Previous Thread
Index
Next Thread
Print Thread
Go To
Page 3 of 3 1 2 3
Off-Topic
Joined: Jul 2007
Posts: 996
Expert
OP Offline
Expert
Joined: Jul 2007
Posts: 996
THanks everyone for your concern and advice.

Am currently making a backup of my data on to my external HD- there shouldn't be any .exes in there but I know I will need to:
- scan this drive before retransfering the files
- refrain from connectng this drive to any othe system until I know its safe.

I'm currently having a look at the AVG disc but even that is way beyond what I am comfortable with technically.

I didn't realise these things could be so ingenious. My system can appear to be clean for a while. THen I reboot and the two iexplore.exes come back.


Lawrie does anyone in your team do Sunday house calls to Paris?

mglinert #110702 04/09/11 06:03 AM
Off-Topic
Joined: May 2000
Posts: 21,636
Veteran
Offline
Veteran
Joined: May 2000
Posts: 21,636
Quote:

I didn't realise these things could be so ingenious. My system can appear to be clean for a while. THen I reboot and the two iexplore.exes come back.




You'd be amazed. Some are known to be scheduled to check in to a list of servers to update themselves, reschedule and get a new list of infected servers in case the old ones get shut down ... they can be really nasty. As mentioned, it is in your best interest to not log into any site that contains anything valuable to you (banks paypal etc), or use those passwords anywhere else. If you already have you should use a clean computer to change passwords.


Make your sound your own!
.. I do not work here, but the benefits are still awesome
rharv #110703 04/11/11 01:32 AM
Off-Topic
Joined: Jul 2007
Posts: 996
Expert
OP Offline
Expert
Joined: Jul 2007
Posts: 996
Thanks Bob. Sound advice.

I'm pretty sure I will have to finish up reinstalling, but in the meantime I have found a very handy tool on download.com (Process Blocker) which I am using to block any instances of iexplore.exe, whether launched by myself or the malware.
This tool seems to be effective and it tells me that iexplore.exe is trying to open every 2 minutes or so.
I guess the tool is so obscure that the malware writers didn't think to shortcircuit it.

Also I note that while iexplore.exe is blocked I am not getting any web search redirects.

at least this gives me some breathing space as I prepare the reinstallation (drivers, app. inventory, screenshots of settings, license keys etc..)

Off-Topic
Joined: Jul 2007
Posts: 996
Expert
OP Offline
Expert
Joined: Jul 2007
Posts: 996
Quote:


If your imaging software makes a true disk image, I see it as the easy way to get rid of the malware.







and so it proved, Notes.

To cut a long story, well, long, I realised that I had to take some action to get rid of the virus.

Kaspersky’s site indicated clearly that the rescue disk is designed for use when all else had failed and they recommend trying one of their products, Kaspersky Virus Removal Tool (KVRT) first.

I did this and sure enough KVRT found 3 instances of a mem:win32Rootkittdss.a virus – all hiding away in various systems files.
The first instance the tool proposed only ‘Skip’ (‘disinfect’ and ‘delete’ not being available). The second time KVRT was able to disinfect and the machine rebooted smoothly. The third time, KVRT disinfected but I was left with a machine which cycled to shut off and BIOS, i.e. no version of Windows would launch.

I guess, in clearing out the malware, KVRT had made some sort of change to an essential windows file.

At that point (it was around 1 am) I reckoned I had nothing to lose by trying the Macrium Disk image backup. This took 40 hours to install (that can’t be right!) but, as it says on the tin, has taken my system back to the moment the image was made.

I have since updated Windows and my AV/protection tools and I appear to be back in business. The symptoms described at the beginning of this thread are no longer visible.

Thanks to one and all for your help and advice.

Moral of the story: make an image backup now!!

Marc

Previous Thread
Next Thread
Go To
Page 3 of 3 1 2 3

Link Copied to Clipboard
ChatPG

Ask sales and support questions about Band-in-a-Box using natural language.

ChatPG's knowledge base includes the full Band-in-a-Box User Manual and sales information from the website.

PG Music News
User Video: Next-Level AI Music Editing with ACE Studio and Band-in-a-Box®

The Bob Doyle Media YouTube channel is known for demonstrating how you can creatively incorporate AI into your projects - from your song projects to avatar building to face swapping, and more!

His latest video, Next-Level AI Music Editing with ACE Studio and Band-in-a-Box, he explains in detail how you can use the Melodist feature in Band-in-a-Box with ACE Studio. Follow along as he goes from "nothing" to "something" with his Band-in-a-Box MIDI Melodist track, using ACE Studio to turn it into a vocal track (or tracks, you'll see) by adding lyrics for those notes that will trigger some amazing AI vocals!

Watch: Next-Level AI Music Editing with ACE Studio and Band-in-a-Box


Band-in-a-Box® 2024 German for Windows is Here!

Band-in-a-Box® 2024 für Windows Deutsch ist verfügbar!

Wir waren fleißig und haben über 50 neue Funktionen und eine erstaunliche Sammlung neuer Inhalte hinzugefügt, darunter 222 RealTracks, neue RealStyles, MIDI SuperTracks, Instrumental Studies, "Songs with Vocals" Artist Performance Sets, abspielbare RealTracks Set 3, abspielbare RealDrums Set 2, zwei neue Sets von "RealDrums Stems", XPro Styles PAK 6, Xtra Styles PAK 17 und mehr!

Paket | Was ist Neu

Update Your PowerTracks Pro Audio 2024 Today!

Add updated printing options, enhanced tracks settings, smoother use of MGU and SGU (BB files) within PowerTracks, and more with the latest PowerTracks Pro Audio 2024 update!

Learn more about this free update for PowerTracks Pro Audio & download it at www.pgmusic.com/support_windows_pt.htm#2024_5

The Newest RealBand 2024 Update is Here!

The newest RealBand 2024 Build 5 update is now available!

Download and install this to your RealBand 2024 for updated print options, streamlined loading and saving of .SGU & MGU (BB) files, and to add a number of program adjustments that address user-reported bugs and concerns.

This free update is available to all RealBand 2024 users. To learn more about this update and download it, head to www.pgmusic.com/support.realband.htm#20245

The Band-in-a-Box® Flash Drive Backup Option

Today (April 5) is National Flash Drive Day!

Did you know... not only can you download your Band-in-a-Box® Pro, MegaPAK, or PlusPAK purchase - you can also choose to add a flash drive backup copy with the installation files for only $15? It even comes with a Band-in-a-Box® keychain!

For the larger Band-in-a-Box® packages (UltraPAK, UltraPAK+, Audiophile Edition), the hard drive backup copy is available for only $25. This will include a preinstalled and ready to use program, along with your installation files.

Backup copies are offered during the checkout process on our website.

Already purchased your e-delivery version, and now you wish you had a backup copy? It's not too late! If your purchase was for the current version of Band-in-a-Box®, you can still reach out to our team directly to place your backup copy order!

Note: the Band-in-a-Box® keychain is only included with flash drive backup copies, and cannot be purchased separately.

Handy flash drive tip: Always try plugging in a USB device the wrong way first? If your flash drive (or other USB plug) doesn't have a symbol to indicate which way is up, look for the side with a seam on the metal connector (it only has a line across one side) - that's the side that either faces down or to the left, depending on your port placement.

Update your Band-in-a-Box® 2024 for Windows® Today!

Update your Band-in-a-Box® 2024 for Windows for free with build 1111!

With this update, there's more control when saving images from the Print Preview window, we've added defaults to the MultiPicker for sorting and font size, updated printing options, updated RealTracks and other content, and addressed user-reported issues with the StylePicker, MIDI Soloists, key signature changes, and more!

Learn more about this free update for Band-in-a-Box® 2024 for Windows at www.pgmusic.com/support_windowsupdates.htm#1111

Band-in-a-Box® 2024 Review: 4.75 out of 5 Stars!

If you're looking for a in-depth review of the newest Band-in-a-Box® 2024 for Windows version, you'll definitely find it with Sound-Guy's latest review, Band-in-a-Box® 2024 for Windows Review: Incredible new capabilities to experiment, compose, arrange and mix songs.

A few excerpts:
"The Tracks view is possibly the single most powerful addition in 2024 and opens up a new way to edit and generate accompaniments. Combined with the new MultiPicker Library Window, it makes BIAB nearly perfect as an 'intelligent' composer/arranger program."

"MIDI SuperTracks partial generation showing six variations – each time the section is generated it can be instantly auditioned, re-generated or backed out to a previous generation – and you can do this with any track type. This is MAJOR! This takes musical experimentation and honing an arrangement to a new level, and faster than ever."

"Band in a Box continues to be an expansive musical tool-set for both novice and experienced musicians to experiment, compose, arrange and mix songs, as well as an extensive educational resource. It is huge, with hundreds of functions, more than any one person is likely to ever use. Yet, so is any DAW that I have used. BIAB can do some things that no DAW does, and this year BIAB has more DAW-like functions than ever."

Forum Statistics
Forums66
Topics81,635
Posts735,274
Members38,522
Most Online2,537
Jan 19th, 2020
Newest Members
Ely Bass, Barking, SYOTR, Bpnsrinu, DanyLevy
38,522 Registered Users
Top Posters(30 Days)
MarioD 181
DC Ron 98
dcuny 89
DrDan 72
Today's Birthdays
govinspector
Powered by UBB.threads™ PHP Forum Software 7.7.5