PC Antispyware 2010 & Braviax infection

Discussion in 'Malware Help (A Specialist Will Reply)' started by SargeUSMC, Aug 27, 2009.

  1. SargeUSMC

    SargeUSMC Private E-2

    Infected with the malware shown. MBAM wouldn't run, so I renamed the executable under advice and got it to run. Halfway thru the scan, the explorer shell quit runing and will not run now. I can boot to the command prompt in safe mode, but otherwise, no matter what I do, there's no explorer shell. I have access to the dir tree thru the taskman, and I have HJT and combofix on a flash drive that won't run when I try to run them from the taskman. If I try to manually start the explorer shell, it tells me it can't access the file, and I may not have permission. I can't run sfc or chkdks or system restore from the command prompt.

    I donno what to do. This is an XP Home SP 3 install. The SP3 was installed as an update. I have the Home CD and the SP3 updater. I don't have a slipstreamed CD.

    I donno what to do. Duck and cover, I guess.................


    Semper Fi,

    Sarge
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Does the C:\Windows\explorer.exe file exist? If so, what is the file size in byte as seen from a dir listing at the command prompt? If explorer.exe is missing you will need to restore it from a backup or from your Windows CD.

    You could also try the below from Safe Mode with Command Prompt. But before trying to reboot in this mode, you first need to use another PC to download the file if you do not already have it on your PC
    1. Download MGtools.exe
    Copying the above file to the problem PC.
    • Now copy the above file to either a CD or flash drive.
    • Put this CD or flash drive into the problem PC and see if you can use Task Manager to copy the file to the root folder of the Windows boot drive which is normally drive C. If you don't have any idea how to do this from Task Manager, try the below methods (I'll give to methods in case the 1st does not work)
      • Method 1 to Copy File
        1. Click File, New Task (Run...) and then click the Browse button.
        2. Use the Browse windows to navigate to the CD or flash drive.
        3. Select the MGtools.exe file by clicking on it once so that it is highlighted.
        4. Then press CTRL-C to copy the file.
        5. Then navigate back to the C drive by clicking the My Computer icon in the Browse window. Select the C drive by double clicking on it.
        6. Then press CTRL-P to copy the file to the C drive root folder.
      • Method 2 to Copy File
        1. Click File, New Task (Run...) and enter cmd and click OK.
        2. If the above works a command prompt window will open
        3. In the command prompt window type cd C:\ and hit the enter key. This should change the prompt in the window to C:\>
        4. Now you need to know the drive letter of the CD drive or the flash drive that you will be copying from to do the below command. I'm going to assume the drive letter is E and put that in my example command. So enter the below commands followed by the enter key:
          • copy E:\MGtools.exe
        5. If the above copy commands work, you should get a response of 1 file copied
    • Now reboot the PC by selecting the Shutdown tab in Task Manager and then select Restart to restart the PC.
    • and press the F8 key to get to the boot menu.
    • In the boot menu, select Safe Mode with Command Prompt
    • When the PC boots up, you should eventually get a command prompt Windows to open (assuming everything works OK).
    • In the command prompt window, enter the below commands (the commands are in black bold print. Other text are just comments or explanations).
      • cd C:\
      • mgtools.exe
        • wait for MGtools to finish running. When it finishes, the C:\MGlogs.zip file will exist. Now continue on to the next steps below
      • See if you can copy the C:\MGlogs.zip file to your flash drive or to a floppy so you can take it to another PC to upload here so that we can look for any malware and also a backup for explorer.exe if one is needed.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds