Google Redirection problems / Virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by rumburak, Nov 5, 2012.

  1. rumburak

    rumburak Private E-2

    Hello,

    this is my firs post. please be patient with me, i am from germany and my english is not so perfect.

    the problems began some days ago. a program called "file restore" suddenly started and deleted files on my desktop. the files were not deleted, they were only hidden. i fixed this problem by restoring windows on a date 5 days ago, when there were no problems.

    the virus-tool "file restore" is not working any more. but i still have big problems with firefox (wich i deinstalled) an now with opera (it is very slow). ie i do not use, because the redirection problems are very big.

    i first worked all the steps to remove malware, as they are described in the forum.

    i attach to this post the logfiles in to posts. unfortunatly i could not run tdsskiller or fixtdss.

    untill yet, i made no steps to remove or to quarantane viruses.
    i thank you very much for your help.
     

    Attached Files:

  2. rumburak

    rumburak Private E-2

    more logs in the attachment
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You have an MBR infection. Do you have your Vista boot CD/DVD?
     
  4. rumburak

    rumburak Private E-2

    hi, unfortunetly i have no cd/dvd. there ist a recovery-possibility by hitting f3, when the laptop boots or when vista started, there is a partition "e", where recovery-programs are saved.

    what else can i do?
     
  5. rumburak

    rumburak Private E-2

    hi, i got a cd with vista recovery and tried to repair the system - it failed. is there an options to repair and not to install a new system?

    gr.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Do you have your Vista install disc? If not:

    Vista and Win7 Recovery disc


    For fixing the boot issues:
    To run the Bootrec.exe tool, you must start Windows RE. To do this, follow these steps:

    1. Put the Windows Vista or Windows 7 installation disc in the disc drive, and then start the computer.
    2. Press a key when you are prompted.
    3. Select a language, a time, a currency, a keyboard or an input method, and then click Next.
    4. Click Repair your computer.
    5. Click the operating system that you want to repair, and then click Next.
    6. In the System Recovery Options dialog box, click Command Prompt.
    7. Type Bootrec.exe, and then press ENTER.

    Then you can do this:

    Bootrec.exe /fixmbr

    Now rescan with MBRcheck and attach the log.
     
  7. rumburak

    rumburak Private E-2

    hi,

    i did like you asked for, but:

    - there was no possibility to select an operating system

    I could select the repair option and start the command prompt. it was also possible to start "bootrec.exe" and "Bootrec.exe /fixmbr".

    I attach the log of mbrcheck.exe

    Thank you very much.
     

    Attached Files:

  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes but what disk are you using, are you using the Vista boot DVD/cd?
     
  9. rumburak

    rumburak Private E-2

  10. rumburak

    rumburak Private E-2

    Hi,

    i am using my original Vista Recovery CD (i have no installation CD). I tried again to repair, but i failed. I could only execute bootrec.exe /fixmbr, the mbr is still infected.

    In the attachement a new MBR-log.

    thx.
     

    Attached Files:

  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  12. rumburak

    rumburak Private E-2

    hi,

    i understood, that you mean a vista recovery cd because you wrote "If not:
    Vista and Win7 Recovery disc".

    now, i will get an installation cd/dvd and try the described steps again. i hope this is what you meant. excuse me again, english ist not my best language :cry

    thx.
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes try with a proper boot DVD and of not you will have to purchase what I linked to. :)
     
  14. rumburak

    rumburak Private E-2

    hi,

    i tried all steps again with an original dvd. after point 3 i am asked to choose a driver, but the list is still empty. the repair function started but interrupted. there was something written, that i have to remove an external device (i don“t have one).

    in the command prompt window i started bootrec.exe /fixmbr.

    now i send you the new mbrchecklog.
     

    Attached Files:

  15. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Are you still having redirects?
     
  16. rumburak

    rumburak Private E-2

    hi,

    yes, i have still redirects.

    hope, you can help me...
     
  17. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I am seeking advice. Hang in there. :)
     
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    When you run Hitman what options does it give you when it finds this:

    Let me know.
     
  19. rumburak

    rumburak Private E-2

    hi,

    it was difficult to start hitmanpro. i got 4 times in a row a bluescreen starting it.

    hitman offers me to replace - this means "ersetzen". to be sure, i send you a screenshot of the options.
     

    Attached Files:

  20. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Can you let it replace then please and then rescan with MBRCheck and then attach the log?
     
  21. rumburak

    rumburak Private E-2

    hi,

    i replaced the mbr and rebooted. laptop is now much faster and there are nor redirections. i will install firefox again and give you information if it is still ok.

    meanwhile i send the mbrlog.

    thank you very much!!!
     

    Attached Files:

  22. rumburak

    rumburak Private E-2

    hi,

    after installing firefox again, there are no redirections. everything seems to be ok. the nest days i will make several scans and give you again information. i think it will be not before sunday.

    thx.
     
  23. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    That log looks lovely! :) OK, so let me know by Sunday how things are running. You should be good now. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds