bnmq?

Discussion in 'Malware Help (A Specialist Will Reply)' started by imsad, Jun 17, 2005.

  1. imsad

    imsad Private E-2

    ok i followed the sticky and all the spyware removals and virus's showed nothing infected.

    then i looked at the hijack this tutorial and i dont think i found anything but i might have missed something.

    when i go to certain sites it redirects me to some search page with a droplet on the side, and sometimes it shows up with a page that has a pair of binoculars and a search field. its really anoyying and with all the removal stuff i did in the sticky im really dissapointed it didnt work ahaha.

    this would help alot if you have any ideas as another coworker has the same issue. thanks

    any ideas? heres my log

    Edit by bjgarrick: Unrequested, Inline, Out dated HJT log removed!
     
    Last edited by a moderator: Jun 18, 2005
  2. imsad

    imsad Private E-2

    oh yea on the bho stuff i used that csid list and all were L's
     
  3. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Your HJT version is way out dated so please update!

    First:
    Please update your version of Hijack This.
    Second:
    Run the following online scans:

    Bitdefender online scan
    RavAntivirus online scan <-- select Auto Clean then click Scan My PC
    TrojanScan online scan
    Panda Online Scan

    After you complete the above steps reboot and post a fresh HJT log as an attachment to your post. Be sure you use the new version!
     
  4. imsad

    imsad Private E-2

    ok will do, thanks!
     
  5. imsad

    imsad Private E-2

    ok i did everything except the panda scan because whatever i have wont let me go to that site.

    the only thing a2 found was a popcap.w32.downloader and some trace cookies.

    heres the log.
     

    Attached Files:

  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    The first thing I notice is that your Operating System is out of date. After we fix your current problems you must update to Service Pack 4.

    Now scan with HijackThis and Check the Boxes for the following:

    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)


    Make sure All Browser Windows are Closed when you Click FIX.


    Your log is clean other than these few entries, what problems are you currently having?
     
  7. imsad

    imsad Private E-2

    Well its my work pc so unfortuneatly sp4 wont be added. we had it on the pc's before and it cause a horrible network lag (im sure it could be fixed with proper admins haha but good luck on that). basically when i go to certain sites, like mapquest, or pandasoftware it redirects to a search page with some binoculars. on one site i usually visit it goes to one those all in one link pages and i cant view my site. i got the bnmq.com from the source code (thats where the images are stored).

    Could it be on the dns machine and theres nothing i can do locally? I dont know if others are having the issues or not. I didnt see to much either in hjt so thats y i asked for help, perhaps its on the dns pc and theres nothing i can do.

    either way i appreciate the help greatly.
     
  8. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I would post this problem in the Networking and/or Software Forum. Those guys may have something you can try.

    Let me know!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds