isafetypage hijack! Did I get it all?

Discussion in 'Malware Help (A Specialist Will Reply)' started by Bruce N, Oct 17, 2006.

  1. Bruce N

    Bruce N Private E-2

    In a nutshell, isafetyepage hijacked the browser. I followed ALL the instructions and sucessfully ran all the scanners.

    Having fixed other malware before I decided to jump ahead and run the SmitfraudFix (by S!Ri) tool. It seems to have sucessfully removed the malware. I cleaned up some other things while I was at it.

    After that I went back to the beginning and reran all the scanners. Here are my log files after my repairs. I think I got most everything but if someone could look them over I would be very grateful.

    Bruce
     

    Attached Files:

  2. Bruce N

    Bruce N Private E-2

    Next group of files.
     

    Attached Files:

  3. Bruce N

    Bruce N Private E-2

    Here are the rapport files from before and after my repairs.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Majorgeeks!

    You are in pretty good shape! Only a few minor things to do.
    Goto Add/Remove Programs and uninstall My Way Search Assistant

    Now Run HijackThis and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/myway
    R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file)
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

    After clicking Fix, exit HJT.


    If you are not having any other malware problems, it is time to do our final steps:
    1. If you are running Windows XP or Windows ME, do the below:
      • go back to step 8 of the READ & RUN ME to Disable System Restore which will flush your Restore Points.
      • Then reboot and enable System Restore to create a new clean Restore Point.
    2. After doing the above, you should work thru the below link:
     
  5. Bruce N

    Bruce N Private E-2

    Thank you sir! (salute!)

    All steps are complete and the appropriate protections are installed and updated.

    Major Geeks rules!
    Bruce
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Surf safely!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds