VideoHelp Forum
+ Reply to Thread
Results 1 to 13 of 13
Thread
  1. [url=http]text[/url] Denvers Dawgs's Avatar
    Join Date
    Feb 2003
    Location
    Right Behind You. . .
    Search Comp PM
    Ok so some how I got this google redirect virus (when clicking a link in google I get sent to a site other than the one I want.)

    I've tried running spyware doctor, super anti-spyware, spybot, hitman pro, combofix, and nothing has worked? anyone know how to get rid of this very annoying virus/malware?

    Ok so it seems everything is working now with IE, but I use Firefox, and the issue is still happening under firefox.
    What We Do In Life, Echoes In Eternity....
    Quote Quote  
  2. I'm a Super Moderator johns0's Avatar
    Join Date
    Jun 2002
    Location
    canada
    Search Comp PM
    Check your user folders and see if another account has been created there,if that's the case reboot to safe mode and delete the bogus account and remove the startup entry in the registry.
    I think,therefore i am a hamster.
    Quote Quote  
  3. Man of Steel freebird73717's Avatar
    Join Date
    Dec 2003
    Location
    Smallville, USA
    Search PM
    have you tried malwarebytes?

    run it from safe mode.
    Donadagohvi (Cherokee for "Until we meet again")
    Quote Quote  
  4. Member
    Join Date
    Oct 2010
    Location
    syracuse,ny
    Search Comp PM
    plus 1 for malwarebytes!
    Quote Quote  
  5. Member Cornucopia's Avatar
    Join Date
    Oct 2001
    Location
    Deep in the Heart of Texas
    Search PM
    The last couple of times one of my agency's PCs have gotten this, it's been piggybacked along with the Vundo virus, which is a bitch to get rid of. Not sure really which steps in the combination finally cleared them both up, but I used a combination of:

    1. Booting to a BartPE/WindowsLive Boot CD/DVD rescue disc that has a whole bunch of utilities.
    2. Ran through: EZPCFix (many tools), Spybot S&D, Avira+Avast AVs. Put a bunch of utilities onto C:\Documents & Settings\Administrator\Desktop.
    3. Then boot to Safe Mode Administrator logon
    4. Ran through: RKill, ComboFix, Rootkit Repeal, CCleaner, Malwarebytes MBAM, Spybot S&D, Hijack This, a few others. Made sure Spybot had chance to run in Boot mode.
    5. Got rid of ALL temp directories, and checked all major sys folders for items with newest dates, renaming extension of suspect files if necessary (to .bad, or something).
    6. If everything doesn't run fast and smoothly, and allow for tools like Spybot to stay resident, then go back to beginning and repeat, trying a few others as well.

    If all you have is the redirect, this is overkill, but you may find out that you have more than you think...

    Scott
    Quote Quote  
  6. Member ranchhand's Avatar
    Join Date
    Oct 2005
    Location
    USA-midwest
    Search Comp PM
    ..What cornucopia said...Look for Vundo. Rename Malwarebytes to DenverDawg123 (or whatever), move it to a new, randomly named directory and bury it under two layers of sub-directories. Many of these virii recognize names and prevent the .exe from running. You can also try running it from your thumb drive. I just had one that would shut down MB soon as it loaded, then would delete the MB executable file so that it had to be downloaded fresh again. Only problem was that it also hijacked the browser so that you could only go to certain websites, so you couldn't download it again. Then it set the Hosts file to read only so you couldn't edit it. I finally nailed it but would take too long to explain here.
    Quote Quote  
  7. [url=http]text[/url] Denvers Dawgs's Avatar
    Join Date
    Feb 2003
    Location
    Right Behind You. . .
    Search Comp PM
    Well last night whikle trying different fixes, my pc just started to reboot itself. Could get to safe mode at all. So had to reinstall from an acronis true image I had saved. So good news is google redirct is gone, bad news is I had to do some program updating, but not to bad. All is good again. Only lost a few e-mails and few unimportant files.

    thanks for the replies
    What We Do In Life, Echoes In Eternity....
    Quote Quote  
  8. Man of Steel freebird73717's Avatar
    Join Date
    Dec 2003
    Location
    Smallville, USA
    Search PM
    Aren't you glad you backed up?!!!
    Donadagohvi (Cherokee for "Until we meet again")
    Quote Quote  
  9. [url=http]text[/url] Denvers Dawgs's Avatar
    Join Date
    Feb 2003
    Location
    Right Behind You. . .
    Search Comp PM
    Always. Keep it all in a fire proof safe as well......Can't be to safe!!
    What We Do In Life, Echoes In Eternity....
    Quote Quote  
  10. I'm a Super Moderator johns0's Avatar
    Join Date
    Jun 2002
    Location
    canada
    Search Comp PM
    Afoke_Frieser is a virus.
    I think,therefore i am a hamster.
    Quote Quote  
  11. Member
    Join Date
    Nov 2002
    Location
    United States
    Search Comp PM
    Originally Posted by johns0 View Post
    Afoke_Frieser is a virus.
    I believe you are right.
    Quote Quote  
  12. Member
    Join Date
    Mar 2011
    Location
    Nova Scotia, Canada
    Search Comp PM
    Originally Posted by DarrellS View Post
    Originally Posted by johns0 View Post
    Afoke_Frieser is a virus.
    I believe you are right.
    I think so too. If I wasn't in Linux right now I would have never clicked on any of those links.
    Quote Quote  



Similar Threads

Visit our sponsor! Try DVDFab and backup Blu-rays!