Solved Suspected virus shutting down audio

Tipiford

New member
Member
Local time
8:02 AM
Messages
57
I have several files named yk***.* which I believe to be virus related. If I get rid of the folder yklf my sound is back to normal, but the folder returns in a day or two. I also have two yk62x64.sys files (one in "Windows\System32\DriverStore\FileRepository\" and one in "Windows\winsxs\amd64***") which I can't delete, and which seem to point to a Yukon program which I don't have. These two files cannot be deleted in safe mode. Is there a fix for this persistent problem?
 

My Computer My Computer

OS
Windows 7 pro 64 bit with XP Mode
I have several files named yk***.* which I believe to be virus related. If I get rid of the folder yklf my sound is back to normal, but the folder returns in a day or two. I also have two yk62x64.sys files (one in "Windows\System32\DriverStore\FileRepository\" and one in "Windows\winsxs\amd64***") which I can't delete, and which seem to point to a Yukon program which I don't have. These two files cannot be deleted in safe mode. Is there a fix for this persistent problem?

Have you run any scans to determine if they are Malware related? Malwarebytes and AdwCleaner are a couple of great programs to run on demand scans.

If it is a bug, more steps may be needed (there was a recent thread with similar suspected malware, which will require a few more stpes for potential removal. I'll take a alook a link if I find it) But malware can replicate itself much like other malware, so deletion of a file may not take care of the problem. First step would be to identify the issue. Do a scan with either the suggested above or your choice and post back please
 

My Computer My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Professional 64-bit SP1
CPU
Intel(R) Core(TM) i5 CPU M 520 @ 2.40GHz
Motherboard
Dell Inc. 0K42JR
Memory
8.00 GB
Graphics Card(s)
NVIDIA NVS 3100M
Sound Card
(1) NVIDIA High Definition Audio (2) IDT High Definition A
Monitor(s) Displays
1
Screen Resolution
1440 x 900 x 32 bits (4294967296 colors) @ 59 Hz
Hard Drives
Samsung SSD 840 PRO Series ATA Device
Thanx, So far I have run McAfee and Security Essentials, both of which clean several trojans, but not the yk***.* files or folder (which I have removed manually), but which they all reappear on the next restart. I will run the two programs you mention to see what they discover and will reply with the results.
 

My Computer My Computer

OS
Windows 7 pro 64 bit with XP Mode
Sometimes, the best method is reinstall Windows 7 all over again.
It's solved by reinstalling Windows as there is no other way round it.
Backup all data then reinstall.
I did the stupid thing by system restore to factory defaults which were useless.

The system restore will not wipe clean any infection as the malware is already residing in the system and changed your sysconfig and MBR.
The malware will download a lots packed stuffs.
Read this virustotal.com report https://www.virustotal.com/en/file/...040800eaf01ef53214ef9dab53aeff1cff0/analysis/

How to do it? Download MS SysInternal Process Explorer to see what is going on.

It's useless to do any salvaging when the malware is already residing in your system and changed your sysconfig and MBR like using some software that scan your system while adding more trojans,viruses,etc to it especially BackDoors virus.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium 64bit
CPU
Intel Core 2 Duo T6600 2.2 GHz 800MHz
Motherboard
Intel PM65
Memory
4GB
Graphics Card(s)
Nvidia Geforce G105M
Hard Drives
Toshiba MK5055GSX 99FKS993S LBAS 976773167
Antivirus
AVG Free AV 2015
Browser
IE & Chrome
Sometimes, the best method is reinstall Windows 7 all over again.
Re-installation is last resort stuff to me, like invasive surgery. If absolutely necessary, I'll do it as I have had to do it a time or two in the past, but with trepidation.
But as of now, I've deleted all yk*.* files and searched the registry for anything "Yukon*.*" (files of a system I don't have and which resided in winsxs and DriverStore which I'm supposing were adding the malware back to the Prefetch folder after each restart), and so far everything is looking good, the volume level is holding steady, so my fingers will stay crossed a for day or three.
 

My Computer My Computer

OS
Windows 7 pro 64 bit with XP Mode

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium 64bit
CPU
Intel Core 2 Duo T6600 2.2 GHz 800MHz
Motherboard
Intel PM65
Memory
4GB
Graphics Card(s)
Nvidia Geforce G105M
Hard Drives
Toshiba MK5055GSX 99FKS993S LBAS 976773167
Antivirus
AVG Free AV 2015
Browser
IE & Chrome
Back
Top