iexplore.exe*32 / two processes at startup

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by the mekanic, Jan 2, 2013.

  1. the mekanic

    the mekanic Major Mekanical Geek

    Hoping you can lend a hand on this one. My uncle called me because he ended up with FBI MoneyPak. Got that ousted with no problem using Safe Mode and MalwareBytes. MBAM picked up 25 infections to start, and after McAfee :( was kicked to the curb, and AVG was installed it picked up 1 infection.

    Problem is upon further inspection, there are two iexplore processes running at startup. I have scanned with MalwareBytes, AVG, and even Windows Defender and the results are zero. Even the anti-rootkit scan from AVG turned up nothing.

    I can kill the processes after startup, but I can't expect my uncle to do such every time.

    Any suggestions, or advice you may have would be helpful...
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  3. the mekanic

    the mekanic Major Mekanical Geek

    I looked at the properties on the bots that were running an Explorer 32 bit, and they were dated December 13 for file creation.

    So I did a System Restore and killed the 2 bots that were taking up processes. Rolled it back to November 28th.

    Main issue is he surfs European websites, But the system restore routed the last of the malware.
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    OK, glad all is well. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds