TechSpot

Google redirect, logs included

By Jace0207
Jan 10, 2010
  1. I have made some progress, but still am not in the clear. So far I have had no replies to my first post. I hope I made no breach of etiquette. I need help badly.

    I am getting redirected from google searches. (Seems a popular problem lately) This all started with fake window security pop-ups. I have had my wallpaper change to some spyware and everything in between it seems. After having solved the problem of Malware bytes not running and not being able to install SAS I am at an impasse.

    I have followed the 8 steps and have attached the logs. Someone please give me some feedback. Even if it is "I have no idea how to help you"
     

    Attached Files:

  2. Tmagic650

    Tmagic650 TS Ambassador Posts: 17,244   +234

    You need to take action on the things listed in the Mbam log. Delete them!

    Run Combofix, download it HERE

    With ComboFix, at the download window, please rename it to Combo-Fix(.exe) before downloading it.

    Important! Save the renamed download to your desktop.
    Please disable all security programs, such as antiviruses, antispywares, and firewalls. Also disable your internet connection.
    Double click on Combo-Fix.exe and Run- follow the prompts.
    (Understand that things like your system clock changing and your desktop disappearing might happen. Do not worry, because all will be restored later.)
    Wait for the scan to be completed.
    If it requires a reboot, please do it.
    • After the scan has completed entirely, please post the log here. The log will be located at C:\ComboFix(.txt)

    Notes:
    1.Do not mouse-click Combofix's window while it is running. That may cause it to stall.
    2. ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.
    3. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you -- please tell your helper.
    4. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
    Then rescan with HijackThis.
    Attach Combofix report and new HijackThis log to next reply.
     
  3. Jace0207

    Jace0207 TS Rookie Topic Starter Posts: 32

    when you say delete them do you mean click "remove selected" on the malware bytes screen? because I have done that but they still show up.
     
  4. Tmagic650

    Tmagic650 TS Ambassador Posts: 17,244   +234

    Run combofix
     
  5. Jace0207

    Jace0207 TS Rookie Topic Starter Posts: 32

    ok running it now
     
  6. Jace0207

    Jace0207 TS Rookie Topic Starter Posts: 32

    ok I ran combo fix log follows
     

    Attached Files:

    • log.txt
      File size:
      15.3 KB
      Views:
      2
  7. Jace0207

    Jace0207 TS Rookie Topic Starter Posts: 32

    forgot the HJT here it is
     

    Attached Files:

  8. Jace0207

    Jace0207 TS Rookie Topic Starter Posts: 32

    Everything seems to be working great now. Thanks so much for the help Tmagic60. You made my day.
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...