Braviax Eradication

Discussion in 'Malware Help (A Specialist Will Reply)' started by chronicles5, Sep 27, 2009.

  1. chronicles5

    chronicles5 Private E-2

    Hi there,

    I'm writing because I've had some serious problems on my Windows XP computer stemming from (I'm assuming) the Braviax virus, at least. I know there are other viruses that have found their way onto my computer as well, probably because of Braviax.

    Any kind of scanning program has been disabled by the virus, and all browsers except Google Chrome have been hijacked, i.e. I get redirected to spam websites. Google Chrome crashes frequently. Normal and Safe mode both work, though sometimes I have to restart my computer several times to log in to normal mode, as it freezes after log in. I do my best to periodically crash any malicious tasks, though it seems likely at this point that the virus has gone much deeper than that.

    I went through all the steps listed under the "Run First" guide, as much as I could. CC Cleaner was the only app that I was able to run, all of the other ones listed on the XP Cleaning Procedure page have been disabled. I've tried the "Inherit" program on all of them, and I've also tried all of the apps in Safe Mode.

    I can usually get apps to start scanning, but they close immediately after. Here is a list of what happens specifically:

    SuperAntiSpyware: EXE file does not even make an attempt to run.

    MalwareBytes: Have been trying to run this for weeks while I've had the virus, and no luck, even with Inherit.exe. The program will scan for no more than 2 seconds before shutting down, then I have to run Inherit again as the program gets disabled.

    ComboFix: Also does not run at all.

    RootRepeal: Scans for a few seconds before crashing and like MBAM, needing Inherit to re-enable it again.

    MGTools: Set up in C directory and tried to run it- it did create a folder and some files but it crashed without creating the log .zip file.

    Again I have tried all 5 of these (and many others!) many times in safe mode and normal mode, before and after using Inherit. They all crash. So unfortunately I have no logs to share.

    Has anyone had this bad of a problem with Braviax, or is it something else? Are there any solutions to at least be able to run a scanner app and produce some logs? I'm at a loss here.

    Thanks in advance for any help...much appreciated!
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Let's see if we can get some info so that we can determine which system file has been corrupted. That way we can try to replace it.

    Download and save the below to your PC (save it anywhere you can find it. The Desktop is fine). Then doube click on it to run it.

    AVPFind.bat

    It should take a couple minutes to run. You will see a black command prompt window while it is running and it should close when it is finished. Once it finishes, attach the c:\avplog.txt file that is will hopefully create as long as the malware does not block the batch file from running.


    Now download and Run exeHelper
    • Please download exeHelper to your desktop.
    • Double-click on exeHelper.com to run the fix.
    • A black window should pop up, press any key to close once the fix is completed.
    • Post the contents of log.txt (Will be created in the directory where you ran exeHelper.com)
    Note: If the window shows a message that says "Error deleting file", please re-run the program before posting a log - and post the two logs together (they will both be in the one file).


    Also please try running the below online scan:

    http://www.superantispyware.com/onlinescan.html

    Reboot immediately after scanning if it finds and removes anything. Let me know if anything was found. See if you can save a log with it.


    Then try running these instructions: Using MGtools

    Attach the below logs when finished with all of the above:
    • C:\avplog.txt - from AVPfind
    • a log from online SAS scan if you could make one
    • log.txt - from exeHelper
    • C:\MGlogs.zip - from MGtools
    The C:\ assumes that drive C is you Windows boot drive. If you boot from another drive, then use the correct drive letter above.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds