Rtkvac.sys has been removed.

patmoss Posted messages 2759 Status Membre -  
 blu3jeans -
Hello,

I have a Packard Bell Easy Note laptop from 2007.

But the issue is that I ran AVG Anti Rootkit and deleted a file that was supposed to be a rootkit.

Now, when I try to sync music to a device (MP3 player, SD card of mobile phone), it is impossible. Not even connecting headphones or other speakers works.

In fact, the file that was deleted is named "Rtkvac.sys". Because, during an audio driver installation, they specified that the file in question was missing.

How can I fix this problem?
Configuration: Windows Vista Opera 9.64

16 réponses

Fred3000 Posted messages 13 Status Membre 5
 
Have you tried performing a system restore?
0
patmoss Posted messages 2759 Status Membre 41
 
Yes. On a previous date.

But, always the same.
0
Fred3000 Posted messages 13 Status Membre 5
 
The date you restored your computer was well before the date you caught the rootkit?
0
patmoss Posted messages 2759 Status Membre 41
 
No.
0
patmoss Posted messages 2759 Status Membre 41
 
I made an Everest report.

Here is the log.

Please analyze it.

--------[ EVEREST Home Edition (c) 2003-2005 Lavalys, Inc. ]------------------------------------------------------------

Version EVEREST v2.20.405/en
Website http://www.lavalys.com/
Report type Report generator
Computer PC-DE-UTILISATE
Generator User
Operating System Microsoft Windows Vista Home Edition 6.0.6002 (WinVista Beta)
Date 2009-07-10
Time 15:59

--------[ Summary ]------------------------------------------------------------------------------------------------------

Computer:
Operating System Microsoft Windows Vista Home Edition
System Service Pack Service Pack 2
DirectX 4.09.00.0904 (DirectX 9.0c)
System Name PC-DE-UTILISATE
User Name User

Motherboard:
Processor Type Mobile DualCore Intel Celeron M, 1600 MHz
Motherboard Name Packard Bell BV EasyNote MZ35
Motherboard Chipset Unknown
System Memory 896 MB
BIOS Type Phoenix (01/16/07)

Storage:
IDE Controller Standard Dual Channel PCI IDE Controller
IDE Controller Standard Dual Channel PCI IDE Controller
SCSI/RAID Controller Microsoft iSCSI Initiator
Hard Drive ST980811AS ATA Device (74 GB, IDE)
Optical Drive Optiarc DVD RW AD-5540A ATA Device
Hard Drives Status SMART OK

Partitions:
C: (NTFS) 68124 MB (10669 MB free)

Input:
Keyboard Standard PS/2 Keyboard
Mouse Synaptics PS/2 Port TouchPad

Network:
Network Card Ralink Wireless LAN Card V2 (192.168.1.10)
Network Card Realtek RTL8139/810x Family Fast Ethernet NIC

Devices:
Battery Microsoft AC Adapter
Battery Microsoft ACPI Compatible Control Method Battery

--------[ DMI ]---------------------------------------------------------------------------------------------------------

[ BIOS ]

BIOS Properties:
Vendor Packard Bell
Version V0.18
Release Date 01/16/2007
Size 14592 KB
Boot Devices Floppy Disk, Hard Disk, CD-ROM
Available Functions Flash BIOS, Shadow BIOS, BBS, Smart Battery
Standards Complied DMI, ACPI, ESCD, PnP
Expansion Capabilities ISA, PCI, PCMCIA, USB

[ System ]

System Properties:
Manufacturer Packard Bell BV
Product EasyNote MZ35
Serial Number 108743070134
Universally Unique Identifier 699AD760-001636D2-D99B4E45-435F4349
Boot Type Power Button

[ Motherboard ]

Motherboard Properties:
Manufacturer Packard Bell BV
Product EasyNote MZ35
Version D3B
Serial Number QPCPBD70216841

[ Chassis ]

Chassis Properties:
Manufacturer Packard Bell BV
Version N/A
Serial Number 50424E
Chassis Type Notebook
Boot Status Safe
Power Status Safe
Temperature Conditions Safe
Security Conditions None

[ Processors / Intel(R) CPU T2060 @ 1 ]

Processor Properties:
Manufacturer Intel
Version Intel(R) CPU T2060 @ 1
External Clock 100 MHz
Maximum Clock Speed 1600 MHz
Current Clock Speed 1600 MHz
Type Central Processor
Voltage 2.2 V
Status Enabled
Update ZIF
Socket ID U23

[ Caches / CACHE1 ]

Cache Properties:
Type Internal
Status Enabled
Operation Mode Write-Back
Maximum Size 16 KB
Installed Size 16 KB
Managed SRAM Type Asynchronous, Burst, Pipeline Burst
Current SRAM Type Asynchronous
Socket ID CACHE1

[ Caches / CACHE2 ]

Cache Properties:
Type External
Status Enabled
Operation Mode Write-Back
Maximum Size 512 KB
Installed Size 1024 KB
Managed SRAM Type Asynchronous, Burst, Pipeline Burst
Current SRAM Type Burst
Socket ID CACHE2

[ Caches / L2 Cache ]

Cache Properties:
Type Internal
Status Enabled
Operation Mode Write-Back
Maximum Size 1024 KB
Installed Size 1024 KB
Managed SRAM Type Burst, Pipeline Burst
Current SRAM Type Burst
Socket ID Level 2 Cache

[ Memory Devices / J400 ]

Memory Device Properties:
Form Factor DIMM
Type DRAM
Detailed Type Synchronous
Device Location J400
Bank Number Channel A0

[ Memory Devices / J401 ]

Memory Device Properties:
Form Factor DIMM
Type DRAM
Detailed Type Synchronous
Device Location J401
Bank Number Channel A1

[ Memory Devices / J501 ]

Memory Device Properties:
Form Factor DIMM
Type DRAM
Detailed Type Synchronous
Size 512 MB
Total Size 64 bits
Data Width 64 bits
Device Location J501
Bank Number Channel B0

[ Memory Devices / J500 ]

Memory Device Properties:
Form Factor DIMM
Type DRAM
Detailed Type Synchronous
Size 512 MB
Total Size 64 bits
Data Width 64 bits
Device Location J500
Bank Number Channel B1

[ System Slots / PCI Slot J1100 ]

System Slot Properties:
Slot ID PCI Slot J1100
Type PCI
Data Bus Width 32 bits
Length Long

[ Integrated Devices / ATI RS400M ]

Integrated Device Properties:
Description ATI RS400M
Type Video

[ Integrated Devices / ADI ]

Integrated Device Properties:
Description ADI
Type Sound

--------[ Overclock ]---------------------------------------------------------------------------------------------------

Processor Properties:
Processor Type Mobile DualCore Intel Celeron M
Processor Alias Yonah
(CPUID) Processor Name Genuine Intel(R) CPU T2060 @ 1.60GHz
(CPUID) Revision 000006ECh

CPU Speed:
CPU Clock Speed 1599.58 MHz (original: 1600 MHz)

CPU Cache:
Level 1 Code Cache 32 KB
Level 1 Data Cache 32 KB
Level 2 Cache 1 MB (On-Die, ATC, Full-Speed)

Motherboard Properties:
Motherboard ID <DMI>
Motherboard Name Packard Bell BV EasyNote MZ35

BIOS Properties:
System BIOS Date 01/16/07
Video BIOS Date 06/11/07
BIOS Version V0.18

--------[ Power Management ]------------------------------------------------------------------------------------------

Power Management:
Current Power Source AC Power
Battery Status No Battery
Full Battery Usage Time Unknown
Remaining Usage Time Unknown

--------[ Probe ]-------------------------------------------------------------------------------------------------------

Probe Properties:
Probe Type HDD

Temperatures:
Processor 61 °C (142 °F)
Seagate ST980811AS 42 °C (108 °F)

--------[ Processor ]--------------------------------------------------------------------------------------------------

Processor Properties:
Processor Type Mobile DualCore Intel Celeron M, 1600 MHz
Processor Alias Yonah
Instruction Set x86, MMX, SSE, SSE2, SSE3
Original Clock Speed 1600 MHz
Level 1 Code Cache 32 KB
Level 1 Data Cache 32 KB
Level 2 Cache 1 MB (On-Die, ATC, Full-Speed)

Multi CPU:
CPU #0 Genuine Intel(R) CPU T2060 @ 1.60GHz, 1599 MHz
CPU #1 Genuine Intel(R) CPU T2060 @ 1.60GHz, 1600 MHz

Processor Manufacturer:
Company Name Intel Corporation
Product Information https://www.intel.com/content/www/us/en/products/processors.html

CPU Usage:
CPU #1 / Core #1 / HTT Unit #1 0 %
CPU #1 / Core #1 / HTT Unit #2 100 %

--------[ CPUID ]-------------------------------------------------------------------------------------------------------

(CPUID) Properties:
(CPUID) Manufacturer GenuineIntel
(CPUID) Processor Name Genuine Intel(R) CPU T2060 @ 1.60GHz
(CPUID) Revision 000006ECh
(IA) Brand ID 00h (Unknown)
Platform ID 00h (Unknown)
(IA) Processor Serial Number Unknown
HTT / CMP Units 1 / 2

Instruction Set:
Extensions 64-bit x86 (AMD64, EM64T) Not Supported
Alternate Instruction Set Not Supported
AMD 3DNow! Not Supported
AMD 3DNow! Professional Not Supported
AMD Enhanced 3DNow! Not Supported
AMD Extended MMX Not Supported
Cyrix Extended MMX Not Supported
IA-64 Not Supported
IA MMX Supported
IA SSE Supported
IA SSE 2 Supported
IA SSE 3 Supported
Instruction CLFLUSH Supported
Instruction CMPXCHG8B Supported
Instruction CMPXCHG16B Not Supported
Instruction Conditional Move Supported
Instruction MONITOR / MWAIT Supported
Instruction RDTSCP Not Supported
Instruction SYSCALL / SYSRET Not Supported
Instruction SYSENTER / SYSEXIT Supported
Instruction VIA FEMMS Not Supported

Security Devices:
Advanced Cryptography Engine (ACE) Not Supported
Data Execution Prevention (DEP, NX, EDB) Supported
Hardware Random Number Generator (RNG) Not Supported
Montgomery Multiplier & Hash Engine Not Supported
Processor Serial Number (PSN) Not Supported

Power Management Devices:
Automatic Clock Control Supported
Enhanced Halt State (C1E) Not Supported
Enhanced SpeedStep Technology (EIST, ESS) Supported
Frequency ID Control Not Supported
LongRun Not Supported
LongRun Table Interface Not Supported
PowerSaver 1.0 Not Supported
0
pico.l Posted messages 24943 Registration date   Status Modérateur, Contributeur sécurité Last intervention   2 503
 
Hello,

Install this driver >>> http://support.packardbell.com/fr/item/index.php?m=download&i=7422880100;Realtek_HDA_5317.exe;0;;

See you!
0
patmoss Posted messages 2759 Status Membre 41
 
Hi,

I'm going to test it.

I'll keep you informed.

Thanks for the link.
0
patmoss Posted messages 2759 Status Membre 41
 
I have sound again, but still nothing regarding mobile device detection for synchronization or headphone detection via the jack.

Thank you again.
0
pico.l Posted messages 24943 Registration date   Status Modérateur, Contributeur sécurité Last intervention   2 503
 
but still nothing regarding the detection of mobile devices ???

It has nothing to do with sound

the detection of headphones via the jack <<< what does that mean?
0
patmoss Posted messages 2759 Status Membre 41
 
Yes. Because before that, mobile devices in Windows Media Player were detected. Now, however, I can't synchronize music or listen to music with headphones plugged into the laptop, as neither are being detected.

The sound comes out through the built-in output of the PC, but the quality is poor, as the volume is not optimal.

I hope I have been as clear as possible.
Sorry for being brief earlier, but since I know the subject, I neglected to be precise for you, the reader.
0
pico.l Posted messages 24943 Registration date   Status Modérateur, Contributeur sécurité Last intervention   2 503
 
OK, if the driver is properly installed, you need to adjust the sound in >>> Control Panel >>> Sound and Audio Devices Properties >>> https://forums.cnetfrance.fr/tutoriels-windows-7-8-et-autres-sytemes/5593-audio-et-windows-regler-le-son-xp
0
patmoss Posted messages 2759 Status Membre 41
 
Thank you very much.

The tutorial is great.
0
pico.l Posted messages 24943 Registration date   Status Modérateur, Contributeur sécurité Last intervention   2 503
 
Have you solved your problem?
0
patmoss Posted messages 2759 Status Membre 41
 
No.

I'm trying to see.
0
patmoss Posted messages 2759 Status Membre 41
 
Nothing, the sound is not good, it's crackling.
0
blu3jeans
 
Hello, same problem on Windows Seven "Rtkvac.sys has been removed" can you send me the correct driver to install?
0