Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Trying to delete Safesearch hijack in my browser but "fixes" do not work!


  • Please log in to reply
1 reply to this topic

#1 xtranaut

xtranaut

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:10:57 AM

Posted 05 July 2015 - 07:25 PM

Firefox and IE Browsers.

The various methods of deleting SAFESEARCH on the boards dealing with

adware and malware did not work. Malwarebytes doesn't even detect SAFESEARCH as a threat!

Some diagnostics didn't function at all, others stopped mid stream during scans and just hung. A few had errors at start up.  I took screenshots of the various error messages and hangups but can not upload them from my computer as images require a URL on this site. Have no idea what to do next to send safesearch TO THE GARBAGE.

 

 

SECURITY CHECK LOG 7-5-15

 

 

no HKLMRUN.TXT

 

Results of screen317's Security Check version 1.004

Windows 7 Service Pack 1 x64 (UAC is enabled)

Internet Explorer 11

``````````````Antivirus/Firewall Check:``````````````

Windows Security Center service is not running! This report may not be accurate!

WMI entry may not exist for antivirus; attempting automatic update.

`````````Anti-malware/Other Utilities Check:`````````

MVPS Hosts File

SpyHunter 4

Java 8 Update 45

Adobe Flash Player 17.0.0.190 Flash Player out of Date!

Mozilla Firefox (39.0)

````````Process Check: objlist.exe by Laurent````````

`````````````````System Health check`````````````````

Total Fragmentation on Drive C:

````````````````````End of Log``````````````````````

 

CHECKING.TXT DOES NOT OPEN. This file was copied and pasted to Notepad.

 

 

ADW CLEANER SYSTEM CHECK LOG

 

# AdwCleaner v4.207 - Logfile created 05/07/2015 at 13:10:51

# Updated 21/06/2015 by Xplode

# Database : 2015-07-05.2 [Server]

# Operating system : Windows 7 Home Premium Service Pack 1 (x64)

# Username : Owner - OWNER-PC

# Running from : C:\Users\ALW007\Desktop\adwcleaner_4.207.exe

# Option : Scan

 

***** [ Services ] *****

 

 

***** [ Files / Folders ] *****

 

 

***** [ Scheduled tasks ] *****

 

 

***** [ Shortcuts ] *****

 

 

***** [ Registry ] *****

 

 

***** [ Web browsers ] *****

 

-\\ Internet Explorer v11.0.9600.17840

 

 

-\\ Mozilla Firefox v39.0 (x86 en-US)

 

 

-\\ Comodo Dragon v

 

 

*************************

 

AdwCleaner[R0].txt - [9007 bytes] - [02/07/2015 10:38:43]

AdwCleaner[R1].txt - [896 bytes] - [02/07/2015 11:34:44]

AdwCleaner[R2].txt - [1327 bytes] - [05/07/2015 10:11:47]

AdwCleaner[R3].txt - [823 bytes] - [05/07/2015 13:10:51]

AdwCleaner[S0].txt - [5081 bytes] - [02/07/2015 11:17:19]

AdwCleaner[S1].txt - [959 bytes] - [02/07/2015 12:38:54]

AdwCleaner[S2].txt - [1397 bytes] - [05/07/2015 10:23:11]

 

 

ROGUE KILLER SCAN

 

This scan stops

########## EOF - \AdwCleaner\AdwCleaner[R3].txt - [1057 bytes] ##########

 

RKILL

 

attempt to scan with this program produced only a black screen with a white blinking cursor.

 

TSSKiller

 

Can detected nothing.

 

JRT

 

attempt to scan with this program produced only a black screen with a white blinking cursor.

 

 

RKILL

 

attempt to scan with this program produced only a black screen with a white blinking cursor.

 

 

COMBO FIX

 

Scan bar stopped and held green halfway through a scan and was unable to close using button.


Edited by Chris Cosgrove, 05 July 2015 - 07:35 PM.
Moved from 'Announcements' to 'Am i infected?'


BC AdBot (Login to Remove)

 


#2 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:10:57 AM

Posted 05 July 2015 - 09:59 PM

Download and run wipe.

 

https://privacyroot.com/software/www/en/wipe.php

 

Under details make sure the highlighted button is ticked prior to cleaning.

v9cPNDN.jpg?1

 

Then System ninja

https://singularlabs.com/software/system-ninja/

 

Scan for junk then delete.

 

r5APpdC.jpg

 

Then.....

 

Go ahead and install ccleaner Now that you have the program installed go ahead and run the cleaner function.

https://www.piriform.com/ccleaner/download
kwLN4uv.png


Now that you have cleaned out some temp files, lets go ahead and disable all of the items starting up with your machine except your antivirus. To do this you will need to click on tools then start up select each item then disable.

GjWwvEu.png

Now that you have disabled those un-needed start ups lets go into the settings, we will have Ccleaner run when your machine boots, so that you will never have to worry about cleaning temp files again.

To do this:

  • Hit options.
  • Settings.
  • Place a tick to run Ccleaner when the computer starts.


Lxioao1.png

Now go to the advanced tab, and select close program after cleaning, now run the cleaner again this will close Ccleaner.

SnqZ2JW.png

 

Reboot your machine and then follow the  instructions below.

 

Step 1: eScanAV.

 

Disable your antivirus prior to this scan.

http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

Download the eScanAV Anti-Virus Toolkit (MWAV)
http://www.escanav.com/english/content/products/downloadlink/downloadcounter.asp?pcode=MWAV&src=english_dwn&type=alter

 

Source

http://www.escanav.com/english/content/products/downloadlink/downloadproduct.asp?pcode=MWAV
Save the file to your desktop.
Right click run as administrator.
A new icon will appear on your desktop.
Right click run as administrator on new icon.
Click on the update tab.
ZCDJtZN.png
Once you have updated the program, make sure the settings are the same as the picture below.
7DUFn5c.png
Once you have made sure the settings match the picture, hit the Scan & Clean button.
Upon scan completion, click View Log.
ApSVXsQ.png
Copy and paste entire log into your next reply.

Note: Reboot after you remove infections.

 

Step 2: Zemana

 

Run a full scan with Zemana antimalware.

 

http://www.bleepingcomputer.com/download/zemana-anti-malware/dl/294/

 

Install and select deep scan.

jdmyscF.jpg

Remove any infections found.

Then click on the icon in the pic below.

DOLGyto.jpg

Double click on the scan log, copy and paste here in your reply.

Note: Reboot after you remove infections.

 

 

Step 3: Junkware Removal Tool.
 
Please download Junkware Removal Tool and save it on your desktop.

Source

http://thisisudax.org/

  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.

Step 4: Adware Cleaner.
 
Please download AdwCleaner by Xplode onto your desktop.


  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

Edited by InadequateInfirmity, 05 July 2015 - 10:07 PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users