[X]
+ Reply to Thread
Results 1 to 7 of 7
  1. #1
    Chram
    Join Date
    Jan 2009
    Posts
    2,581
    FFXI Server
    Odin

    Default Google redirect virus removal

    I got the google/bing/etc. redirect virus and would like to remove it, however, I can't seem to locate it with spyware tools or AV. Also Kapersky's TDSSkiller app didn't catch it either. Need some help, hopefully I won't have to reformat.

  2. #2
    A. Body
    Join Date
    Jun 2006
    Posts
    4,468
    FFXI Server
    Ragnarok
    FFXIV Server
    Trabia
    WoW Realm
    Nazjatar
    Aion Server
    Israphel

    Default

    honestly you know it and you've said it. but backup and reformat.

    otherwise, are you running the scans in safe mode? have you turned off system restore?

  3. #3
    A. Body
    Join Date
    Jun 2006
    Posts
    4,468
    FFXI Server
    Ragnarok
    FFXIV Server
    Trabia
    WoW Realm
    Nazjatar
    Aion Server
    Israphel

    Default

    edit: double post <_<

  4. #4
    Moderator
    Join Date
    Oct 2005
    Posts
    7,859
    WoW Realm
    Cho'gall

    Default

    I wrote a guide, it's sticky'd. If that doesn't fix it, you're better off just reformatting.

  5. #5
    CoP Dynamis
    Join Date
    Jul 2008
    Posts
    295
    FFXI Server
    Ramuh

    Default

    It's likely this isn't a process that is doing this, but an edited hosts file. Try doing the following:

    For Windows XP/Vista/7 x86:

    Root(typically C: )\Windows\System32\drivers\etc

    There is a file named 'hosts' - it has no extension.

    Open the file with notepad and delete anything after the following:
    Code:
    # Copyright (c) 1993-2009 Microsoft Corp.
    #
    # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
    #
    # This file contains the mappings of IP addresses to host names. Each
    # entry should be kept on an individual line. The IP address should
    # be placed in the first column followed by the corresponding host name.
    # The IP address and the host name should be separated by at least one
    # space.
    #
    # Additionally, comments (such as these) may be inserted on individual
    # lines or following the machine name denoted by a '#' symbol.
    #
    # For example:
    #
    #      102.54.94.97     rhino.acme.com          # source server
    #       38.25.63.10     x.acme.com              # x client host
    
    # localhost name resolution is handled within DNS itself.
    #	127.0.0.1       localhost
    #	::1             localhost
    If you're under another OS let me know and I can direct you to the hosts file.

  6. #6
    Chram
    Join Date
    Jan 2009
    Posts
    2,581
    FFXI Server
    Odin

    Default

    Well thanks for the replies but I got impatient and went ahead and reformatted, I guess I needed to it has been a while.

  7. #7
    Banned.

    Join Date
    Jul 2005
    Posts
    5,856
    FFXI Server
    Sylph
    WoW Realm
    Arthas

    Default

    It was very likely an edit of your host file incase this happens again

Similar Threads

  1. Google links redirection virus help
    By shukudai in forum Tech
    Replies: 7
    Last Post: 01-02-2012, 07:50 AM
  2. Google redirect virus
    By The_OG_Nelta in forum Tech
    Replies: 5
    Last Post: 07-19-2011, 10:41 AM
  3. Virus Removal
    By Jb1210a in forum Tech
    Replies: 25
    Last Post: 02-07-2010, 06:45 PM
  4. Virus removal
    By Athas in forum Tech
    Replies: 2
    Last Post: 09-29-2008, 11:28 AM
  5. Google Links get redirected
    By Akiyama in forum Tech
    Replies: 8
    Last Post: 08-30-2008, 10:14 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts