online-software scanner/redirect

Discussion in 'Malware Help (A Specialist Will Reply)' started by Kilo, Dec 16, 2009.

  1. Kilo

    Kilo Private E-2

    Earlier this week the links on Google started redirecting to the wrong website. I completed the "read and run me first" and the "Windows XP cleaning" instructions and thought the issue was fixed. I was mistaken as the issue is still there. I have to click on a Google link four times before it works (the first three clicks direct me to the wrong website). Also today, I got a window that directed me to the website "online-software-scanner.biz." (see attached screen shot).

    I've completed the Windows XP cleaning instruction again and have attached the logs. There's no combofix log as I was unable to download the program.

    Thank you in advance for your help.
     

    Attached Files:

  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Welcome to MajorGeeks!

    First - let's update some of your tools:

    1) You are out of date with your version of SUPERAntiSpyware.
    • Please uninstall your current version (this is necessary).
    • Then download this SUPERAntiSpyware
    • Install this new version. It may tell you that you need to reboot to complete the installation. You must reboot at this time.
    • After the reboot, run SUPERAntiSpyware and immediately click the Check for Updates button to get more updates for the database.
    • Now run a new full scan of your system. And attach this new log.

    2) As ComboFix is now available - use the below link for installing and running it.

    Windows XP Cleaning Procedure

    3) Now go to this link MGTools and download the new version of MGtools....overwrite your previous MGtools.exe file with this one.

    Then run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, use right click and select Run As Administrator).

    Please attach the below logs to your next reply:
    • updated SAS.log
    • C:\combofix.txt
    • C:\MGlogs.zip

    Once you have attached the new logs, I will get back to you with a set of instructions as soon as possible. Our queue is working the oldest threads first.

    Thanks for your patience.
    dr.m
     
  3. Kilo

    Kilo Private E-2

    Thank you for getting back with me.

    I'm a little confused as to why the programs were out of date since I had (or thought I had) followed the XP cleaning procedures word for word. In any case, here's what I've done.

    -Uninstalled SAS and reinstalled it. Log attached
    -Downloaded ComboFix from the link you provided. Ran ComboFix from desktop. Got to the "scanning for infected files screen" and after a few minutes saw this... "NIRCMDC is not recognized as an internal or external command, operable program or batch file" and "MTEE is not recognized as an internal or external command, operable program or batch file." I let the computer sit for over an hour and nothing else happened. For the record, I did not touch the computer while ComboFix ran, but just in case, ran the program again and the same thing happened. My clock still shows military time.
    -Downloaded MGTools from the link you provided and installed it over the existing file as requested. Ran MGTools from the C drive. Not sure if this is important, but the last thing the program shows is..."Zipping hijackthis.log updating hijackthis.log" and nothing else happens.

    Also, my apologies as I can't manage to save the screen shot I mentioned in my first post in a format in which the file is below the allowed attachment size.
     

    Attached Files:


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds