browser redirect virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by bird007, Jan 26, 2010.

  1. bird007

    bird007 Private E-2

    Hi. Thank you so much for your help and services! This morning Microsoft Security Essentials detected a "Exploit.pdf" virus and supposedly deleted it, but then I noticed Google searches being redirected within Google Chrome. I deleted Chrome and Installed Firefox, but the same problem was occurring. I found your site and followed the "Read & Run Me First" steps. It appears to have solved the problem. Thank you again! I now have a file on the desktop called "settings.dat". What do I do with this file?

    Attached are the logs as directed in the Cleaning Procedure Section:
     

    Attached Files:

  2. bird007

    bird007 Private E-2

    Here is the last file:
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi there and welcome. I am currently reviewing your logs and will get back to you with a set of instructions in the next post I make.
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    When you follow final instructions your hidden files and folders which are now visible will once again be set to hidden status and therefore you will no longer see that file or the thumbs.db file you may see.

    Use Windows Explorer to locate and delete the following bold directories from Avast which you no longer have installed.

    Also delete all files in the below folder except ones from the current date (Windows will not let you delete the files from the current day).

    Your logs are clean. If Microsoft Security Essentials detects anything else, then I will need the full file path of the threat. But I believe the scans took care of anything that was lingering and that you are good to go :)

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we used Pocket Killbox during your cleanup, do the below
      • Run Pocket Killbox and select File, Cleanup, Delete All Backups
    3. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures in step 3 the READ ME for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     
  5. bird007

    bird007 Private E-2

    Thank you!!!
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You're welcome. Safe surfing :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds