Author Topic: redirect/browser hijack  (Read 18893 times)

0 Members and 1 Guest are viewing this topic.

monkeybones

  • Guest
redirect/browser hijack
« on: February 17, 2012, 07:10:40 AM »
hello, all. 

i would appreciate some help getting rid of a particularly nasty bug.  i'm trying to avoid a wipe.  please let me know what you would like me to install and which reports you'd like to get the ball rolling. 

thank you in advance

Gargamel360

  • Guest
Re: redirect/browser hijack
« Reply #1 on: February 17, 2012, 07:21:11 AM »
Follow this guide>>http://forum.avast.com/index.php?topic=53253.msg451454#msg451454 , then post the resulting logs in this topic as attachments.

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #2 on: February 17, 2012, 07:42:25 AM »
malwarebytes logs attached

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #3 on: February 17, 2012, 08:22:49 AM »
the captcha is no longer showing up when i try to reply from the infected computer which means i cannot post a reply.  when it's resolved i will post the otl logs.

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #4 on: February 17, 2012, 08:40:56 AM »
trying to post from another computer.  please let me know if it works for you.
« Last Edit: February 17, 2012, 08:48:04 AM by monkeybones »

monkeybones

  • Guest
and because i'm sure it's helpful
« Reply #5 on: February 18, 2012, 01:19:53 AM »
the little bugger that sent me in search of help is MBR:\\.\PHYSICALDRIVE0

i'm hoping i can find a work around that won't require a wipe. 
the problem is on my sister's computer.
she is using vista.
we do not have boot discs

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #6 on: February 18, 2012, 09:39:20 AM »
last log

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: redirect/browser hijack
« Reply #7 on: February 19, 2012, 11:42:05 AM »
Here you go this should fix it

Re-Run aswMBR

Click Scan

On completion of the scanClick the   Fix  Button




Save the log as before and post in your next reply

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #8 on: February 19, 2012, 11:51:07 PM »
this crashed the computer.  it will not stay on now, even in safemode.  windows starts the repair process but it shuts off the middle and the whole things starts over again. 

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: redirect/browser hijack
« Reply #9 on: February 20, 2012, 12:05:58 AM »
OK lets retrace our steps and try again

From the safe mode menu select a restore point when you reboot run aswMBR please for a scan

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #10 on: February 20, 2012, 01:00:30 AM »
i can't.  the computer won't start, even in safemode. 

it tried running the system disc check but failed.

session details
______________________

system disk = \device\harddisk0
windows directory = C:\windows
autochk run = 0
number of root causes = 1

every test completed succesfully error code 0x0

root cause found:
____________

unspecified changes to system configuration might have caused the problem. 






that is the last thing i got from the computer.  when it tries to restart, it blue screens.  if it makes i past blue screen, it will turn off a few seconds after booting, even in safe mode.  most times it will not make it to the safe mode screen at all.

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #11 on: February 20, 2012, 05:33:19 AM »
test

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: redirect/browser hijack
« Reply #12 on: February 20, 2012, 08:33:47 PM »
Are you back in now ?

Do you have the windows CD so the we can access the deeper repairs

If you are in could you run a fresh OTL scan for me please

monkeybones

  • Guest
Re: redirect/browser hijack
« Reply #13 on: February 20, 2012, 10:01:58 PM »
she doesn't have a cd, no.


i can get in for a moment at a time.  i set things up bit by bit so i could scan, then save, then email the scan to myself on successive tries.  i may be able to keep it open longer- it's being finicky.  i am responding from my personal computer atm. 

i will attempt the otl scan as soon as i get home from work this evening. 
thanks for responding.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: redirect/browser hijack
« Reply #14 on: February 20, 2012, 10:48:22 PM »
As soon as i can get to my computer I will post a link for you to burn a recovery console disc