Solved I think My Browsers Have Been Hijacked

Brucex64

New member
Member
Local time
10:36 PM
Messages
65
Location
Jackson, MS USA
I think my browser homepages may have been hijacked. When I start firefox, Chrome, or IE the first page is an address that begins with esurf.biz. Then I can go to any of my bookmarks but sometimes a spam page will also load.

How do I get rid of this?
 

My Computer My Computer

At a glance

Windows 7 Pro SP1Intel i7-47708gbNVIDIA GeForce GT640
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 Pro SP1
CPU
Intel i7-4770
Motherboard
Gigabyte B85M-D3H
Memory
8gb
Graphics Card(s)
NVIDIA GeForce GT640
Hard Drives
Samsung SSD 120gb
Seagate HDD 500gb
Antivirus
Microsoft Security Essentials
Browser
Firefox
can you try changing your homepage, if that does not work, then we know you'vebeen hijacked
 
Last edited:

My Computer My Computer

At a glance

Windows 7 Enterprise x64Intel i5 Dual Core
Computer type
Laptop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Enterprise x64
CPU
Intel i5 Dual Core
Screen Resolution
1366x768
Keyboard
built in Keyboard
Antivirus
System Centre Endpoint Protection
Browser
Google Chrome, Firefox and Internet Explorer
One of the best free tools for cleaning up your browsers is ADWCleaner. Be careful googling it, as fake versions do exist. Here is a good direct link. https://toolslib.net/downloads/viewdownload/1-adwcleaner/ After running it, you will likely still need to manually change your homepages back to whatever you wish. Warning: you will essentially be forced to reboot your computer after the cleaning completes.
 

My Computer My Computer

At a glance

Win7 Home Premium x64Intel Core i7 Extreme 990X @ 3.47GHz x616GB DDR3NVidia GeForce GTX460
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion Elite HPE-590t
OS
Win7 Home Premium x64
CPU
Intel Core i7 Extreme 990X @ 3.47GHz x6
Motherboard
PEGATRON CORPORATION 2A86
Memory
16GB DDR3
Graphics Card(s)
NVidia GeForce GTX460
Monitor(s) Displays
Samsung SyncMaster 2443ewx
Screen Resolution
1920x1200
Hard Drives
160 GB SSD @ 2 TB 7200 Internal
750 GB HP, 2 TB WD, 2 TB Samsung External & 3 TB G-Tech firewire external
Last night, I ran a scan with MS Security Essentials and it found nothing. I did try changing the homepage but it doesnt work. My homepage is actually still there, but the first thing it loads is the "malware" page, then if I hit the home icon it will go to my homepage. And intermittently while browsing another ad page will come up. This happens on all browsers.

Now, I ran ADW Cleaner and it did clean some stuff, but the browsers still act the same. :(
 

My Computer My Computer

At a glance

Windows 7 Pro SP1Intel i7-47708gbNVIDIA GeForce GT640
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 Pro SP1
CPU
Intel i7-4770
Motherboard
Gigabyte B85M-D3H
Memory
8gb
Graphics Card(s)
NVIDIA GeForce GT640
Hard Drives
Samsung SSD 120gb
Seagate HDD 500gb
Antivirus
Microsoft Security Essentials
Browser
Firefox
Update.... I ran MalwareBytes free edition and it cleaned a few more things. Now all the browsers open up to my homepage. So far I have not had any ad tabs pop up. It appears to be fixed but I'll keep an eye out for anything weird.
 

My Computer My Computer

At a glance

Windows 7 Pro SP1Intel i7-47708gbNVIDIA GeForce GT640
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 Pro SP1
CPU
Intel i7-4770
Motherboard
Gigabyte B85M-D3H
Memory
8gb
Graphics Card(s)
NVIDIA GeForce GT640
Hard Drives
Samsung SSD 120gb
Seagate HDD 500gb
Antivirus
Microsoft Security Essentials
Browser
Firefox
@ Zoloft

hi ... recently, i also got hit by esurf.biz but originally, i didn't really give it much thought as it only affected my internet explorer, opera and epic privacy browsers which i use for testing. my main browser is pale moon but that was fine.

however, over the last 24 hours, i've tried more 'cleaning' programs than i care to think of, none of which give any indication as far as i can see as to whether it's free or not. some of them took hours before the various results appeared on screen and it was only at that point that i discovered that it would only 'clean' if i bought it.

so ... a lot of time wasted!

the only programme that allowed me to get it to do its cleaning job (without paying) was YAC (Yet Another Cleaner). it seemed to be very thorough but after i rebooted, esurf.biz was still there.

ADWCleaner also wanted money after the scan but i thought i'd have another go. tried the link in your post but it gave me a '404 not found' result.

could you give me the full url path please and i'll try again.

........... and if that fails, i'll just have to re-format my c:\ drive ... unless anyone else has got any other good suggestions.

cheers & thanks in advance .......
 

My Computer My Computer

At a glance

W7Pro-64bitINTEL G4400 SKYLAKE 3.3GHZ 3MBCACHE LGA11512 X 8.00Gb DDR4 DIMMNVIDIA GeForce GT430
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom build based on Asus
OS
W7Pro-64bit
CPU
INTEL G4400 SKYLAKE 3.3GHZ 3MBCACHE LGA1151
Motherboard
ASUS H110M-PLUS INTEL SKT1151 (25-03-2017)
Memory
2 X 8.00Gb DDR4 DIMM
Graphics Card(s)
NVIDIA GeForce GT430
Sound Card
Included on-board MB
Monitor(s) Displays
HP 1530
Screen Resolution
1024 x 768
Hard Drives
C: 120Gb SANDISK SATA3 SSD+
D: 160Gb SAMSUNG SATA
E: 500Gb WESTEN DIGITAL SATA
PSU
500w
Case
ATX Micro Tower
Cooling
2 fans (incl 1 in PSU)
Keyboard
Logitech K120
Mouse
Logitech B100
Internet Speed
D/L 38.5Mb // U/L 8.3
Browser
Pale Moon 28.16
Other Info
LAN ... Realtek 811H Gigabit LAN Controller
tried the link in your post but it gave me a '404 not found' result.
hmm, thats odd.. I just tried the link and it worked fine.
 

My Computer My Computer

At a glance

Windows 7 Enterprise x64Intel i5 Dual Core
Computer type
Laptop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Enterprise x64
CPU
Intel i5 Dual Core
Screen Resolution
1366x768
Keyboard
built in Keyboard
Antivirus
System Centre Endpoint Protection
Browser
Google Chrome, Firefox and Internet Explorer

My Computer My Computer

At a glance

Windows 7 Ultimate 32bit SP1Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz4 GBATI Radeon HD 2600 Pro
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio

My Computer My Computer

At a glance

Windows 7 Ultimate 32bit SP1Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz4 GBATI Radeon HD 2600 Pro
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
ADW Cleaner was free for me to use also. I would recommend trying MalwareBytes. It worked this time and in past times too. They have a free version.
 

My Computer My Computer

At a glance

Windows 7 Pro SP1Intel i7-47708gbNVIDIA GeForce GT640
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 Pro SP1
CPU
Intel i7-4770
Motherboard
Gigabyte B85M-D3H
Memory
8gb
Graphics Card(s)
NVIDIA GeForce GT640
Hard Drives
Samsung SSD 120gb
Seagate HDD 500gb
Antivirus
Microsoft Security Essentials
Browser
Firefox
think i know where i went wrong when i got the '404' code re. adwcleaner. most of the time when i want to activate a link in an email or a web page etc., i copy & paste it into my browser for no other reason other than habit. this time, i failed to see that this one for adwcleaner was a shortened version of the url thus the error. when i just clicked on it, it quickly opened the correct page.

when i downloaded the same programme a couple of days ago, it acted very differently apart from having the same gui.
this time, it was very quick while it did its work but unfortunately after i rebooted a couple of times, it didn't manage to shift esurf.biz so i'm now resigned to re-format etc. at least, it will clear out all the junk including esurf and work a bit faster which i'm quite happy about.

by the way, the article on yac made interesting reading. i'll certainly avoid that in future.

many thanks for your various comments ... they're very much appreciated.
 

My Computer My Computer

At a glance

W7Pro-64bitINTEL G4400 SKYLAKE 3.3GHZ 3MBCACHE LGA11512 X 8.00Gb DDR4 DIMMNVIDIA GeForce GT430
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom build based on Asus
OS
W7Pro-64bit
CPU
INTEL G4400 SKYLAKE 3.3GHZ 3MBCACHE LGA1151
Motherboard
ASUS H110M-PLUS INTEL SKT1151 (25-03-2017)
Memory
2 X 8.00Gb DDR4 DIMM
Graphics Card(s)
NVIDIA GeForce GT430
Sound Card
Included on-board MB
Monitor(s) Displays
HP 1530
Screen Resolution
1024 x 768
Hard Drives
C: 120Gb SANDISK SATA3 SSD+
D: 160Gb SAMSUNG SATA
E: 500Gb WESTEN DIGITAL SATA
PSU
500w
Case
ATX Micro Tower
Cooling
2 fans (incl 1 in PSU)
Keyboard
Logitech K120
Mouse
Logitech B100
Internet Speed
D/L 38.5Mb // U/L 8.3
Browser
Pale Moon 28.16
Other Info
LAN ... Realtek 811H Gigabit LAN Controller
Back
Top