Possible compromised MBR

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by jeliot86, Dec 31, 2011.

  1. jeliot86

    jeliot86 Private E-2

    Long time troller first time poster here :)

    I have a friends Dell Dimension E510 here in front of me. Info I have been given is that someone upgraded her memory and since has been having this issue. (at the moment I'm assuming he did not install anything else). The system seems to want to try and dual boot at start up giving a message like
    Cannot find GRLD (not exact going by memory) but something to do with running a linux dual boot ect.......

    I want to make sure this is not a virus but a quick scan with Norton came up with nothing and the computer it otherwise running fine. I ran MBR check and was hoping you could put my mind at ease and let me know if there is anything unusual.

    I know dell has a proprietary MBR so right from the get go MBR check thinks there is something going on. Here is the Log File

    And thnx guys you do to notch work!
     

    Attached Files:

    Last edited by a moderator: Jan 1, 2012
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    MBRCheck often does not recognize a Dell MBR. Unless you are having issues, I wouldn't worry about it. ;)
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Probably not the reason. See the comment about dual booting and Linux. This is more likely the reason.
     
  4. jeliot86

    jeliot86 Private E-2

    Really the only issue is the nagging MBR boot record error at startup. It's using a backup of the MBR to boot because the original seems to be corrupt
     
  5. jeliot86

    jeliot86 Private E-2

    Any ideas on how I can safely fix this MBR. Computer boots fine after the initial error so how can I correct the MBR? From what I gather "fixmbr" will break a dells restore partition and render it unaccesible. Bigger concern...... was this sudden change in the MBR malware?

    Thnx again guys
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Are you in fact dual booting? And yes, running fixmbr will affect your restore partition.
     
  7. jeliot86

    jeliot86 Private E-2

    It's seems that the computer is trying really hard to do so but is failing. I'm running blind as far as what was done before it reached my desk. But it seems it may have been more than a memory upgrade! :confused. It seems only other reason for a change in the MBR would be malware
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You have not expressed any symptoms of malware from an MBR infection. My guess is that it is the dual boot option that is causing the issue. I suggest you post in the software forum to remove the dual boot option.
     
  9. jeliot86

    jeliot86 Private E-2

    Thanks, will do
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds