Red Circle w/ White X -- braviax.exe -- System Defender

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by tlrich, Feb 12, 2008.

  1. tlrich

    tlrich Private E-2

    Okay you guys, I'm a newbee to this so be gentle.

    I need help with the removal of a trojan that just won't die... braviax.exe. I now have a red circle with a white X in my task bar that is constantly telling me that I have a virus and to click here. This thing has specifically affected anything I search for on the internet it takes me to this page full of advertisement where you can click to buy something. And the link that I click on has nothing to do with the page that it takes me to. I'll go back to the previous page and click the link again then it'll finally take me to the page I need. It's also caused my McAfee to "not be protecting my computer" anymore, which is not a good thing.

    The first time I saw red circle with the white X, it I figured it was some type of malicious program, so I tried to close it out. (This happened last Friday, 2/8/09) Instead of closing, it opened a Web page where I could purchase "System Defender". I've done some research over the past few days and I believe this is very similar to "Ultimate Defender". Anyway, while in SAFE MODE I've been able to run a SDAT file that McAfee provided to me. The first time I ran it, it located a C:\RECYCLER (FakeAlert-C trojan), a Winfixer program, C:\WINDOW\braviax.exe (FakeAlert-C trojan), C:\WINDOWS\system32\braviax.exe (FakeAlert-C trojan). The first time I ran this it said that they all were deleted. Restarted my computer and the braviax.exe files were back. McAfee hasn't been able to help me. There has to be some other hiden file on my computer that keeps reviving this thing and I just don't know how to find it. Any help would be greatly appreciated.

    Some of the things that I've tried to do have been to download and run the combofix. Didn't work. This SDAT thing from McAfee. I've tried to manually click on the file and delete it. The only sucess this brings is that a little while after I do it the red circle thing "has to close due to an error".
     
  2. tlrich

    tlrich Private E-2

    Okay, so I just paid McAfee $70 bucks, stayed on the phone with this guy for over an hour while he "took over" my PC. When he was done he assured me that everything was all fixed. Guess what!!! He was wrong. Does anybody out there have any suggestions?
     
  3. abri

    abri MajorGeek

    Hi tlrich!
    Welcome to Major Geeks!

    Please run Removing Zlob aka SmitFraud, SpySheriff, Infections. This will produce two logs, both named rapport.txt. Please attach the first rapport.txt before continuing with the cleaning procedures so the 2nd log doesn't overwrite the first one.

    After you finish with that, please go to the READ & RUN ME FIRST and scroll down to the bottom of the page and select the link for your operating system. On the page that opens up, find Combofix and run it as per the instructions. Then go back to the beginning of the READ & RUN ME and go through all the instructions. You do not have to re-run Combofix. When you finish, you'll have two or three logs depending on whether or not AVG Antispyware produces a log. Please attach these with your post.

    Thanks.
    abri
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds