zlob.dnschanger malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by gamegame89, Nov 2, 2008.

  1. gamegame89

    gamegame89 Private E-2

    i dont know how i got this virus, but it is extremly annoying. i have like vimax ad everywhere. i've used spybot and its still there. ive did the safe mode method with SmitfraudFix and its still there. i really need help with this annoying zlob.dnschanger. My comp is windows vista.

    heres my HJT log:

    • Edit by bjgarrick: Inline HJT log removed. READ & RUN ME sticky not followed.
     
    Last edited by a moderator: Nov 4, 2008
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    http://www.majorgeeks.com/images/grenade.gifWelcome to MajorGeeks.com!http://www.majorgeeks.com/images/grenade.gif

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions.


    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
    Notes:
    1. If you run into problems trying to run theREAD & RUN ME or any of the scans in normal boot mode. You can run steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:
    2. If you have problems downloading on the problem PC, download the tools on another PC and burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
     
  3. gamegame89

    gamegame89 Private E-2

    i got rid of zlob.dnschanger by using the SmitfraudFix method in safe mode. But now whenever i reboot windows vista, zlob.dnschanger comes back. I can use spybot to fix the problem and zlob.dnschanger would be deleted but once i restart, it comes back. Some people mentioned that zlob.dnschanger can run through one computer to another if the comp share the same router? is that true? i'm still working on the read & run me first, so i'll get back to you on that.
     
    Last edited: Nov 4, 2008
  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Anything is possible with malware.

    Follow the instructions in my previous post and attach the requested logs.;)
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    TIP to BJ and gamegame89:

    After running Malwarebytes. The below MUST be done to finish the fix.

    Make sure you have all web browsers closed.
    • Go into Control Panel -->Network Connections.
    • Right click on your connection
    • and click Properties.
    • On the Properties page, highlight Internet Protocol(TCP/IP)
    • Click Properties. This will bring up another page.
    • Select Obtain DNS Server Automatically.
    • Click the ok button. The page will close.
    • Press ok on the page in front of you.
    • Restart the computer.
    • Reconnect to the Internet using Internet Explorer.
     
  6. gamegame89

    gamegame89 Private E-2

    I did all the steps and i still have that zlob.dnschanger. For some odd reason Superantispyware didnt pick up any infections but spybot and malwarebyte did. I did not have any logs for Superantispyware but i inserted the two other logs from combo and malwarebyte.

    and my internet protocol is already set at Obtain DNS server automatically.
     

    Attached Files:

  7. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I need one more set of logs, go back to the READ ME and download MGTools. After running this tool, attach the requested log so we can proceed.
     
  8. gamegame89

    gamegame89 Private E-2

    i've did all the steps again and zlob.dnschanger is still in my comp. one of my friend told me to reset my router and for some odd reason zlob disappeared. i scanned with search & destroy and it said i didnt have any viruses and the vimax pills ad went away for good! this was very odd! i've now installed comodo firewall and AVG to help me prevent another malware.

    thanks for the help though, you guys helped me a lot.
     
  9. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Just because you're not having any obvious symptoms doesn't mean your system is clean. I would recommend your following instructions and attaching the requested logs so we can confirm your system is clean. It's up to you but I would recommend it. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds