
    Scan type: Quick scan
    Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUM | P2P
    Scan options disabled: Deep Anti-Rootkit Scan | PUP
    Objects scanned: 366443
    Time elapsed: 26 minute(s), 4 second(s)
    
    Memory Processes Detected: 0
    (No malicious items detected)
    
    Memory Modules Detected: 0
    (No malicious items detected)
    
    Registry Keys Detected: 0
    (No malicious items detected)
    
    Registry Values Detected: 0
    (No malicious items detected)
    
    Registry Data Items Detected: 0
    (No malicious items detected)
    
    Folders Detected: 1
    c:\$Recycle.Bin\S-1-5-18\$1d5096a9513b5837e0808be7eb313527 (Trojan.Siredef.C) -> Delete on reboot.
    
    Files Detected: 0
    (No malicious items detected)
    
    Physical Sectors Detected: 0
    (No malicious items detected)
    
    (end)
    

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2013-06-03T18:55:28+00:00

    I ran the MBAR here are the results

    Malwarebytes Anti-Rootkit BETA 1.06.0.1003

    www.malwarebytes.org

    Database version: v2013.06.03.07

    Windows 8 x64 NTFS

    Internet Explorer 10.0.9200.16580

    Jennifer :: JENS [administrator]

    6/3/2013 2:41:27 PM

    mbar-log-2013-06-03 (14-41-27).txt

    Scan type: Quick scan

    Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUM | P2P

    Scan options disabled: Deep Anti-Rootkit Scan | PUP

    Objects scanned: 234527

    Time elapsed: 8 minute(s), 40 second(s)

    Memory Processes Detected: 0

    (No malicious items detected)

    Memory Modules Detected: 0

    (No malicious items detected)

    Registry Keys Detected: 0

    (No malicious items detected)

    Registry Values Detected: 0

    (No malicious items detected)

    Registry Data Items Detected: 0

    (No malicious items detected)

    Folders Detected: 0

    (No malicious items detected)

    Files Detected: 0

    Was this answer helpful?

    0 comments No comments
  3. bhringer-9380 4,350 Reputation points Volunteer Moderator
    2013-06-03T18:08:22+00:00

    HitmaPro 3.7.6 Build 201 Stable released today, June 3rd.

    Also HitmanPro rescues anti-virus programs from malware attack (with video)

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2013-06-02T15:13:44+00:00

    I'm having trouble finding the first scan log, but will keep looking

    That's the one we'd like to see. Thank you.

    I'd also suggest you run MBAR now and see what you get :)

    Was this answer helpful?

    0 comments No comments