google chrome download / redirect

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by aa shade, May 25, 2012.

  1. aa shade

    aa shade Private E-2

    using ie i cant download chrome. i recently deleted and tried to reinstall but its not happening. i also get redirected from google search. i've ran the tdsskiller and found Backdoor.Multi.ZAccess.gen. from sticky page i cant load the fixer. please help
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please attach the log from running TDSSKiller.
     
  3. aa shade

    aa shade Private E-2

    the earlier log i got a couple hits but this latest one came up empty
     

    Attached Files:

  4. aa shade

    aa shade Private E-2

    fixtdss said no infections were found
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  6. aa shade

    aa shade Private E-2

    it seems the combofix made it start working and corrected the errors. is that what the logs tell you? thanks for your help.
     

    Attached Files:

  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I need the log from running MGTools --C:\MGLogs.zip.

    In the meantime, use windows explorer to find and delete:
    c:\users\Aaron Shade\AppData\Roaming\Ewasxo
    c:\users\Aaron Shade\AppData\Roaming\Cywai
    c:\users\Aaron Shade\AppData\Roaming\Xoiri
    c:\users\Aaron Shade\AppData\Local\OWCATP
    c:\users\Aaron Shade\AppData\Roaming\Leetq
     
  8. aa shade

    aa shade Private E-2

    i cannot find the requested mglogs.zip it does not come up in we search either. i deleted other files as requested
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Download MGtools to your C: drive and run it. It will produce a log at C:\MGLogs.zip. Attach the log.
     
  10. aa shade

    aa shade Private E-2

    i ran mgtools again and throughout it was saying ziperror could not create output file (C:/MGlogs.zip)
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Download OTL to your desktop.


    • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
    • Vista and Windows 7 users Right-click OTL and choose Run as Administrator)
    • When the window appears, underneath Output at the top change it to Minimal Output.
    • Check the boxes beside LOP Check and Purity Check.
    • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.


    When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.

    Attach both of these logs into your next reply.
     
  12. aa shade

    aa shade Private E-2

    here you go
     

    Attached Files:

  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Those logs are clean. Tell me what issues remain, if any.
     
  14. aa shade

    aa shade Private E-2

    i dont have any of the issues remaining that led me here. if you dont see anything else in the logs i would say i am good to go. is there a sticky post i can follow to return my settings back to the way i had them?
    i also want to thank you so much for your help.your work is gretly appreciated and will be highly recommended.
     
  15. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds