Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Can someone help me please? Istart123 virus


  • Please log in to reply
5 replies to this topic

#1 lolmac

lolmac

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:12:04 AM

Posted 29 July 2014 - 07:29 AM

Hi

 

This is my first post to this forum, thanks for reading.

 

I've spent many many hours attempting to get the Istart123 virus off my laptop.

I have tried the following:

 

Uninstall program - it's no longer on there, but still highjacking my web browsers

 

I have uninstalled all my web browsers and reinstalled.

 

I downloaded malabytes and scanned the computer

 

Looked at add ons in all browsers - its not showing there

 

With all this it is still on my computer - any suggestions please it's driving me insane

 

Thanks in advance


Edited by hamluis, 29 July 2014 - 10:04 AM.
Moved from Win 7 to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


m

#2 buddy215

buddy215

  • BC Advisor
  • 12,619 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:04 AM

Posted 29 July 2014 - 09:13 AM

Look for these programs and uninstall if present in the Add/ Remove list: Torch, iLivid, NewPlayer

Tell us which browsers you have installed.

  • download AdwCleaner by Xplode onto your desktop.
    Close all open programs and internet browsers.
    Double click on adwcleaner.exe to run the tool.
    Click on Delete.
    Confirm each time with Ok.
    You will be prompted to restart your computer. A text file will open after the restart.
    Please post the contents of that logfile with your next reply.
    You can find the logfile at C:\AdwCleaner[S1].txt as well.

 

Allow all the repairs listed below:

Windows Repair (All In One) Download

 

Windows Repair can perform the following tasks:

  • Reset Registry Permissions
  • Reset File Permissions
  • Register System Files
  • Repair WMI
  • Repair Windows Firewall
  • Repair Internet Explorer
  • Repair MDAC & MS Jet
  • Repair Hosts File
  • Remove Policies Set By Infections
  • Repair Icons
  • Repair Winsock & DNS Cache
  • Remove Temp Files
  • Repair Proxy Settings
  • Unhide Non System Files
  • Repair Windows Updates
  • Repair CD/DVD Missing/Not Working

 


  • download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Edited by buddy215, 29 July 2014 - 09:15 AM.

“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”


#3 dc3

dc3

    Bleeping Treehugger


  • Members
  • 30,040 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Sierra Foothills of Northern Ca.
  • Local time:06:04 AM

Posted 29 July 2014 - 11:08 AM

This virus is third party software which is bundled in downloads from popular free programs like  Foxit Reader, VLC, Java, Flash Player, etc.

 

When you go to install the program you downloaded the third party software will be installed automatically unless you use the Advanced option for the installation.  When you use the Advanced option you will have the opportunity to remove the check make for each third party software so that it is not loaded.

 

You posted that you have looked in all of your browsers for this redirect, but you didn't mention exactly how you did the search.  So that I'm sure that you know exactly where and what to look for I'm posting instructions for Internet Explorer, Google Chrome, and Firefox.

 

Remove from Internet Explorer
 
Press Alt+T and click Internet Options.
Open the General tab.
Change the home page and click OK.
Press Alt+T and click Manage Add-ons.
Click Toolbars and Extensions and remove unwanted extension.
Click Search Providers and set a new default search engine.
 
Remove from Google Chrome
 
Press Alt+F and point to Tools.
Click Extensions.
Remove unwanted extensions.
Click Settings.
Under On startup, select the last option and click Set pages.
Set a new startup page.
Under Search, click Manage search engines and click enter the URL of your new default search provider. Click Ok.
 
Remove from Mozilla Firefox
 
Press Alt+T and click Options.
Open the General tab and change the home page.
Click OK.
Press Ctrl+Shift+A and click Extensions.
Remove unwanted extensions.
Close the tab.
Click the search engine icon next to the search box and select a new search provider.

Family and loved ones will always be a priority in my daily life.  You never know when one will leave you.

 

 

 

 


#4 lolmac

lolmac
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:12:04 AM

Posted 29 July 2014 - 06:30 PM

Hi buddy 215 - you are a genius - I downloaded the adwcleaner as you recommended and it fixed the highjacker. I have attempted to copy and paste  the logifile that you asked me to reply with however it will not let me copy it? a big THANKS TO YOU!


Edited by lolmac, 29 July 2014 - 06:31 PM.


#5 lolmac

lolmac
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:12:04 AM

Posted 29 July 2014 - 06:32 PM

Hi Arachibutyrophobia

 

Thanks very much for your help. I had already tried those options you sent and they did not work.

I did download the adwcleaner and that has fixed the problem.

 

Cheers



#6 buddy215

buddy215

  • BC Advisor
  • 12,619 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:West Tennessee
  • Local time:08:04 AM

Posted 29 July 2014 - 07:46 PM

You should follow through with the other two programs as well. No one program ever finds all unwanted junk.

 

Cleanup the temporary files, logs, ad/ tracking cookies using CCleaner. Use the default settings. No need to run the

Registry Cleaning Tool as it may cause another problem. Pay close attention while installing and be sure to UNcheck offers of Toolbars, etc.

CCleaner - PC Optimization and Cleaning - Free Download


“Every atom in your body came from a star that exploded and the atoms in your left hand probably came from a different star than your right hand. It really is the most poetic thing I know about physics...you are all stardust.”Lawrence M. Krauss

A 1792 U.S. penny, designed in part by Thomas Jefferson and George Washington, reads “Liberty Parent of Science & Industry.”





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users