Wikiposts
Search
Computer/Internet Issues & Troubleshooting Anyone with questions about the terribly complex world of computers or the internet should try here. NOT FOR REPORTING ISSUES WITH PPRuNe FORUMS! Please use the subforum "PPRuNe Problems or Queries."

search hijacks

Thread Tools
 
Search this Thread
 
Old 6th Sep 2008, 16:25
  #1 (permalink)  
Thread Starter
 
Join Date: Jun 2004
Location: 8 dme 06L EGCC
Posts: 164
Likes: 0
Received 0 Likes on 0 Posts
search hijacks

A strange one,
I'm really having fun with this PC lately.
Homepage is Google,
..fine
I do a search..
..Fine
I click on one of the return matches to the search..
I get a "ringtones4u" or other such marketing website in my browser.
I have run a superantispyware, and Nod32 antivirus/malware scan which return nothing.
Anyone had this, I expect not, seems I'm having a bad weekend.
Devlin Carnet is offline  
Old 6th Sep 2008, 16:55
  #2 (permalink)  
Spoon PPRuNerist & Mad Inistrator
 
Join Date: Sep 2003
Location: Twickenham, home of rugby
Posts: 7,390
Received 247 Likes on 165 Posts
Search is your friend! There was a thread on this not long ago - perhaps this may be of use.

SD
Saab Dastard is offline  
Old 8th Sep 2008, 08:06
  #3 (permalink)  
Thread Starter
 
Join Date: Jun 2004
Location: 8 dme 06L EGCC
Posts: 164
Likes: 0
Received 0 Likes on 0 Posts
Thanks Saab, that does look like the same problem.
Devlin Carnet is offline  
Old 8th Sep 2008, 11:47
  #4 (permalink)  
Recidivist
 
Join Date: Jun 2005
Location: Essex, UK
Posts: 1,239
Likes: 0
Received 0 Likes on 0 Posts
Be very careful when searching at the moment, especially searching for AV stuff.

An item on R4 You & Yours suggests that such a search can currently land you with exactly what you're NOT looking for!
frostbite is offline  
Old 8th Sep 2008, 16:35
  #5 (permalink)  
Thread Starter
 
Join Date: Jun 2004
Location: 8 dme 06L EGCC
Posts: 164
Likes: 0
Received 0 Likes on 0 Posts
Thanks for the heads up Frostbite, A little late for me though.
I cant believe any of the better AV/anti spyware programs cant find it though.
Devlin Carnet is offline  
Old 9th Sep 2008, 15:57
  #6 (permalink)  
 
Join Date: Feb 2006
Location: Slightly left of centreline
Posts: 111
Likes: 0
Received 0 Likes on 0 Posts
I have just spent a day trying to recover from a similar attack to the one mentioned above. Tried 4 different anti spyware applications but the problem remained. In desperation I rang a friend in the computer business to see if he had any ideas how to proceed and he emailed me a small application called combofix. Unzipped it to the desktop, ran it and 20 minutes later my machine is back to normal. Cracking little program. It might just solve your problem. Its freeware and readily available on the net.

Good luck

Raven
Raven30 is offline  
Old 10th Sep 2008, 08:07
  #7 (permalink)  
Thread Starter
 
Join Date: Jun 2004
Location: 8 dme 06L EGCC
Posts: 164
Likes: 0
Received 0 Likes on 0 Posts
Raven,
Yep, you are spot on, I'd already found combofix and it cleaned the infestation out, it was tdssdata - a trojan agent. that was the problem.
It mentioned in the log about it being a rootkit.
Thanks for the info though.
Devlin Carnet is offline  
Old 10th Sep 2008, 10:02
  #8 (permalink)  
 
Join Date: Feb 2006
Location: Slightly left of centreline
Posts: 111
Likes: 0
Received 0 Likes on 0 Posts
Obviously the same trojan that zapped me as those were the files reported on my machine!
Raven30 is offline  

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



Contact Us - Archive - Advertising - Cookie Policy - Privacy Statement - Terms of Service

Copyright © 2024 MH Sub I, LLC dba Internet Brands. All rights reserved. Use of this site indicates your consent to the Terms of Use.