Buy Malwarebytes antimalware











This site is hosted at Hostgator.com




Sponsored Adverts

Sponsored Ads

These adverts come direct from Google adsense



Welcome to The Spykiller

You need to register to  get help with malware cleaning on your computer or take part in the general discussion forums and to upload files that have been requested from other forums. Unfortunately we are getting massive spam attacks from allowing guest postings to uploads
It takes a very long time and a lot of hard work on our part to read all the logs posted here and research and prepare the fixes for you. In many cases each part of the fix takes about 30 minutes to prepare so a large part of our time is spent helping you

 INSTRUCTIONS - Read This Before Posting For Malware Removal Help

Author Topic: BOO/mebrot.a - SOLVED  (Read 1053 times)

Offline mewnlite

  • *
  • Posts: 1
BOO/mebrot.a - SOLVED
« on: March 29, 2012, 01:47:49 »
This is a copy of a post I made in alt.comp.anti-virus. David Lipman (everybody knows Dave) recommended that I come here for help. I am not including any logs at this point since the MBR rootkit is not on the system drive and your instructions state specifically to uncheck "other drives" when preparing a log. Here's what I posted....

Dell XP Pro, SP3
2 hard drives, 750Gb and 160Gb.
Avira flagged both MBRs with BOO/Mebrot.A
So I Googled around and someone suggested using a restore CD, going into
system recovery console, and running FIXMBR. The second drive had an old
Windows installation on it so the recovery console had given me the option
of 1: C\WINDOWS or 2: D\WINDOWS. I picked 1.
When I rebooted, Avira no longer flagged the first drive, but still did the
2nd one. So I did the recovery console again and picked 2: D\WINDOWS.
However Avira continues to flag the second drive. There was nothing
important on that drive anyway, so I used an old 98 boot disk, and FDISK to
totally remove the single 160Gb partition. And then reformatted it in NTFS.
BOO/Mebrot.A is still there, or at least Avira says it is.
I downloaded a Symantec tool that was supposed to get rid of it but it
claimed it didn't find it.
So how do I clean up that MBR?

Since I see I have a chance to "modify" this message, I have now marked it as solved.
My Win98 boot disk saved me again. I had forgotten about "FDISK/MBR". I ran that and it fixed it!
Thanks for listening... :-)

« Last Edit: March 29, 2012, 02:47:28 by mewnlite »


 

Donations

You have come to The Spykiller for help because your Antivirus or Antispyware hasn't been able to fix your problem.

Modern Malware has become so involved and difficult to fix that it takes a very long time and a lot of hard work to read all the logs posted here and research and prepare the fixes for you. In many cases each part of the fix takes about 30 minutes to prepare, so a large part of my time is spent helping you

Would you do all this for nothing?

The reason I run this site is to raise funds for Hedgehog Rescue

Please donate if I have helped you or you have found this site useful.

You can donate safely and securely by using the paypal service, just click on one of the buttons below.

To donate in UK £

To donate in US$

To donate in Euro €

Any amount no matter how small is gratefully accepted and needed to ensure we keep the Rescue Centre running

To donate via paypal when the button doesn't appear or the link doesn't work: just go to www.paypal.com or your country's paypal log in page and chose send money and use help@thehedgehog.co.uk as recipient email address and select other service as the option. then follow prompts


Useful Advice and Programs

Stop killing hedgehogs with strimmers
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 22, 2013, 05:20:58

Login with username, password and session length

secunia Software inspector


RoboForm: Learn more...

You have come to The Spykiller for help because your Antivirus or Antispyware hasn't been able to fix your problem.

Modern Malware is so involved and difficult to fix that it takes a very long time and a lot of hard work to read all the logs posted here and research and prepare the fixes for you.
In many cases each part of the fix takes about 30 minutes to prepare, so a large part of my time is spent helping you

Would you do all this for nothing?

I run this site to help raise funds for Hedgehog Rescue

Please donate if I have helped you or you have found this site useful.

You can donate safely and securely by using the PayPal service, just click on one of the buttons below.

To donate in UK £

To donate in US$

To donate in Euro €

Any amount no matter how small is gratefully accepted and needed to ensure we keep the Rescue Centre running