Author Topic: snap do virus  (Read 4370 times)

0 Members and 1 Guest are viewing this topic.

jagdeep Bajaj

  • Guest
snap do virus
« on: September 09, 2013, 06:33:18 AM »
hello
whenever i open my browser i see this search engine snap.do(search.snapdo.com/?st=nt&q=). it looks like a nagging virus/malware to me. it has slowed down my laptop. the dds.txt and attact.txt are attached.
kindly help me out
thank you

Offline mikaelrask

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1556
Re: snap do virus
« Reply #1 on: September 09, 2013, 07:25:06 AM »
hey and welcome to the forum. please follow this guide and attach your logs.

http://forum.avast.com/index.php?topic=53253.0

a malware expert will help you from there. 
Windows 8.1 amd a10-5700 64 bit
12 GB ram 1 tb hard drive. Avast 18, MBAM

argus

  • Guest
Re: snap do virus
« Reply #2 on: September 09, 2013, 08:19:02 AM »
Hi jagdeep Bajaj, download and run AdwCleaner

http://forum.avast.com/index.php?topic=53253.0


------ Next ------




Please download zoek.zip () from here or here and save it to your Desktop.
Unpack the archive...
  • Close any open browsers
  • Temporarily disable your AntiVirus program. (If necessary)
    If you are unsure how to do this please read this or this Instruction.

  • Double click on zoek.exe to run the tool .
    Please wait while the tool does not start...

  • Copy the text present inside the code box below and paste it into the large window in the zoek tool:
Code: [Select]
filesrcm;
startupall;
skipfix-iedefaults;
firefoxlook;
chromelook;
  • Click on button.
    Please wait until a logreport will open (this can be after reboot)

  • Save notepad to your Desktop and attach here zoek-results.log
    Note: It will also create a log in the C:\ directory named "zoek-results.log"

argus

  • Guest
Re: snap do virus
« Reply #3 on: September 09, 2013, 11:10:46 AM »

jagdeep Bajaj

  • Guest
Re: snap do virus
« Reply #4 on: September 10, 2013, 04:55:11 AM »
hello
yes magna is helping me in another thread but that is of my office P.C. and it is almost solved.
the problem mentioned here is of my home laptop.
i ran zoek as per your instructions and the log is attached 

argus

  • Guest
Re: snap do virus
« Reply #5 on: September 10, 2013, 08:22:26 AM »
Re-run zoek with this script

Code: [Select]
emptyclsid;
C:\Program Files (x86)\Winamp Toolbar;fs
C:\users\Jagdeep\AppData\Local\Winamp Toolbar;fs
C:\ProgramData\Winamp Toolbar;fs
C:\Users\Jagdeep\AppData\Local\Smartbar\Application;fs
[HKEY_USERS\S-1-5-21-2382360282-1360722930-1941866962-1000\Software\Microsoft\Windows\CurrentVersion\Run];r
"Browser Infrastructure Helper"=-;r
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run];r
"Browser Infrastructure Helper"=-;r
amfclgbdpgndipgoegfpkkgobahigbcl;chr
{006ee092-9658-4fd6-bd8e-a21a348e59f5};c
{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C};c
iedefaults;
emptyalltemp;
autoclean;

jagdeep Bajaj

  • Guest
Re: snap do virus
« Reply #6 on: September 12, 2013, 07:04:56 AM »
the log is attached

argus

  • Guest
Re: snap do virus
« Reply #7 on: September 12, 2013, 09:47:43 AM »
Whether it is okay?

jagdeep Bajaj

  • Guest
Re: snap do virus
« Reply #8 on: September 12, 2013, 05:34:59 PM »
the snapdo has not gone it is still there in chrome

argus

  • Guest
Re: snap do virus
« Reply #9 on: September 12, 2013, 07:34:35 PM »
Rerun zoek with this script:

Code: [Select]
chrdefaults;
emptyclsid;
autoclean;


  Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

jagdeep Bajaj

  • Guest
Re: snap do virus
« Reply #10 on: September 13, 2013, 08:32:13 AM »
the files are attached

argus

  • Guest
Re: snap do virus
« Reply #11 on: September 13, 2013, 09:41:49 AM »
Feedback??

jagdeep Bajaj

  • Guest
Re: snap do virus
« Reply #12 on: September 13, 2013, 05:21:11 PM »
 snapdo is gone i suppose as it is not appearing in chrome.
thanks :)

argus

  • Guest
Re: snap do virus
« Reply #13 on: September 13, 2013, 05:25:11 PM »
OK, remove DDS and zoek, greeting.