also @ TechSpot: Top PC Games for this Holiday Season and Beyond
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.

Go Back   TechSpot OpenBoards > Operating Systems & Software > Virus & Malware removal

Google Redirect Virus

Reply
Bookmark Thread Tools
  #1  
Old 07-05-2009
Newcomer, in training
 
Member since: Jul 2009, 4 posts
Google Redirect Virus

I Think my computer has the google redirect virus. It happens 50% of the time I'm browsing on firefox. I already tried scanning with Malwarebytes and it still there. I'm using Firefox 3.5
Here is my Hijack this log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:07:36 PM, on 7/5/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\802.11g Wireless Cardbus & PCI Adapter HW.51 V1.00\WlanCU.exe
D:\Program Files\FormatFactory\FormatFactory.exe
D:\Program Files\FormatFactory\FFModules\mencoder.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
D:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] D:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Charter High-Speed Security Suite\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Charter High-Speed Security Suite\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Charter High-Speed Security Suite\ORSP Client\fsorsp.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

--
End of file - 2136 bytes
Reply With Quote
  #2  
Old 07-05-2009
LookinAround's Avatar
TechSpot Evangelist
 
Location: Chicago-land, IL
Member since: Apr 2007, 3,666 posts
Hi m106

I just noticed your post (tho i'm not one of the malware experts... so you'll need wait for them to review your logs) BUT... for assistance you should see and follow the instructions here for Virus/Malware Removal Instructions. Then post the full set of logs (as it instructs) for review
Reply With Quote
To remove this ad, sign in. To register for a new account, click here.
  
  #3  
Old 07-06-2009
Newcomer, in training
 
Member since: Jul 2009, 4 posts
Thanks,
I'll try that.
Reply With Quote
  #4  
Old 07-06-2009
Newcomer, in training
 
Member since: Jul 2009, 4 posts
Thanks I got it fixed.
Reply With Quote
Reply

Tip: Download Advanced SystemCare 3 Freeware - 1 Click A Day to Clean, Repair, Protect & Optimize your PC.

Tags
redirect google virus
Thread Tools


Similar Topics
Topic Category Replies Last Post
Google-redirect virus Virus & Malware removal 1 05-07-2009 01:51 AM
Google redirect virus Virus & Malware removal 4 02-14-2009 08:47 AM
Google redirect virus Virus & Malware removal 1 02-11-2009 02:40 AM
Google redirect virus, help please Virus & Malware removal 3 12-20-2008 09:51 AM
Google Redirect Virus Virus & Malware removal 1 10-23-2008 12:00 AM


All times are GMT -4. The time now is 07:21 PM.