BleepingComputer.com: Infected with MAlware and Google and other search engines keep redirecting.

Jump to content

Forum Guidelines

Posted Image Read the following topic before creating a new topic in this forum. It contains instructions on the what we would like you to post, which will enable us to help you more quickly.

Preparation Guide For Use Before Using Malware Removal Tools and Requesting Help


Posted Image Unfortunately, with the amount of logs we receive per day, the average response time is 5 days. I want to assure you, though, that your topic will be looked at and responded to. So please be patient.


Posted Image DO NOT RUN ComboFix unless requested to.


Posted Image Only members of the Malware Response Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


Posted Image When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Posted Image Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.
  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • This topic is locked

Infected with MAlware and Google and other search engines keep redirecting. Do not know how to remove or where to locate.

#16 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 20 September 2011 - 10:54 PM

What could have damaged them, they were fine before the Malware.

#17 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 21 September 2011 - 07:54 AM

Do you now have difficulties on all your search?

I previously requested that your give me a URL so that I can check it.

If you Graphics card is going bad this should happen on all your pages.

#18 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 21 September 2011 - 02:42 PM

It just happens on random pages at random times. Usually pages with flash or Java like youtube and Fantasy football.

#19 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 21 September 2011 - 05:52 PM

Please run this security check for my review.

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

===

#20 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 21 September 2011 - 07:10 PM

So I ran it in safe mode with networking for a couple days and nothing happened, went on the same pages and multiple pages that have crashed me before at once and nothing. Heres my logs.

Attached File(s)



#21 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 22 September 2011 - 06:56 AM

Quote

So I ran it in safe mode with networking for a couple days and nothing happened, went on the same pages and multiple pages that have crashed me before at once and nothing.

Are you saying that all is well in Safe Mode but you get the problem when in Normal Mode?

Internet Explorer 6 is out of date. You may not use it but it's still vulnerable.
Please update to 7 and when all is well update to version 8 for your added security.

IE7
http://www.microsoft.com/download/en/details.aspx?id=11614

IE8
http://www.microsoft.com/download/en/details.aspx?id=43
===

Remove this old version of Java using the Add/Remove Programs list.
Java™ 6 Update 7

Keep the latest version Java™ 6 Update 27
===

Critical vulnerabilities have been identified in Adobe Flash Player 10.3.183.7 and earlier versions... being exploited in the wild in active targeted attacks... update to Adobe Flash Player 10.3.183.10 ... Flash Player for Android update to Adobe Flash Player for Android 10.3.186.7

Direct download current version - executable Flash Player installer... to your Desktop, then double-click to install.

Download for Internet Explorer

Download for Firefox and other browsers
<<<>>>

#22 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 22 September 2011 - 12:34 PM

Oh ok, I thought I had fixed those but I guess not, thanks. I disabled internet explorer by setting up a dummy proxy at 0.0.0.0, should I still update to IE 8?

Yes, all is well in safe mode but crashes in regular mode.

#23 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 22 September 2011 - 06:02 PM

Quote

Oh ok, I thought I had fixed those but I guess not, thanks. I disabled internet explorer by setting up a dummy proxy at 0.0.0.0, should I still update to IE 8?

No not yet.

Everything is fine in Save mode but problems occurs in Normal Mode.

A sign that you have HARDWARE or Driver problems.

When in safe mode only the Operating system drivers are used. Not so when in Normal Mode.

Try this fix.

From the Start menu, select Run.
In the Open field, type sfc /scannow (Note: There is a space between sfc and /scannow)
Select the OK button.
Follow the prompts throughout the System File Checker process.
Reboot the computer when System File Checker completes.
===
you may want to start a new topic in the Window XP forum. The expeerts there are more familiar with these problems.
http://www.bleepingcomputer.com/forums/forum56.html

#24 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 22 September 2011 - 09:00 PM

Ran the File Checker and it kept saying I need files copied to the DLL Cache from the Windows XP CD, which I no longer have, in order for windows to run properly So I guess I am missing some drivers or something. Is there anyway to get around the CD.

#25 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 23 September 2011 - 07:57 AM

Can you borrow a Windows XP Service Pack 3 disk from a friend?

Does sfc /scannow give you a file(s) that needs to be copied?

#26 User is offline   m0rdecai89 

  • New Member
  • Pip
  • Find Topics
  • Group: Members
  • Posts: 14
  • Joined: 09-September 11

Posted 23 September 2011 - 01:44 PM

It does not give me the name just says missing files, I will try to borrow it from a friend, I cant even start up in anything but safe mode anymore, it freezes up as sooon as everything loads.

#27 User is offline   nasdaq 

  • Forum Addict
  • PipPipPipPipPipPip
  • Find Topics
  • Group: Malware Response Team
  • Posts: 5,053
  • Joined: 16-June 06
  • Gender:Male
  • Location:Montreal, QC. Canada

Posted 29 September 2011 - 07:26 AM

Due to the lack of feedback, this topic is now closed.

In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.

Share this topic:


  • 2 Pages +
  • 1
  • 2
  • You cannot start a new topic
  • This topic is locked

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users