Wave mute, iexplorer.exe, invisible pop-up/ads help!

Discussion in 'Malware Help (A Specialist Will Reply)' started by DieZnone, Jul 15, 2010.

  1. DieZnone

    DieZnone Private E-2

    Hello MajorGeeksHelpers.

    I'm not a expert on computers I been trying to solving this through other posts on this forum for 2 days I havn't come up with anything.

    I have this type of thing that mutes my wave volume to zero in sound control and running multiple invisible iexplorer.exe in taskmaster, also pop-ups and invinsible sound-ads sometimes scares the hell out of me!

    - Programs I have downloaded and runned.
    I followed the text very carefully and got most of the logs aswell.

    I tried to run ComboFix.exe too but I doesn't seem to be able to shut my virus program off proper - AVG 9.0.

    I'm feeling very lost right now, and would appriciate any help possible to get rid of this problem ruining all my fun, is there anymore logs that I should get?

    - Regards
    - DieZnone
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    • Download bootkit_remover.rar
    • Click the underlined DOWNLOAD text to download the file and save it to your Desktop.
    • You then need to extract the remover.exe file from the RAR using a program capable of extracing RAR compressed files. If you don't have an extraction program, you can use7-Zip
    • After extracing remover.exe to your Desktop, double click the remover.exe file to run the program.
    • Attach or post inline here, the output from remover.exe
     
  3. DieZnone

    DieZnone Private E-2

    This is what bootkit says, i don't think it work proper?

    Bootkit Remover version 1.0.0.1
    (c) 2009 eSage Lab
    www.esagelab.com

    \\.\C: -> \\.\PhysicalDrive0
    MD5: b19ee33a0168d5f0bb9afbe12e2bc035

    Size Device Name MBR Status
    --------------------------------------------
    232 GB \\.\PhysicalDrive0 Unknown boot code

    Unknown boot code has been found on some of your physical disks.
    To inspect the boot code manually, dump the master boot sector:
    remover.exe dump <device_name> [output_file]
    To disinfect the master boot sector, use the following command:
    remover.exe fix <device_name>


    Press any key to quit...
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Was it on the desktop where requested?

    Also I need to ask some questions:
    1. Do you have any drives that has a non-windows installation on them
    2. Are all drives NTFS formatted
    3. Do you have any non-standard or special MBRs which can occur from companies like Dell or HP who frequently install additional partitions used for recovery partitions in lieu of giving CD/DVDs.
    4. Is any program like Grub ( see:http://www.gnu.org/software/grub/ ) being used
    5. Is drive-encryption being used?
    6. Are any drives external USB pen drives or external hard drives being used?
    7. VERY IMPORTANT: Do you have all important data backed up? You really should do this before continuing since we will need to rewrite your MBR to fix this and while most times this can be done without any problem, these infections can react badly and that could result in a PC not being bootable. You really don't have much choice though since these infections are too dangerous to your security to leave on a PC.
     
  5. DieZnone

    DieZnone Private E-2

    1. I don't know, I don't think so actully.
    2. No, I'm no expert :/
    3. No idea, guess is no.
    4. No idea, guess is no.
    5. No idea, guess is no.
    6. I'm not using any external harddrive or any else.
    7. I have never been running any acronis back-up & recovery stuff on the computer.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Then back up anything important and we will continue. Because as stated, there are indeed risks with this procedure.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds