BleepingComputer.com: Google Search Hijacked

Jump to content

Forum Guidelines

Posted Image Read the following topic before creating a new topic in this forum. It contains instructions on the what we would like you to post, which will enable us to help you more quickly.

Preparation Guide For Use Before Using Malware Removal Tools and Requesting Help


Posted Image Unfortunately, with the amount of logs we receive per day, the average response time is 5 days. I want to assure you, though, that your topic will be looked at and responded to. So please be patient.


Posted Image DO NOT RUN ComboFix unless requested to.


Posted Image Only members of the Malware Response Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


Posted Image When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Posted Image Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
  • 4 Pages +
  • « First
  • 2
  • 3
  • 4
  • You cannot start a new topic
  • This topic is locked

Google Search Hijacked

#46 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 29 July 2011 - 02:20 PM

Its a 0x0000000007b error

#47 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 30 July 2011 - 09:54 AM

Have tried fixmbr, fixboot, chkdsk c: /r and /f. There are no errors on my harddrive (I can even access the entire harddrive by opening the help document in system recovery mode so my harddrive isn't the faulty thing. I am posting on a seperate computer atm. If we can't figure this out in a few days I might just copy some of the files to an external and wiping it.

#48 User is online   gringo_pr 

  • Bleepin Gringo
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 85,501
  • Joined: 03-July 08
  • Gender:Male
  • Location:Puerto rico

Posted 30 July 2011 - 12:53 PM

hello

I want you to press F10 while booting the computer

this will take you into the Edit boot options

I would like you to tell me what it says after /noexecute =



gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic


Please Only Copy And Paste Reports Into Topic - Do Not Attach

My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->Posted Image<-- Don't worry every little bit helps.

#49 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 30 July 2011 - 03:01 PM

Edit Windows boot options for Windows 7

Path: \Windows\Syste,32\winload.exe

Partition: 2

Hard Disk: d1b42421

[ /NOEXECUTE=OPTIN /MININT }

#50 User is online   gringo_pr 

  • Bleepin Gringo
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 85,501
  • Joined: 03-July 08
  • Gender:Male
  • Location:Puerto rico

Posted 30 July 2011 - 04:38 PM

Hello

that is good news

I want you to go back into the F10 edit options and remove /MININT and restart the computer and le me know if it start OK

Don't reboot after that yet


Gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic


Please Only Copy And Paste Reports Into Topic - Do Not Attach

My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->Posted Image<-- Don't worry every little bit helps.

#51 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 30 July 2011 - 05:02 PM

It booted up just fine after removing /minint. Have not rebooted yet.

#52 User is online   gringo_pr 

  • Bleepin Gringo
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 85,501
  • Joined: 03-July 08
  • Gender:Male
  • Location:Puerto rico

Posted 30 July 2011 - 05:15 PM

System Recovery Environment

To access the System Recovery Environment in Windows 7, simply boot your PC,

  • just before the system loads the Windows operating system, hit the [F8] Function 8 key on your keyboard which will launch the Advanced Boot Options menu.

  • There you will see a new option 'Repair Your Computer', select this option and hit 'Enter' on your keyboard.

  • Now, from the System Recovery Options dialog, select the "Operating System" you want to repair, then click Next:

  • From the "Choose a Recovery Tool" dialog menu, select "Command Prompt":

  • Type the following into the "Command Prompt Window": and press enter

      Bcdedit /export C:\BCD_Backup

      ren c:\boot\bcd bcd.old

      Bootrec /rebuildbcd


I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic


Please Only Copy And Paste Reports Into Topic - Do Not Attach

My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->Posted Image<-- Don't worry every little bit helps.

#53 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 30 July 2011 - 05:22 PM

bcd.old doesnt exist

#54 User is online   gringo_pr 

  • Bleepin Gringo
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 85,501
  • Joined: 03-July 08
  • Gender:Male
  • Location:Puerto rico

Posted 30 July 2011 - 05:33 PM

check the spaces in the line


you are makeing BCD.old


gringo
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic


Please Only Copy And Paste Reports Into Topic - Do Not Attach

My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->Posted Image<-- Don't worry every little bit helps.

#55 User is offline   Sinistralis 

  • Member
  • PipPip
  • Find Topics
  • Group: Members
  • Posts: 33
  • Joined: 03-July 11

Posted 30 July 2011 - 05:36 PM

ren c:\boot\bcd BCD.old

cannot find it

#56 User is online   gringo_pr 

  • Bleepin Gringo
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 85,501
  • Joined: 03-July 08
  • Gender:Male
  • Location:Puerto rico

Posted 30 July 2011 - 08:17 PM

move to the next line
I Close My Topics If You Have Not Replied In 5 Days If You Will Be Longer Please Let Me Know

If I Have Not Replied To One Of My Topics In 48 Hrs Please Bump The Topic


Please Only Copy And Paste Reports Into Topic - Do Not Attach

My help is free, however, if you wish to make a small donation to show your appreciation or to help me continue the fight against Malware, then click here -->Posted Image<-- Don't worry every little bit helps.

Share this topic:


  • 4 Pages +
  • « First
  • 2
  • 3
  • 4
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users