google redirect virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by g8rvet, Sep 29, 2009.

  1. g8rvet

    g8rvet Private E-2

    I have read the available threads, here and elsewhere and followed them to the best of my ability. I have also done the steps in Read Me first. Still getting the redirect. I am attaching the logs requested I believe. Thanks for any help you may offer.
     

    Attached Files:

  2. g8rvet

    g8rvet Private E-2

    Here is the last log
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Why are you running this PC with no protection software installed?

    You did not attach the log from RootRepeal. You attached the RootRepeal program that we asked you to download.

    You need to delete the below copy of ComboFix and download and save the current version using the correct name to your Desktop not a folder on your Desktop or our later instructions will not work.
    c:\documents and settings\Lab\Desktop\Spyware programs\Combo-Fix.exe

    Also delete the below which is not where we specified that MGtools needed to be downloaded to:
    C:\Documents and Settings\Lab\Desktop\Spyware programs\MGtools.exe

    Now you must disable Spybot's Teatimer as requested in the READ & RUN ME. See this: How to disable Spybot's TeaTimer

    Now download HostsXpert and then follow the below steps.
    • Unzip HostsXpert.zip
    • It will create a folder named HostsXpert in whatever folder you extract it to.
    • Run HostsXpert.exe by double clicking on it.
    • Click the Make Writeable? button. (if you only see a Make Read-Only selection, it is already writeable so skip this button).
    • Click Restore Microsoft's Hosts File and then click OK.
    • Click the X to exit the program
    Now run this Disable/Remove Windows Messenger to remove Windows Messenger. Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.

    Now run Ccleaner. Only use the Run Cleaner button. Do not run anything else on any other forms.

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).

    Then attach the below log:
    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     
  4. g8rvet

    g8rvet Private E-2

    The problem is sporadic, but I will check and repost if it stays gone. Thanks for the effort.
     

    Attached Files:

  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You did not answer my question. Also you did not run HostXpert and you did not put the current version of ComboFix.exe on your Desktop.

    If you still have a problem download the current version of ComboFix.exe to your Desktop and run it. Attach the new log.
     
  6. g8rvet

    g8rvet Private E-2

    This computer is a workstation that only has allowed access to a couple of websites. I had not run a protection software as i thought only those sites could be accessed. I was wrong. What software would you reccomend I install?

    I ran Hosts Expert but got the error message "Cannot create file C:Windows\System32\DRIVERS\ETC\hosts" and "Denied access to the hosts file".

    I corrected the other problems and am attaching the MGlogs.zip file. This is a busy workstation and difficult for me to get access to during normal hours. Thanks again for your efforts. The problem stopped for a while, but is now recuring again.
     

    Attached Files:

  7. g8rvet

    g8rvet Private E-2

    The combofix did not run properly the first time (gave error message that I lost) It did run after the previous post so I reran Mglogs after running combofix. I will attach both the Combofix and the Mglog file. I now cannot run any search engine. The internet works fine, but any search engine just stalls (Google, yahoo or bing).
     

    Attached Files:


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds