also @ TechSpot: Qualcomm shows off Mirasol, 1.5-inch panel shipping in products soon

Can't get rid of Google redirect virus

Discussion in 'Virus and Malware Removal' started by abcdmm, Jan 19, 2011.

  1. abcdmm Newcomer, in training Posts: 17

    Yes, when I click on a search result it usually takes me to the initial page I selected but while the page is loading it then takes me to a black page with a white square in the middle talking about IQ or some other strange topic (I get redirected to other sites as well but mostly this page). Many times the word "amazonaws" is in the redirected page address. But this also happens when I click any website (like this one) from my email or from a bookmarked tab. 90% of the time I click the stop button once I open a page so the page stops loading and I won't get redirected.
  2. abcdmm Newcomer, in training Posts: 17

    I ran the Flash Disenfector. The only external thing I plug into the USB port is our printer. Do I need to plug in the printer before running this?
  3. Bobbye Helper on the Fringe Posts: 16,406   +16

    amazonaws is the Amazon Web Services. It includes:
    Amazon Simple Storage Service > http://aws.amazon.com/s3/
    Amazon CloudFront FAQs
    Amazon Simple Queue Service
    Amazon Simple Notification Service
    Product information can be found on this AWS Amazon.com SITE

    However, I found a security site that has this to say: amazonaws.com plays host to wide variety of bad bots >> Spiders, Crawlers and web robots Intelligence on search engine spider bots and identification, bad bots from spam botnets, content scrapers, tools to identify web robots, blocking malicious bots.
    Details about the bots can be found here: http://www.webmasterworld.com/search_engine_spiders/3828718.htm (it's over my head!)

    I looked through all 10,000 of the Tracking Cookies you accumulated and also your installed programs to see if I could spot anything relater- I couldn't, but that doesn't mean it's not there. Let's try blocking the AWS (Amazon Web Services) Domain.
    Go to the Control Panel> Internet Options> Security tab> Restricted sites> Sites> type each of the following IP addresses in, one at a time> click Add after each one: Just type in the number string:
    IP 67.202.0.0/18
    IP 72.44.32.0/19
    IP 75.101.128.0/17
    IP 79.125.0.0/17
    IP 174.129.0.0/16
    IP 204.236.128.0/17
    IP 204.236.224.0/19
    IP 216.182.224.0/20

    When finished> click on OK> Apply> OK

    You can also restrict this:
    *.amazonaws.com

    For other browsers, there should be a similar section to type in 'Exclusions.' In Firefox: Tools> Options> Privacy> Cookies section> Exclusions to allow Cookies from a site> Type each of the same IP in the box. A site won't load if you don't accept a Cookie.

    Give that a try and see if you notice any difference.
  4. abcdmm Newcomer, in training Posts: 17

    Ok it's been blocked for a few days now and I haven't had anymore redirects from amazonaws. I've still had a few redirects from any page (including this one) to random gaming sites or advertisements.
  5. Bobbye Helper on the Fringe Posts: 16,406   +16

    Thanks for your patience- my internet was down for almost 2 days.

    You shouldn't be downloading new programs while we're cleaning: here's one example:
    2011-01-28 20:56 -------- d-----w- c:\program files\Neoteris
    Especially oine that is specifically for remote access: Neoteris’ market leading “clientless” SSL VPN remote access> this can add or changes entries in the logs I'm working with.

    I'm still having a problem understanding your 'redirects'- especially when you say:
    What puzzles me is your saying you get redirects from instead of to.

    Tell me please how you are getting redirected while on TechSpot.

    Did you remove all of the Tracking Cookies? Did you reset the Cookies in browsers you're using? How about a new scan with Superantispyware to make sure we have that under control. The games and ads will be coming from 3rd party Cookies. If you reset the Cookies, the ads and games shouldn't be able to access the system.
  6. Bobbye Helper on the Fringe Posts: 16,406   +16