Noob/DIYer reaching out..... Bravia.exe

Discussion in 'Malware Help (A Specialist Will Reply)' started by TallCanTele, May 20, 2008.

  1. TallCanTele

    TallCanTele Private E-2

    Hello! Definately seems like this site is where someone like me can reach out and ask for help, so here goes: I need help! A little background of me: I know basic computer functions and understand most computer talk. I have never really had to deal with a virus, so I am not too savy with all the terminology and processes related to the inner workings of the O/S and its programs, but am confident I will be able to navigate based on some other threads I have located on this subject. I hope I am making sense!
    Situation: Dell B130 laptop running XP. Surfing the web. Took a link and ended up hittin a porn page/adult dating site type deal, for what I briefly saw, and bamn! Programs close and comp restarts. I already knew it was some virus. comp restarts, in lower right hand tray, there is a red circle with a white x, and it keeps saying I have spyware. Another huge symptom, IE explorer will not open and work. Says I am hooked up to the wireless router, but everytime I try to repair the wireless connection it says renewing IP address and just times out, letting me know it did not hook up. Decided to run McAfee . Found something relating to bravia.exe. Typed it in google, saw some threads on this site and some other sites and started to try and understand this virus and ways to fix it. Went into safe-mode on another restart. Found the bravia.exe file and deleted it and some other files that were seemingly related to the .exe file. I say seemingly cause I am not sure what they meant or did but McAfee listed them as being problems so out they went. Re-started in normal mode, red circle with x gone from tray, bring up the process screen, do not see any unkown .exe files running. okay good, or so I thought. Still can not get IE to open and run. Same problem with IP as before. So, I know things still arent right. At this point, join majorgeeks. Go to Malware forum and read sticky's relating to things to do before you find out how much you are SOL!!!. No internet connection, so using regular PC comp, D/L java update and cc cleaner and transfer to usb storage. Then transfer to infected laptop. I did this with all future programs mentioned. Performed ccleaner process and java update(though still needs an internet connection to update I think) and then went to xp cleanup sticky. No internet after ccleaner so I then D/L all mentioned programs in sticky which were SAS,SpyBot,Malware program, combofix, and MGTools. Ran SAS and it did not find anything. Will post log below. Ran spybot, but will not run cause needs an update and cant find where manual update is. Run AntiMalware program, but it also needs internet to run and install. Next, combofix. Close out McAffee. Rename program like mentioned in sticky. Attempt to run from run program screen, but it says it does not recognize the file. double click icon, process starts... clock changed, then Mcafee blocks some program it runs. I am doing something wrong at this point and can not figure out how McAfee is runnin when I exit program. Okay, so then I run MG Tools. Finishes its process and I have a log from that.
    After that long winded, and hopefully helpful story I have given someone a sense of what I have done and what is going on. I am not sure I have done everything correctly but am sure that someone will be able to lead me/direct me into the right direction to get rid of this thing and get back to the normal swing of things. I will attach the logs for SAS and MGtools to this post. Thank you ahead of time, for your time. All the people on this website amaze me with their knowledge and dedication to the computer world. I sure hope someone can help!! Thanks again.... hope to hear from someone soon!
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean...I would suggest that you post in either software or networking forum to help you with the internet connection problem.

    1 If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop & renamed it like we requested.)

    * Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
    * "%userprofile%\Desktop\cf" /u
    o Notes: The space between the cf" and the /u, it must be there.
    o This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    * Delete the C:\cf folder from combofix.
    2 *If we used SmitFraudFix, you can delete all files and folders related to it now including the c:\rapport.txt log.
    3 *If we used VundoFix, you can delete the VundoFix.exe file and the C:\VundoFix Backups folder and C:\vundofix.txt log that was created.
    4. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    5. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    6. If you are running Windows XP or Windows ME, do the below:
    * Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
    * Then reboot and Enable System Restore to create a new clean Restore Point.
    7. After doing the above, you should work thru the below link:
    How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds