Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.
|
|||||||
Begin your free trial now
Pay-as-you-go options starting at $10/user/month
Pay-as-you-go options starting at $10/user/month
8 Step Programme - Step 3, Can't Turn Norton 360 Off, Need Help Please
|
|
Thread Tools | Search this Thread |
|
#1
|
|||
|
|||
|
8 Step Programme - Step 3, Can't Turn Norton 360 Off, Need Help Please
Hi,
I hope someone can help me. I have my own website and have recently been having redirection problems. First, I was redirected to a Chinese Sex Museum site. When I blocked the content of this site things were ok for a while then I was redirected to something called Jokeroo. In addition, several of my friends tell me they have been experiencing the same thing when trying to view my site and one has been warned about a J S Downloader as well. I had online advice, from a so called 'expert', who recommended I download Malwarebytes which I have run several times and it has found nothing. Nor has Spybot S&D or Crapcleaner (which, I see, is in your 8 step removal programme!) I have started your 8 step removal programme but faltered at step 3 as my Norton 360 Antivirus will not let me alter any settings. All the options in the settings section are greyed out except the Identity Protection one. I can't complete the 8 steps if I can't turn Norton off so can any one tell me what to do? Cheers, B. Last edited by Georgehopper; 03-20-2010 at 05:43 PM.. |
|
#2
|
||||
|
||||
|
There is misunderstanding about this: you do NOT have to disable the AV and other security for these preliminary scans. The only thing we've asked to be disabled are the parts of the programs referred to as 'Real Time Protection'. For Norton, that would only be SYMANTEC ENDPOINT PROTECTION
Right click on the icon in the Taskbar notification area & select "Disable Symantec EndPoint Protection". ![]() We are considering omitting that section in the future because of this misunderstanding. We surely don't ant you active on the internet with no AV! There are later program that require security to be shut down, but we tell you when and how to do it safely. Okay? IF you have this 'endpoint' and can shut it down as above, okay. If not, please just go ahead with the rest of the steps. |
|
#3
|
|||
|
|||
|
All Steps Completed - Logs Attatched
Hi,
I have now completed all steps of the 8 step programme and logs are attatched. Norton AV scan found one moderate threat which I have removed and Super Anti Spyware found some tracking cookies, also removed. Nothing detected by Malwarebytes. Cheers B. |
|
#4
|
||||
|
||||
|
Okay, I have a couple of questions for you:
Quote:
Regarding the redirects: are you being redirected when you use your computer to search for and choose a site? Any site or just if you try to go to your own site? It sounds like the site itself has been hacked. So although you have 'your own site' it sound like it's that site, not your computer. The programs you ran for the logs> they were run on your computer system, right? So they could still be clean and the site could have malware> does that make sense? You have a huge amount of processes running. I didn't find anything questionable in 'these' logs except for the Name-Server. There are 3 different IP addresses: One for netname: CW-EUROPE-NET descr: Cable & Wireless Telecommunication Services GmbH country: DE ------------------------ Another for netname: H3GUK descr: NAT Pool for Mobiles country: GB ---------------------- And a third for netname: EU-EN-961107 descr: Cable & Wireless Telecommunication Services GmbH descr: PROVIDER Local Registry country: EU (non-country internet domain European Union Are you actively using all three of these? What type of security do you have on the site itself. I can have you run additional programs, but they wouldn't be for the site. |
|
#5
|
|||
|
|||
|
Hi Bobbye,
Thanks for your reply. To answer your questions - I have been redirected only when trying to view my own site not any others. My friends have also been redirected when trying to view my site. This would support your theory that my site has been hacked and it's not my computer. The site was built for me and is administrated by my brother. I did mention this problem to him when it first started happening, he went on it and had no problems. I have just spoken to him again and he had another look and found something called Break Soft? He said he will look into it and fix it. Is there anything you can tell me that I can pass on to him? With regard to me having 3 IP addresses I have no idea about these being a bit of a computer novice. How can this happen? I use 3 G Mobile internet as I live on a narrowboat. Cheers B. Last edited by Georgehopper; 03-21-2010 at 12:50 PM.. Reason: Updated information. |
|
|
|
#6
|
||||
|
||||
|
I did a search for "Break Soft", setting it up as the name of something. I found this site:
Password Break Soft Wear: http://www.filebuzz.com/findsoftware...ft_Wear/1.html Quote:
Quote:
I don't know what kind of arranngement you have with him, but I can't run site security from your computer and your computer is what we would work on in this forum. As for the 3 IP addresses, you need to contact 3G Mobile- whoever you pay for your service, tell them you have these 3 Name-Servers on your system, ask which they use, then have us remove any they don't. The best advice I can give you about the site is to tell your brother to put a firewall up. That won't remove malware but it can prevent accessing some of the sites you mentioned. If you note the URL when you get redirected, it can be added to the firewall and blocked. He can also shut it down until the breach has been found and fixed. I don't know the nature of the site- personal, business or whatever, but you already have other people telling you they are being warned. |
|
#7
|
|||
|
|||
|
Website Problem Solved.
Hi Bobbye,
Thanks for all your efforts on my behalf, I really appreciate your time. I have been in further contact with my brother and he has fixed the problem with my website. Now he knows what it is he can keep an eye on it. I will certainly tell him about setting up a firewall too. I will also get in touch with Three and find out which IP address is theirs so the other two can be removed by you. Cheers B. |
|
#8
|
||||
|
||||
|
Hard to believe he set up a site without a firewall!
Remove all of the tools we used and the files and folders they created
Note: If you receive a warning from your firewall or other security programs regarding OTC attempting to contact the internet, please allow it to do so. You should now set a new Restore Point and remove the old restore points to prevent infection from any previous Restore Points.
Let us know if you need help in the future. since the problem has been resolved, I'm going to close this thread. |
![]() |
| Similar Topics | ||||
| Topic | Replies | Forum | ||
Google keeps redirecting followed 8 step virus/spyware programme
|
1 | Virus and Malware Removal | ||
Step 8 of the 8-step Viruses/Spyware/Malware Preliminary Removal Instructions
|
1 | Virus and Malware Removal | ||
Step by step bootup for Windows Server 2003
|
2 | Windows OS | ||
(Yes I'm a total noob) I need a step by step for Ubuntu Wireless Networking
|
6 | The Alternative OS | ||
ASUS p4c800-deluxe and creating raid0+1 on it step by step detail
|
0 | Other Hardware | ||
| Thread Tools | Search this Thread |
|
|
All times are GMT -4. The time now is 06:38 PM.




Google keeps redirecting followed 8 step virus/spyware programme