mixboltamok?

Discussion in 'Malware Help (A Specialist Will Reply)' started by quorumangelorum, Jul 16, 2008.

  1. quorumangelorum

    quorumangelorum Private E-2

    This may sound a bit weird: Twice now, a program called, "mixboltamok.exe" has appeared in my system and caused wonky behavior. When I run MSCONFIG, it has two entries. (both unchecked now, of course; I ran a search for the executable & deleted it both times as soon as I noticed it.) The program was installed alone inside a folder called "free copy" in C:\docum~1\admin~1\application data. I haven't been able to determine where it comes from yet.

    What's odd is that there is NO mention of this app anywhere on the net. I have never had any kind of malware that no one else ever had had a problem with or somehow mentioned in passing online.

    So what I want to know is, is there a place where I can filter out that particular executable in the future? I was thinking that this might be the kind of thing I could do in the MMC but honestly I haven't had call to use it much.

    I'm using Bit Defender, but it's not configurable in that way AFAIK.
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You can create your own file or folder with that name and then make it a read-only system file or folder. This may stop it from coming back since the dummy file would block it. It actually sounds like a LOP infection to me.

    However, you may have other infections that are the root cause of this problem. I advise you to do the below.

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions. If something does not run, write down the info to explain to us later but keep on going. Do not assume that because one step does not work that they all will not.

    READ & RUN ME FIRST. Malware Removal Guide
     
  3. quorumangelorum

    quorumangelorum Private E-2

    Hey thanks, chaslang. Very sensible idea, elegantly simple.

    I did as you suggested, put one read-only folder w/ same name as malware folder, containing read-only doc of same name as malware.exe, in system, system 32, and in application data, where it first turned up. (I had already done the disinfecting, thoroughly.)

    Thanks again.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds