browser hijack.

2PMHottest

New member
i have this issues:mad::mad:. every time i click on the Google search result URL it go to the other website:mad:. i already try to use the Malwarebytes Anti-Malware, Rkill , and tdsskiller to scan and remove but it still there.
this is the website it direct me to--> (click dot expandsearchanswers dot com).
any solution for this??
Sorry for my bad english. :geek:
 
Last edited by a moderator:

My Computer

OS
Windows 7 Professional 32bit

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Reinstall your browser.
:sarc:

Try the following please:

Copy the following text exactly as shown into a new instance of Notepad, and save it as flush.bat on your desktop.

@Echo on
pushd\windows\system32\drivers\etc
attrib -h -s -r hosts
echo 127.0.0.1 localhost>HOSTS
attrib +r +h +s hosts
popd
ipconfig /release
ipconfig /renew
ipconfig /flushdns
netsh winsock reset all
netsh int ip reset all
shutdown -r -t 1
del %0


Close any open applications. Right-click on flush.bat and choose to Run as Administrator. Your computer will reboot itself.

Now download TFC.exe (Temporary File Cleaner) to your desktop, from this location:
TFC - Temp File Cleaner by OldTimer - Geeks to Go Forums

Ensure all applications are closed. Right-click on TFC.exe and choose to Run as Administrator.
Click Start to run TFC - note:

  • do not interrupt it! Let it finish completely.

  • if TFC prompts you to reboot, then do so immediately.

  • once finished, if you were not prompted to reboot, reboot anyway

Once rebooted, perform an online scan using the ESET online scanner:
ESET Online Virus Scanner | ESET

Report back on anything it finds.

Regards,
Golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
Reinstall your browser.
:sarc:

Try the following please:

Copy the following text exactly as shown into a new instance of Notepad, and save it as flush.bat on your desktop.

@Echo on
pushd\windows\system32\drivers\etc
attrib -h -s -r hosts
echo 127.0.0.1 localhost>HOSTS
attrib +r +h +s hosts
popd
ipconfig /release
ipconfig /renew
ipconfig /flushdns
netsh winsock reset all
netsh int ip reset all
shutdown -r -t 1
del %0


Close any open applications. Right-click on flush.bat and choose to Run as Administrator. Your computer will reboot itself.

Now download TFC.exe (Temporary File Cleaner) to your desktop, from this location:
TFC - Temp File Cleaner by OldTimer - Geeks to Go Forums

Ensure all applications are closed. Right-click on TFC.exe and choose to Run as Administrator.
Click Start to run TFC - note:

  • do not interrupt it! Let it finish completely.

  • if TFC prompts you to reboot, then do so immediately.

  • once finished, if you were not prompted to reboot, reboot anyway

Once rebooted, perform an online scan using the ESET online scanner:
ESET Online Virus Scanner | ESET

Report back on anything it finds.

Regards,
Golden

ok. will use your methods 1st.

now using the ESET scanning the file.
 
Last edited:

My Computer

OS
Windows 7 Professional 32bit
another update. seems like only my first user in the google chrome have the problem. the second user seem to be not infected by the malware.

and when everytime i try to key in an word on the google search bar or the google chrome address bar. the google chrome will crush and shut down itself.
 

My Computer

OS
Windows 7 Professional 32bit
Reinstall your browser.
:sarc:

Try the following please:

Copy the following text exactly as shown into a new instance of Notepad, and save it as flush.bat on your desktop.

@Echo on
pushd\windows\system32\drivers\etc
attrib -h -s -r hosts
echo 127.0.0.1 localhost>HOSTS
attrib +r +h +s hosts
popd
ipconfig /release
ipconfig /renew
ipconfig /flushdns
netsh winsock reset all
netsh int ip reset all
shutdown -r -t 1
del %0


Close any open applications. Right-click on flush.bat and choose to Run as Administrator. Your computer will reboot itself.

Now download TFC.exe (Temporary File Cleaner) to your desktop, from this location:
TFC - Temp File Cleaner by OldTimer - Geeks to Go Forums

Ensure all applications are closed. Right-click on TFC.exe and choose to Run as Administrator.
Click Start to run TFC - note:

  • do not interrupt it! Let it finish completely.

  • if TFC prompts you to reboot, then do so immediately.

  • once finished, if you were not prompted to reboot, reboot anyway

Once rebooted, perform an online scan using the ESET online scanner:
ESET Online Virus Scanner | ESET

Report back on anything it finds.

Regards,
Golden

i have try your methods. but the result is still the same. no luck. thank you for your help.
 

My Computer

OS
Windows 7 Professional 32bit
Did you useWindows Defender Offline as per Borg post #2??
Two other things.
1. Removing it using Safe Mode.
2. Internet Options/Connection/Lan and make sure proxy is not checked.
I just went through something like this and many times a anti malware don't find it because it's not considered malware. It can also be a add on in your browser. Something like, (Price watcher, coupon saver) or the likes. Completely remove all browsers except I.E. Then set I.I. to default. Nothing added what so ever. If your okay you can add more browser of your choice.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
i have try your methods. but the result is still the same. no luck. thank you for your help.

I'm guessing you ran ESET? What did it find. Try post some more detail in your replies.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
Back
Top