Google/Yahoo Search Results Altered

Discussion in 'Malware Help (A Specialist Will Reply)' started by Moonshield, Mar 7, 2005.

  1. Moonshield

    Moonshield Private E-2

    Alright here's my situation:

    My friend was using my computer and apparently when I left the room he agreed to install an ActiveX controller... and it installed AZESearch... I was able to fix that problem on my own, being that I have some experience with computers...

    Now the problem is that my search engine results, such as those from google and yahoo, are altered to display only the same results everytime... even the google.com homepage is altered and is clearly a fake...

    I have tried everything that is posted on this site, and nothing is working... so I have made the final step and have decided to do a HJT scan... the log is attatched... and I'm sorry if it seems like I'm jumping to the last step, but I HAVE tried many things, and nothing is working...

    So i would greatly appreciate if someone would kindly take a quick look at my log...

    Sincerely,
    Cory Miranda, Moonshield
     

    Attached Files:

  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

  3. Moonshield

    Moonshield Private E-2

    Yes... still having the trouble... sorry to make you guys go through the trouble of helping me... but this is really becoming a pain...
     
  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    First:

    Your log is not that bad, only a few things to address.

    Do another scan with HijackThis and Check the Boxes for the following:

    Make sure All Browser Windows are Closed when you Click FIX.

    O1 - Hosts: 66.199.231.174 www.google.com
    O1 - Hosts: 66.199.231.174 google.com
    O1 - Hosts: 66.199.231.174 www.google.co.uk
    O1 - Hosts: 66.199.231.174 google.co.uk
    O1 - Hosts: 66.199.231.174 www.google.ca
    O1 - Hosts: 66.199.231.174 google.ca
    O1 - Hosts: 66.199.231.174 www.google.es
    O1 - Hosts: 66.199.231.174 google.es
    O1 - Hosts: 66.199.231.174 www.google.de
    O1 - Hosts: 66.199.231.174 google.de
    O1 - Hosts: 66.199.231.174 www.google.fr
    O1 - Hosts: 66.199.231.174 google.fr
    O1 - Hosts: 66.199.231.174 www.google.com.au
    O1 - Hosts: 66.199.231.174 google.com.au
    O1 - Hosts: 66.199.231.173 www.yahoo.com
    O1 - Hosts: 66.199.231.173 yahoo.com
    O1 - Hosts: 66.199.231.172 www.msn.com
    O1 - Hosts: 66.199.231.172 msn.com
    O1 - Hosts: 66.199.231.172 search.msn.com

    O16 - DPF: {65FDEDF3-8ED9-4F5B-825E-18C2D44191A7} (OneCCCtl Class) - http://d.66.155.171.79.downloads.estara.com./as/OneCCDM.php?template=976&session id=9924389_67.80.96.80_46203&=&req=1109293581093OneCC.cab


    Again, make sure All Browser Windows are Closed when you Click FIX.


    NEXT:
    Run CCleaner


    Second:

    Please download HOSTER and open it, select Restore Original Hosts > Press OK and then exit program.

    Third:

    Reboot and post a new HJT log, and also tell me how things are running now.
     
  5. Moonshield

    Moonshield Private E-2

    Everything is working perfectly... as I can tell... THANK YOU SO MUCH!

    Log included...
     

    Attached Files:

  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Log is clean!

    Are you currently experiencing any further problems?
     
  7. Moonshield

    Moonshield Private E-2

    Nope... thanks for your assistance... I appreciate it!
     
  8. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds