I am experiencing a very annoying Google redirect that I can not seem to get rid of. I have attached the requested logs. Please help in any way you can!
File::
c:\windows\system32\apikndss¤.exe
c:\windows\System32\apikndss.exe
c:\windows\System32\apikndss(.exe
c:\users\Floyds\AppData\Local\Temp\geurge.exe
c:\users\Floyds\AppData\Local\Temp\k8p14819.exe
c:\users\Floyds\AppData\Local\Temp\md22uhi.dll
c:\windows\system32\net.net
c:\windows\system32\msfdjgqe.dll
c:\windows\system32\drivers\zhfwhvvrqafuy1.sys
Folder::
c:\users\Floyds\AppData\Roaming\.#
c:\programdata\61606625
RenV::
c:\program files\Java\jre6\bin\jusched .exe
c:\program files\Logitech\GamePanel Software\lgdevagt .exe
c:\program files\Logitech\GamePanel Software\G-series Software\lgdcore .exe
c:\program files\Logitech\GamePanel Software\LCD Manager\lcdmon .exe
c:\program files\Realtek\Audio\HDA\rthdvcpl .exe
Driver::
lyvmuqg
zhfwhvvrqafuy1
Registry::
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\61606625]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\apikndss]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\apikndss(]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bazisazive]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ewrgetuj]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ezLife]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\hsf87sdhfush87fsufhuie3fddf]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcexecwin]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\net]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\rinfri]
RegLockDel::
:OTL
O2 - BHO: (no name) - {79a2801f-ad64-47ee-badd-5648dcc8d214} - No CLSID value found.
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
[2010/03/12 20:30:20 | 000,000,000 | ---D | C] -- C:\Users\Floyds\AppData\Local\ESET
[2010/03/12 20:20:10 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
[2010/03/12 20:20:10 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010/04/27 10:12:37 | 000,811,520 | ---- | C] () -- C:\Windows\System32\qlkytf
:Services
:Reg
:Files
:Commands
[purity]
[emptytemp]
[resethosts]
[Reboot]
Still redirecting?Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
I don't see any indication of the above in your OTL log.it usually tells me that IE is using a proxy server every time.
:dir
C:\32788R22FWJFW /s
c:\programdata\{429CAD59-35B1-4DBC-BB6D-1DB246563521} /s
:filefind
wuauclt.exe
ctfmon.exe