BleepingComputer.com: Can't get rid of Browser Hijacker

Jump to content

Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.


If you have not received help after three days, please post a link to your topic HERE.
Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Can't get rid of Browser Hijacker browser searches redirect to advert pages, can't fix it

#1 User is offline   Ithildyn 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 1
  • Joined: 24-January 11

Posted 25 January 2011 - 09:47 AM

Heyas!

Here's the little story: I got infected last week with a Browser Redirect Virus and System Tool (I believe the first one force downloaded the second one) at my school computer, most probably by loading an infected video file my teacher had asked me to find and watch as inspiration for the art direction of the project we were making.

We are a very small school and we do not have any tech support, thus while the personnel is quite tech-savvy, this nasty infection got us in quite a pickle. It ends up that I'm the one trying to clean up my school computer myself. I believe I have been able to get rid of System Tool itself on my computer, but I still got the browser infection.

I've ran scans with McAfee, MBAM, Spybot S&D, Spyware Doctor, Hitman Pro and some more I'm forgetting... I've been trying to replicate various solutions provided on the first pages of this thread: http://www.google.com/support/forum/p/Web%20Search/thread?tid=6df7e15519290612&hl=en&start=40 (removing unknown IPs form host folder, looking in my drivers folder for the rogue file, etc...)

So far, no avail, it's still there.
I believe it wiser to ask people here as I am clearly outclassed.
I am not fit to play in the registry without help if it's gonna be needed (suspect it'll get to Combofix...) and it's not even my own PC...

It might be of use to note that I installed Goggle Chrome as this browser is unaffected.
Both Firefox and Internet Explorer 7 are infected, and search engines such as Google, Yahoo or Bing redirect me to advertisement pages. But I also tried Altavista and this one is unaffected (which must mean the virus makers didn't bother).

My computer is using Windows XP Professional 2002 version service pack 2.

I can provide a HijackThis log or the such, just ask.

Thank you in advance!

This post has been edited by Ithildyn: 25 January 2011 - 09:49 AM


Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users