google redirect - ran pre-screening to no avail

Discussion in 'Malware Help (A Specialist Will Reply)' started by karlkarlson, Oct 23, 2010.

  1. karlkarlson

    karlkarlson Private E-2

    hello all,

    i am holding onto a particularly brutal google redirect virus.

    it appears to happen in both firefox and chrome. i have run everything in the "read & run me first" thread. it's still happening:(.

    it IS happening even in safe mode.

    here are the first four logs

    thanks for any help!

    karlk
     

    Attached Files:

  2. karlkarlson

    karlkarlson Private E-2

    here's the second message. with the final log file. what do you guys, think?

    thanks,
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Why am I not seeing any Anti-virus software on this machine?

    Did you create this --> C:\Antimal

    Do you have your OS CD? We will need to replace your winlogon.exe.

    In the meantime, use windows explorer to find and delete:
    c:\documents and settings\Owner\Application Data\36041.bat
    c:\documents and settings\Owner\Application Data\16745.bat
    c:\documents and settings\Owner\Application Data\44225.bat


    If you have your cd, get into your bios and change the boot order to cd-rom as first boot device. Put your cd in the drive and reboot. After you boot to the Recovery Console, do this:

    Once you are back to the C:\Windows> prompt of the Recovery Console, input the below commands one at a time each followed by the enter key.

    cd system32
    copy D:\i386\winlogon.ex_ winlogon.exe
    exit

    Where D is the drive letter of your cd-rom. Change it if it isn't.

    After a reboot into normal mode, re-run Combofix and attach that log.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds