also @ TechSpot: Microsoft wants Xbox to be the entertainment hub for all your devices

TechSpot

[Solved] Google results keep redirecting

Discussion in 'Virus and Malware Removal' started by stumped324, Feb 15, 2011.

Thread Status:
Not open for further replies.
  1. Bobbye Helper on the Fringe

    If you're using Firefox and a page legitimately has a redirect, you will get a line right above the screen saying the redirect is being requested. You have to click on Allow for the page to load.

    The site you left is for a Facebook Survey. I got a Warning from Firefox that the site has a poor reputation and it did not load. It is possible that this is in your temp files- in History. Do you visit Facebook?
  2. stumped324 Newcomer, in training

    history

    i havn't used firefox for over a month.
    no i don't visit facebook.
    i clean my temp files regularly and checked/fixed the cookie settings you told me about.
    "the redirects continue."
    would you like me to continue logging the sites i get redirected to?
  3. stumped324 Newcomer, in training

    one more for the list

    here's one that pops up all the time
    .epoclick.com/?ad=1299965581
  4. Bobbye Helper on the Fringe

    Please keep the replies to a minimum. Use the Edit feature instead of a new reply. I have a lot of email feedback from each of you replies. You can say as much- but use Edit instead of a new reply for each sentence.

    No, you don't need to continue with the sites. What you do need to do however is get something on the system that will 'black list' these ads. What is your primary browser and it's version?

    You can also block a domain like this:
    Open IE> or Control Panel to Internet Options> Security tab> Restricted sites> Sites> enter a domain like this:
    *.epoclick.com
    Then click Add.
    You can do this with any domains you get.

    But I think it's a matter of not having a good popup blocked or of too low security settings. I'm going to leave some information for you that will enhance the security on the system:
    Tips for added security and safer browsing:
    1. Browser Security Settings: Custom is fine if the user did the settings. Mine are Custom. Default is okay too, but sometimes too restrictive.
      This Tutorial will help guide you through Configuring Security Settings, Managing Active X Controls and other safety features: Make Internet Explorer safer.
    2. Have layered Security:
      • Antivirus Software(only one):Both of the following programs are free and known to be good:
        [o]Avira-AntiVir-Personal-Free-Antivirus
        [o]Avast Free Version
      • Firewall (only one): Use bi-directional firewall. Both of the following programs are free and known to be good:
        [o]Comodo
        [o]Zone Alarm
      • Antispyware: I recommend all of the following:
        [o]Spywareblaster: SpywareBlaster protects against bad ActiveX. It places kill bits to stop bad Active X controls from being installed. Remember to update it regularly.
      [o]Download ZonedOut and save to your desktop. this replaces IE/Spyad and manages the Zones in Internet explorer. This places over 4000 websites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (Cookies etc) from the sites listed, although you will still be able to connect to the sites.
      For IE7 and IE8, Windows 2000 thru Vista. No Windows 7 yet.
      IE/Spyad is not longer being supported. If you have this on your system, you should replace it with the following program. Make sure your IE8 is Up-to-date before adding sites to your restricted zone.
      Known issue: If you have "immunized" your computer with Spybot Search and Destroy, and use ZonedOut to "Remove All" restricted sites - ZonedOut will remove your trusted sites as well. Note that if you remove Spybot Search and Destroys Immunization the problem goes away...
      [o]Replace the Host Files
      MVPS Hosts files This replaces your current HOSTS file with one containing well know ad sites etc. Basically, this prevents your computer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer.
      [o]Google Toolbar Get the free google toolbar to help stop pop up windows.
    3. Stay current on updates:
      [o] Visit the Microsoft Download Sitefrequently. You should get All updates marked Critical and the current SP updates.
      [o]Visit this Adobe Reader site often and make sure you have the most current update. Uninstall any earlier updates as they are vulnerabilities.
      [o]Check this site .Java Updates Stay current as most updates are for security. Uninstall any earlier versions in Add/Remove Programs.
    4. Reset Cookies to prevent Tracking Cookies:
      [o]For Internet Explorer: Internet Options (through Tools or Control Panel) Privacy tab> Advanced button> check 'override automatic Cookie handling'> check 'accept first party Cookies'> check 'Block third party Cookies'> check 'allow per session Cookies'> Apply> OK.
      [o]For Firefox: Tools> Options> Privacy> Cookies> check ‘accept Cookies from Sites’> Uncheck 'accept third party Cookies'> Set Keep until 'they expire'. This will allow you to keep Cookies for registered sites and prevent or remove others. (Note: for Firefox v3.5, after Privacy click on 'use custom settings for History.')
      I suggest using the following two add-on for Firefox. They will prevent the Tracking Cookies that come from ads and banners and other sources:
      AdBlock Plus
      Easy List
    5. Do regular Maintenance
      Remove Temporary Internet Files regularly:
      [o]ATF Cleaner by Atribune
      OR
      [o]TFC
      Disable and Enable System Restore:
      [o]See System Restore Guide This will help you understand what this is, why you need to clean and set restore points and what information is in them.
    6. Practice Safe Email Handling
      [o] Don't open email from anyone you don't know.
      [o] Don't open Attachments in the email. Safe to your desktop and scan for viruses using a right click
      [o] Don't leave your personal email address on the internet. Have a separate email account at one of the free web-based emails like Yahoo.
    Use a Site Advisor: The Web of Trust (WOT) add-on is a safe surfing tool for your browser. Traffic-light rating symbols show which rate the site for Trustworthiness, Vendor Reliability, Privacy, Child Safety.Your online email account – Google Mail, Yahoo! Mail and Hotmail is also protected.

    Every time to do a search and the screen comes up with the sites, they will have the rating light. Green (2 shades), Amber/Yellow Caution, Red> not advised. A few sites haven't been rated and show as a blue flashlight.

    If you want to link to another site from the page you're on o another, WOT will give you an Alert that the site is known for fraudulent entries, unreliable or other and the site won't load. Don't worry- those Alerts don't happen if you still to the green rating.

    http://www.mywot.com/en/download
  5. stumped324 Newcomer, in training

    thanks

    sorry about the multiple posts, i'll remember to use the edit.
    i've been using internet explorer 8 for the last month, but i prefer using firefox.
    after reading through your last post am i to understand that my problem is not nesasarilly malware but a problem with my security settings?
    either way i'll run through you list and see where we get.
    thanks again bobbye
  6. Bobbye Helper on the Fringe

    Yes, security settings. If you use Firefox primarily, do this:

    Reset Cookies:
    [o]For Firefox: Tools> Options> Privacy> Cookies> check ‘accept Cookies from Sites’> Uncheck 'accept third party Cookies'> Set Keep until 'they expire'. This will allow you to keep Cookies for registered sites and prevent or remove others. (Note: for Firefox v3.5, after Privacy click on 'use custom settings for History.')
    I suggest using the following two add-on for Firefox. They will prevent the Tracking Cookies that come from ads and banners and other sources:
    AdBlock Plus
    Easy List
    ============================================
    This screen shot may vary a little depending on your version of Firefox:
    Security Screen
    [IMG]
    • Check 'Warn Me...'Check Block reported attack sites, Check Block reported web forgeries
    • Password section:>>Check Remember passwords
    • Warning Messages
      Settings>>Check I am about to view a page that uses low-grade encryption

    Advanced Screen
    [IMG]
    • General tab:
      Check Warn me when web site tries to redirect or reload the page
      (Sometimes, a good link will 'forward' to the next page. But Firefox will have a Warning line about this. All you have to do is click on Allow when it's a trusted you.)
    • Browsing> Check Autoscrolling> Check Check my spelling as I type
    • System Defaults: Check Always check to see if Firefox is the default
    • Network tab: Check Tell me when a website asks to store data for offline use
    • Update tab:> Check both boxes to automatically check for updates to: Firefox Installed Addons
      When update are found: Check Ask me wht to do
    • Encryption tab:
      Protocols> check both Use SSL 3.0 and TLS 1.0
      Certificates:When Server requests> check Ask me every time
    ==================================
    Open Inernet Options in IE Tools or Control Panel> Security tab> Custom Lever> Set level to Medium.> Apply> OK
  7. stumped324 Newcomer, in training

    redirects

    thanks bobbye
    i followed your instructions and it seemed to do the trick for most firefox browsing and google results.YEH! however when i'm navigating this very site(seems to be relegated to this site, at this point) a secondary window opens and directs me (to what looks like through google) to an advertising site. this is obviously a different kind of redirect-i assume- it does NOT affect/redirect the window i'm working on.
    this is still a bit frustrating but not near as problematic. thoughts?
    i followed your instructions for IE and that has not worked. however i'm not too concerned as i prefer to use firefox. just wanted to ask if the IE problems or this secondary window(firefox) poses a risk to the system? can i ignore the IE problem? and of course your thoughts on this secondary window in firefox would be appreciated.

    last question:
    if my system is clean is there a special manner of removing all the programs i have used under your direction? or do i just do it the old fashioned way?
  8. Bobbye Helper on the Fringe

    Can you please focus on the particular malware related problem? You are giving me fragmented questions. When I know you're clean, I'll tell you how to remove the cleaning tools. But everytime I get to that point, you bring something else up.
  9. stumped324 Newcomer, in training

    redirects

    sorry bobbye. my appologies.
    the "google" redirects no longer seem to be an issue when using firefox.
  10. Bobbye Helper on the Fringe

    Okay, we'll consider the problem resolved:

    Removing all of the tools we used and the files and folders they created
    • Uninstall ComboFix and all Backups of the files it deleted
    • Click START> then RUN
    • Now type Combofix /Uninstall in the runbox and click OK. Note the space between the X and the U, it needs to be there.
      [IMG]
    • Download OTCleanIt by OldTimer and save it to your Desktop.
    • Double click OTCleanIt.exe.
    • Click the CleanUp! button.
    • If you are prompted to Reboot during the cleanup, select Yes.
    • The tool will delete itself once it finishes.

    Note: If you receive a warning from your firewall or other security programs regarding OTC attempting to contact the internet, please allow it to do so.
    • You should now set a new Restore Point and remove the old restore points to prevent infection from any previous Restore Points.
    • Go to Start > All Programs > Accessories > System Tools
    • Click "System Restore".
    • Choose "Create a Restore Point" on the first screen then click "Next".
    • Give the Restore Point a name> click "Create".
    • Go back and follow the path to > System Tools.
      [*]Choose Disc Cleanup
      [*]Click "OK" to select the partition or drive you want.
      [*]Click the "More Options" Tab.
      [*]Click "Clean Up" in the System Restore section to remove all previous Restore Points except the newly created one.


    Empty the Recycle Bin
Thread Status:
Not open for further replies.