Trojan Problem - Bad Search Results

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by badreligion93, Jun 27, 2009.

  1. badreligion93

    badreligion93 Private E-2

    Well what happened was my anti-virus software detected some trojan while I was on youtube and it was in my temporary internet files, so I cleaned all of those. It still came up with a few trojan warnings, but they've stopped now. But whenever I search something on yahoo, google, etc. like for example youtube or facebook, I'll click on the link on the search page, and it will take to me to a random site like thismystyle.com or realtor.com instead of actually going to facebook or youtube. I've attached some logs, so is the virus still there?
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You need to use current version of all tools. Everything you have is way out of date and you did not attach a ComboFix log as required.
    • Uninstall SAS and MBAM.
    • Then download, install, and UPDATE again before running the scans.
    • Then run ComboFix.
    • Then download and install the current version of MGtools and run a new scan. You were told that you were out of date last time you were here ( http://forums.majorgeeks.com/showthread.php?t=185198 ) but you did not respond. Please don't post if you are not going to complete threads.
    • Now attach the FOUR new logs from current versions of the programs.
     
  3. badreligion93

    badreligion93 Private E-2

    My bad for the last thread.
    But EVERY single time I uninstall MGtools and redownload it, everyone always says I have to update it. And can you give me the websites for Malwarebytes and SuperAntiSpyware? My search isn't working, and I'd like to get the links for the latest versions. I also updated SuperAntiSpyware today with new definitions, but it still says I'm running trace from April. Oh, and for the Combofix, my Dad won't let me run that because he thinks it will mess something up, so would you be able to help without combofix?
     
    Last edited: Jun 27, 2009
  4. badreligion93

    badreligion93 Private E-2

    Well it turns out I was able to fix the problem by running system restore a few times. I havn't had any problems with trojans or having my searches messed up. Sorry for wasting your time!
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You always have to download the current version when you come here for help. It changes all the time just like all software. You must always redownload MGtools.exe as you work thru the procedure. If you don't, you will most likely be told you do not have the correct version.

    For future reference, sometimes yes and sometimes no.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Then you need to do the below which will insure that you don't have old tools next time.

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix and C:\QooBox folders from combofix (if it exists and note that you may need to substitute a different drive letter than C: if you have Windows installed on a different drive.)
      • Also delete the below two files that are left behind by ComboFix, some scanners falsely detect these as problems which they are not:
        • C:\WINDOWS\NirCmd.exe
        • C:\WINDOWS\PEV.exe
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds