So, a couple weeks ago, I caught a virus.
I've been dealing with malware/spyware/viruses for a long time. I don't know as much as a lot of people, but I'm generally able to handle them and remove them cleanly.
But this one is something else.
Here's the symptoms.
1. iexplorer.exe runs constantly in the background. I never, ever use Internet Explorer, and when I kill the process in task manager it simply starts again a few minutes later. My Avast doesn't detect that internet explorer is installed, however. Under the "Additional Protection>Web Rep" section of the Avast interface, it says IE is not installed. If I go to the Internet Explorer folder in my Program Files, I cannot move or delete the iexplorer.exe application as it says I do not have permission. My avast also pops up with "Threat Detected" popups pretty often, with the following information..
Infection Details
URL: 64.111.211.165/c.php?re
Process: file://C:\Program Files\Internet Explorer\iexplore.exe
Infection: url:Mal
Through a bit of hacking and tinkering I was able to rename the iexplorer.exe application, but it was simply replaced by another not long after. My default browser is firefox, but it keeps getting switched back to IE.
2. Google Redirect. This is probably the most annoying, as it impedes on my ability to even try to research this problem and find a solution. The redirect always involves a variation of the ip "64.111.211.xxx(usually 164 or 165)", along with a few others.
I've scanned with Malwarebytes, AVG, Spyware Terminator, Super AntiSpyware, Spyware Blaster, spyware search and destroy, and avast. I've attempted to use TDSSkiller, but when I try to run it nothing happens. I've tried renaming it, changing it to .com or .pif, placing it into different folders, booting in safe mode...nothing. And none of the stuff that runs has detected anything.
3. BSODs. These are probably unrelated and I'll attempt to figure out what's causing them after getting my computer clean, but some references to programs that could help diagnose the cause of them would be greatly appreciated.
I've been dealing with malware/spyware/viruses for a long time. I don't know as much as a lot of people, but I'm generally able to handle them and remove them cleanly.
But this one is something else.
Here's the symptoms.
1. iexplorer.exe runs constantly in the background. I never, ever use Internet Explorer, and when I kill the process in task manager it simply starts again a few minutes later. My Avast doesn't detect that internet explorer is installed, however. Under the "Additional Protection>Web Rep" section of the Avast interface, it says IE is not installed. If I go to the Internet Explorer folder in my Program Files, I cannot move or delete the iexplorer.exe application as it says I do not have permission. My avast also pops up with "Threat Detected" popups pretty often, with the following information..
Infection Details
URL: 64.111.211.165/c.php?re
Process: file://C:\Program Files\Internet Explorer\iexplore.exe
Infection: url:Mal
Through a bit of hacking and tinkering I was able to rename the iexplorer.exe application, but it was simply replaced by another not long after. My default browser is firefox, but it keeps getting switched back to IE.
2. Google Redirect. This is probably the most annoying, as it impedes on my ability to even try to research this problem and find a solution. The redirect always involves a variation of the ip "64.111.211.xxx(usually 164 or 165)", along with a few others.
I've scanned with Malwarebytes, AVG, Spyware Terminator, Super AntiSpyware, Spyware Blaster, spyware search and destroy, and avast. I've attempted to use TDSSkiller, but when I try to run it nothing happens. I've tried renaming it, changing it to .com or .pif, placing it into different folders, booting in safe mode...nothing. And none of the stuff that runs has detected anything.
3. BSODs. These are probably unrelated and I'll attempt to figure out what's causing them after getting my computer clean, but some references to programs that could help diagnose the cause of them would be greatly appreciated.