Ebay Redirect probablem

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Rippin, Jul 30, 2015.

  1. Rippin

    Rippin Private E-2

    I had some issues with my pc having some sort of virus. I was already thinking of getting a bigger ssd so I just formatted my hdd and did a clean install windows 7 on new ssd. I then disconnected my new ssd and hdd and connected my old Samsung 64gb so that I could do a Samsung secure erase. Well I made a boot CD from samsungs Magician, followed the directions to clear my ssd. Everything ran fine so I figured it was cleared. I then removed Samsung ssd reconnected new ssd and hdd. Than I connected the old ssd so that I could run some tests with Magician to make sure everything was still good. Turns out that the drive didn't get cleaned and everything was still on it. Did a quick format and unplugged it old ssd.

    I figured crap was gonna get transferred to my new setup so I ran Avast boot-time scan and malwarebytes. Didn't find anything. Now the reason I'm asking for help is because I got redirected to a virus/trojan warning page when I was trying to list an item for sale on eBay. This also came with a popup which when I hit the "X" to close it out, it kept coming back after a couple seconds. It would not let me close the browser either. So instead of hitting the ok on the popup I opened task manager and closed the browser that way (screenshot included I censored some stuff but I have a copy of it uncensored if needed). On my previous setup I would once in a while get redirected from ebay to a page that said something about oprah winfrey revealing some secrets, but when this came up it would let me just hit the back button and it would be back to normal. I did run multiple scans and nothing was found at that time.

    Yesterday I went through all the malware scans from MGeeks read me. Everything seemed to run fine except for Tdsskiller. When I first opened it up it started loading, then it stopped and a popup showed up that read "Can't initiate Log", I clicked ok its starts doing its thing again and it stops again, I get another popup, can't remember exactly but something like "Reboot, Need to download monitoring driver for better performance" I hit the X and didn't do download, after it was done with everything I got another popup that said "can't load driver". So no log was made that I can see, or I just couldn't find it. I might have ran the program wrong and maybe I should have downloaded whatever it wanted but the reason I didn't was because I've ran TDSS in the past and it never did this as far as I can recall. Let me know if I should run the scan again. Here are the scan logs requested. Thanks

    [​IMG]
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your logs aren't really showing any real problems.

    I suggest that you just run the below and then see if you continue to have anymore problems.

    Now please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Note: That JRT may reset your home page to a google default so you will need to restore your home page setting if this happens.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.
     
  3. Rippin

    Rippin Private E-2

    Thanks for the super fast response. I attached the log for JRT. Is jrt scan something I can run once a month to clean stuff up or this is good enough? Also is there a need to run tdsskiller or im good to go?
     

    Attached Files:

    Last edited: Jul 30, 2015
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome.
    You can run it periodically but you always need to get the current version before running. In reality, it is more worthwhile to run Malwarebytes monthly or bi-monthly.

    Your fine.


    Your logs are clean. Please complete all of the below final instructions before running any other scans to avoid false detections of things we have already quarantine or left overs from system restore.



    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    7. After doing the above, you should work thru the below link:
     
  5. Rippin

    Rippin Private E-2

    Thanks for your time and your prompt help!
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Surf safely!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds