antivirus people get in here
Well my roommate's computer cutting in and out was a separate problem. Our wireless was acting up. Got that fixed.
I think I narrowed down my problem. Theres 2 iexplorer.exe running when I only have 1 open. In taskmgr Ill close the bigger iexplorer.exe and it will start itself back up. When I close the smaller one it stays closed. Doing some searching I found out its most likely a .dll code still lurking around after dodging many scans. Im no computer guru so I cant tell a legit .dll code from a fake one.
I would love to reformat but no disks. Laptop was already loaded with programs when bought.
Any other helpful tips? Im basically running different anitvirus programs, scanning, and praying it works, but no luck yet. At least this time I have an idea what the problem is.
I think I narrowed down my problem. Theres 2 iexplorer.exe running when I only have 1 open. In taskmgr Ill close the bigger iexplorer.exe and it will start itself back up. When I close the smaller one it stays closed. Doing some searching I found out its most likely a .dll code still lurking around after dodging many scans. Im no computer guru so I cant tell a legit .dll code from a fake one.
I would love to reformat but no disks. Laptop was already loaded with programs when bought.
Any other helpful tips? Im basically running different anitvirus programs, scanning, and praying it works, but no luck yet. At least this time I have an idea what the problem is.
ive cleaned that up (in one form or another) on probably almost 100 computers.
go into safe mode w/ netowrking
run malwarebytes, remove everything
reboot back into safe mode w/ networking
run combofix
let combofix reboot your computer when its done, wait for the log, etc.
run cleanup!
reboot back into safe mode w/ networking, run cleanup again
go into safe mode w/ netowrking
run malwarebytes, remove everything
reboot back into safe mode w/ networking
run combofix
let combofix reboot your computer when its done, wait for the log, etc.
run cleanup!
reboot back into safe mode w/ networking, run cleanup again
Last edited by spanky; Feb 26, 2010 at 06:07 PM.
I've had a lot of luck fully getting rid of infections using this forum - http://www.geekstogo.com/forum/Malwa...ide-t2852.html
__________________
99 Integra GSR
06 TSX
duck squad member #00003
99 Integra GSR
06 TSX
duck squad member #00003
My mediacenter is doing the exact same thing. I've been too busy to do anything about it though...
Maybe i'll fix it tonight.
Don't forget to pull all updates for malware, AVG, ect. beforehand.
Maybe i'll fix it tonight.
Don't forget to pull all updates for malware, AVG, ect. beforehand.
Last edited by BetterBob; Feb 26, 2010 at 09:29 PM.
Thanks for the tips Ive done some major cleanup and scanning with AVG. But it still seems my internet connectivity is lacking. When I try to open a page most of the time it lags or just doesnt display. I have a feeling the virus screwed with commands or something before it was removed. Any other suggestions to get my internet connection running properly?
A lot of the fake antivirus sites set the proxy server option.
ive cleaned that up (in one form or another) on probably almost 100 computers.
go into safe mode w/ netowrking
run malwarebytes, remove everything
reboot back into safe mode w/ networking
run combofix
let combofix reboot your computer when its done, wait for the log, etc.
run cleanup!
reboot back into safe mode w/ networking, run cleanup again
go into safe mode w/ netowrking
run malwarebytes, remove everything
reboot back into safe mode w/ networking
run combofix
let combofix reboot your computer when its done, wait for the log, etc.
run cleanup!
reboot back into safe mode w/ networking, run cleanup again
c:\windows\system32\drivers\uustqai.sys . . . . failed to delete
I looked up its properties, it was created the exact time I got attacked. I try to request security info but it cant be displayed. I also cant delete it, rename it, relocate it... etc. "I always get "Cannot read from the source file or disk." Any ideas? Thanks again you guys have been nothing but helpful so far.

edit: just to add, I still have an extra iexplorer.exe running in task manager. probably due to uustqai.sys still active.
Last edited by whoaitslen2; Feb 27, 2010 at 09:46 AM.
I've had a lot of luck fully getting rid of infections using this forum - http://www.geekstogo.com/forum/Malwa...ide-t2852.html
__________________
99 Integra GSR
06 TSX
duck squad member #00003
99 Integra GSR
06 TSX
duck squad member #00003


