Browser Hijacked- Ran Analyze

Discussion in 'Malware Help (A Specialist Will Reply)' started by Stan123, Feb 21, 2010.

  1. Stan123

    Stan123 Private E-2

    My firefox browser is redirected to various sites when I do a google search. I have been to yellow pages or other search sites. I removed Java and ran your analyze program. The log is attached below. Thank you for your help!
    Win xp
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Please see rule # 1 in the below sticky:

    Forum Rules and Guidelines

    You need to run our cleaning procedure. Also uninstall all but one antivirus program.
     
  3. Stan123

    Stan123 Private E-2

    Sorry! I ran the cleaning programs and will attach the logs to this and the next msg.
     

    Attached Files:

  4. Stan123

    Stan123 Private E-2

    Here are the next 2 logs. Thanks again!
     

    Attached Files:

  5. Stan123

    Stan123 Private E-2

    And the RRLog...
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You ignored one of the first instructions in the READ & RUN ME. You have multiple antivirus programs installed. Before doing anything else, you must uninstall either Symantec or VIPRE Antivirus + Antispyware and then reboot.


    Go to TDSSKiller and Download TDSSKiller.zip to your Desktop
    • Extract its contents to your Desktop so that you have TDSSKiller.exe directly on your Desktop and not in any subfolder of the Desktop.
    • Click Start > Run and copy/paste the following bold command into Run box and hit Enter.
    "%userprofile%\Desktop\TDSSKiller.exe" -v
    • Follow the instructions to type in "delete" when it asks you what to do when if finds something.
    • When done, a log file should be created on your C: drive named something like TDSSKiller.2.1.1_27.12.2009_14.17.04_log.txt which is based on the program version # and date and time run. Please attach this log to your next reply. (See: HOW TO: Attach Items To Your Post )

    Did you have a problem running ComboFix? You log was extremely incomplete.
     
  7. Stan123

    Stan123 Private E-2

    TDSS log below. Deleted VIPRE and kept Symantec.
     

    Attached Files:

  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please answer my question about ComboFix?


    Also you say the problem occurs with FireFox.
    • Doss it also occur with FireFox in safe boot mode?
    • Does it also occur with IE? In normal & safe boot modes?
    Your logs are not showing any obvious malware yet, other than what was removed and even though ComboFix did not run completely, it looks to have removed your problem.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds