republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security Cleanup » HJT Log - browser hijack can't be found
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
« [Vundo] HJT Log - slow system/redirected  
AuthorAll Replies


Mellow
Premium
join:2001-11-16
Salisbury, MD
·HostGator
·Cavalier Telephone

reply to Mellow
Re: HJT Log - browser hijack can't be found

I was able to fix my issue. I will post here so anyone searching can have something to go off of to help them. I had the kungsf* rootkit installed on my system.

Here are the systems I had:
Disk Management failed to bring up root drive
Disk Defragmenter could not start
Windows Update Failed
Misc browser hijacks for both IE7 and Firefox 3.0.10

Solution:
Ran Gmer to find the rootkit
Used combofix to remove rootkit
Ran panda's online scan
Ran malware bytes in safe mode
Ran spybot in safe mode
Ran ad-aware in safe mode

System is back to normal now with windows update working as well as disk defrag and disk management and no more browser redirects, and HJT comes back clean along with all other scans.

Thanks to Thejoker for helping, I have been working on this issue for the past 3 days learning and figuring out how to fix it. Sure I could have gone back to a backup, but the fun is trying to figure out how to fix it
--
SurfingOC.com / GsdPhotography.com


lilhurricane
Crunchin' For Cures
Premium,Mod
join:2003-01-11
Purple Zone
clubs:
·Comcast

Host:
TV over IP
Software
RCN
Inside Insight
Team Discovery
When you perform the guidelines here for pre-clean requirements, and start a help thread - you are embarking on a journey.

You're one part of the effort to confirm safe passage on the internet, and your "helper" is the other. It's teamwork at it's finest.

Our expectations - from start to finish are that we leave you safe and clean, and educated on how to prevent re-infection.
This is a free service we offer, and our volunteers are unpaid. They do it because they truly enjoy helping people.

Please follow all of the requests made by your Helper, including submitting to the Forum all log results.
This helps others who frequent this forum to learn or who are seeking answers as well, to see what is going on.

We need to ascertain that everything is truly "ok".

Note that many of the utilities utilized require a formal uninstall process to return your system to a normal operating state.

It's work - yes, but it's necessary.

Therefore, we ask you please see this through till your "helper" deems you "clean". You can do it!
--
~Safe Hex~ Team Discovery ~ Project Hope ~ Like A Hurricane~


TheJoker
Premium,VIP,MVM
join:2001-04-26
Alexandria, VA

I'm glad you seem to have fixed your problem, but as lilhurricane said, we still need to be sure.

ComboFix should not be run on your own. While that would have been my next step, it's a powerful tool not intended by the author to be used except under the guidance of a trained helper. Improper use of it can leave you with an unbootable system.

Since you did run ComboFix, please post the log from it, along with the previously requested information.

Even if there is nothing else to be removed with ComboFix (and there may be), it will still need to be properly uninstalled when we are finished.

quote:
I have been working on this issue for the past 3 days learning and figuring out how to fix it. Sure I could have gone back to a backup, but the fun is trying to figure out how to fix it

If you want to learn how to remove malware, and help others, there are several forums that offer training, including Spywareinfo Forum, which Calamity Jane recommended to me several years ago, and also Malware Removal University.
--
Proud ASAP member since 2005
-
Forums » Up and Running » Security » Security Cleanup« [Vundo] HJT Log - slow system/redirected  


Thursday, 03-Dec 04:01:13 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [162] Comcast Releasing Promised Usage Meter
· [97] Graduate Student Unveils Sprint's GPS Sharing With Feds
· [79] Latest Consumer Reports Survey Not Kind To AT&T
· [70] Baltimore To Ban Lazy Cable Installs
· [67] Avast Antivirus Has Gone Mad
· [62] Broadband Killed The Game Console
· [55] Rogers Unveils The ISP Dream Model
· [46] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [40] AT&T, Verizon Drop 3G Ad Dispute
Most people now reading
· False positive in Avast! or is it real? [Security]
· Windows 7 boot manager editing questions [Microsoft Help]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Linksys Gateway Mode vs Router Mode [Linksys]
· Working in a Stairwell and Surrounding High Walls [Home Repair & Improvement]
· ToC 4th boss - Preliminary Strategy for Twin Valkyr [World of Warcraft]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]
· PVP in wow today [World of Warcraft]
· Opening a file download dialog from a JavaScript function. [Webmasters and Developers]
· Bandwidth Limits/Congestion Management - All discussion here [Comcast HSI]