HELP!! Google redirect Virus

cece

New member
Local time
10:15 AM
Messages
9
A few weeks ago I got a virus and my computer got fixed. Since then it seems that I have the Google redirect Virus but when I try to do the fix I found online I can't find the file. Furthermore when I downloaded a new software that would find the Google Redirect Virus and get rid of it it kept giving me weird error messages. Now my volume does not work even though I've gone to the control panel and make sure that the volume works fine. I don't pay for cable so this is the only option for watching DVD's or movies from HULU. I am ready to smash this machine. Please help - I can't afford $135 an hour for a tech to fix this...
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
I remember my helping a friend over the phone with a virus (can't remember what type). We found an entry for it in the start-up items and unchecked it. After restarting the computer the volume no longer worked. unfortunately, I never did figure out exactly what was going on because he then told me he had a warranty through Best Buy, and I know a guy that works at one near us that is a lot better at this kind of stuff then me.

The main thing to remember is that there is no "the" google redirect virus. I have seen many different viruses that did it, sometimes along with other symptoms. What kind of virus did you have before? Do you have an AV installed? AVG and MSE (Microsoft Security Essentials) are both free and work well. MSE is better in my opinion. If you don't have a AV at all, get one of those two.

EDIT: since you have a redirect virus I could provide a link directly to the download for which ever AV you want and anything else you need.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
Hi, cece. Welcome to Seven Forums.

Let's hope it isn't the TDL3 Rootkit which is often described at the Google Redirect Virus.

Please download Malwarebytes' Anti-Malware to your desktop.


  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, be sure Quick scan is selected, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, EXCEPT items in System Restore as shown in this sample:
    MBAM_SR.png
  • Click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location. The log can also be found here on Windows XP: C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt and C:\Users\UserName\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt on Windows Vista and Windows 7.
  • Please post contents of that file in your next reply.
 

My Computer My Computer

OS
Windows 7 & Windows Vista Ultimate
The last two or three times I fixed a Google redirect virus on an xp computer, MalwareBytes would either not install or not run, in cases of it already having been installed prior to infection.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
If .exe files will not run, it will be necessary to run RKill first. Following are those instructions.

Please download rkill from one of the following links and save to your Desktop:

One, Two,Three or Four

  • Double-click rkill to run.
  • A command window will open then disappear upon completion, this is normal.
  • Please leave rkill on the Desktop until otherwise advised.
  • Do NOT restart your computer after running rkill as the malware program(s) will start again.


Notes:

If you you receive security warnings about rkill, please ignore and allow the download to continue.

Note: If MBAM will not install from the normal download site, try the random installer: You can also get the "random" installer from here:
http://mbam.malwarebytes.org/program/random-installer.php

It runs as explorer.exe and the Window name is random.
 

My Computer My Computer

OS
Windows 7 & Windows Vista Ultimate
Thanks but

Hello and thanks for the help.
I have Av and super anti syware and I do have Malware. I have run scans repeatly with Super amd Malware. Super only detects Adware and Malware does not detect anything. Tonight it was the volume not working and it is not on the taskbar either. It is something new everyday.
Thanks for your help. Please continue : )
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
One more thing

I forgot to mention that I had done some research inline and found that there is a connection between the volume not working and Adobe Flash. So I tried to uninstall it and it would not - is this something?
Thank you both Corrine and Petey7 - I really appreciate your help. cece
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
I ran the Rkill and this is the note I got:

This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Ran as Cee on 07/19/2010 at 21:50:27.

Processes terminated by Rkill or while it was running:

C:\Documents and Settings\Cee\Local Settings\Temporary Internet Files\Content.IE5\WKG4VFQM\rkill[1].exe

Rkill completed on 07/19/2010 at 21:50:35.
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP

My Computer My Computer

Computer Manufacturer/Model Number
ATX Custom Build 2012
OS
Windows 7 Enterprise x64 SP1
CPU
Intel Core i3-2100 @ 3.10GHz
Motherboard
Intel DH67CL desktop ATX
Memory
10 GB DDR3
Graphics Card(s)
Asus EAH5450 series (Radeon)
Monitor(s) Displays
Samsung SyncMaster 226BW, Samsung Syncmaster P2450H
Screen Resolution
226BW: 1680 x 1050 & P2450H: 1920 x 1080
Hard Drives
Western Digital 320 GB sata (boot), Samsung 640 GB sata, Seagate 2 TB sata (data)
PSU
Cooler Master Extreme Power Plus 500W
Case
Thermaltake V3 Black Edition
Cooling
stock cooling with added intake fan
Keyboard
HP Wireless Elite Keyboard Wireless Keyboard
Mouse
Microsoft Touch
Internet Speed
Comcast Cable business class <=18Mb {averages 12Mb}
Other Info
Optical drives: LG SuperMulti Blue, HP DVD 1260T
Other: Kensington Bluetooth Receiver
Network: Buffalo Wireless N USB, DLink N router/DLink Ethernet Switch/DLink Xtreme N wireless bridge
Printer: HP Photosmart Plus, HP Officejet Pro 8600 Plus
PCs: HP dv6-3040us (7 x64 SP1), HP DM4-2165dx (7 x64 SP1), HP Pavilion zv6130us (7 x86), Apple Macbook Air (Lion)
************
I'm a little confused on one point. Did you say that Superantispyware only capable of detecting adware, or did you say that it had detected adware while scanning? Adware can easily be the cause of redirects with any search engine and browser combo.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
Clean install

HI - Thanks - actually you are the second person that told me that I need to do a clean install. When I purchased the computer I did not get the restore disks. This is windows XP home edition. Where do I locate a restore disk?
Thanks!
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
it had detected adware while scanning-actually at the very beginning of the scan.
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
it picked up adware while it was scanning
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
the adware needs to be removed. Also, it is a good idea to turn off system restore at this point *ducks out of the way of thrown objects*. Sometimes a restore point is made after a computer is infected and makes removing of the virus/spyware/adware nearly impossible. If after taking those steps the problem is still occurring, you can still buy XP online for less than what it would cost to have a professional fix the PC. If you live in the US, I can give you link to where they have XP SP3 Home for $100.

EDIT: forgot to mention that there should be a xp product key some where on your computer. If so, see if any friends or neighbors have a copy of XP. As long as you have a product key, it does not matter what disc you install from.
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
You may have to load Malwarebytes on a thumb drive and run it from there - another one we recently tried was avast - which actually found some malware that malwarebytes didn't! Like Petey7 said - there is no 'Google redirect virus' There are, however - hacks that will place a bogus .htaccess file on webservers that will redirect traffic from Google searches to specific malware loads that will trick you into downloading malware "...in order to get rid of malware"
 

My Computer My Computer

OS
Win7 HP/Win7 Pro/Win7 Ult
More work

Hey all

1st: I do have the product code. I live in Vermont - so yes I would love the link to purchase the restore disc

I'll try everything that you have suggested.

I'll keep you posted. Thanks so much!!
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows XP
It's not a "restore disc," it is a full, brand new copy of Windows with a new product key. I think you might have misunderstood me before so I will try to rephrase. As long as you have a product key, you can use ANY XP Home disc to reinstall Windows, as long as you use that product key. So if a friend or family member happens t have a disc, no need to buy it. I think having the disc would make things easier in the future, so I'll give you the link. Be aware that unlike a restore disc, a fresh copy of windows will not reinstall your drivers. They must be downloaded from the Dell website.

Newegg.com - Microsoft Windows XP Home Edition SP3 English 1 Pack for System Builders DSP OEI CD - Operating Systems
 

My Computer My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba P775-S7100
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core i5-2450M @2.5 GHz
Memory
6 GB DDR3 1333MHz
Graphics Card(s)
Intel HD 3000
Monitor(s) Displays
Built-in 17.3" LED; 22" Insignia NS-L22Q-10A
Screen Resolution
1600x900; 1360x768
Hard Drives
750 GB Hitachi
1TB Seagate FreeAgent External
Internet Speed
Verizon DSL Speed(Down/Up): 3360 Kbps / 800 Kbps
Antivirus
MSE and MBAM Pro
Browser
IE10
Hard Boot

Cece, welcome to Windows 7 Support forums. In order to remove the virus we suggest the following procedure:
  1. Perform a hard boot and use the "SAFE" boot option.
  2. Once you are in safe boot your desktop will appear.
  3. Using your choice of AV, (I prefer Malaware) perform a full scan.
  4. Review the log and perform appropriate counter measure.
Another option would be for you to identify the time or date that you recognised that a virus presented itself and working backwards perform a restore to a prior date.
 

My Computer My Computer

Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 7600 1 X64
CPU
AMD PHENOM II X 550 PROCESSOR 3.1 ghz
Motherboard
ASUS M4A78-TE
Memory
Corsair 4 gig ddr 3
Graphics Card(s)
ati radeon 3300
Sound Card
ati hd
Monitor(s) Displays
syncmaster 2033sw
Screen Resolution
1600X900 60 hz refresh
Hard Drives
twin_seagates SATA's 1 TB & 500 Gig, hitachi_slimline 160 gig
PSU
antec_550 watt
Case
cooler master GLite
Cooling
stock_heat sink
Internet Speed
20mbs up/ 1.5mbs down
Other Info
favorite child "stewie"
favorite dog "brian"
This log file is located at C:\rkill.log.
Please post this only if requested to by the person helping you.
Otherwise you can close this log when you wish.
Ran as Cee on 07/19/2010 at 21:50:27.

Processes terminated by Rkill or while it was running:

C:\Documents and Settings\Cee\Local Settings\Temporary Internet Files\Content.IE5\WKG4VFQM\rkill[1].exe

Rkill completed on 07/19/2010 at 21:50:35.

Hi, cece.

As I said above, RKill is to be run only if you are unable to run the Malwarebytes .exe file.

The reason I suggested that you scan your computer with MBAM is that it does detect versions of the TDSS Rootkit, which some have referred to as the "Google Redirect Virus" as you did. I am hoping that is not the case but won't know how to further advise you unless you provide the log from MBAM.

Note: Do not clear System Restore at this point, as suggested by someone else. Although infected, you still have a "working computer". This is particularly important since it appears you are following all suggestions being thrown at you. Should something go wrong in the cleanup process, you will be up the proverbial creek. System Restore can and should be cleared after your computer is clean.
 

My Computer My Computer

OS
Windows 7 & Windows Vista Ultimate
Back
Top