Ran ComboFix And Now NOTHING WORKS Please Help.

NOTE: ComboFix will check to see if the Microsoft Windows Recovery Console is installed.***It's strongly recommended to have the Recovery Console installed before doing any malware Scan your computer with legitimate anti-malware software (ComboFix)

This is what was found in the register and deleted.Registry Values Infected:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\bak_XMLLookup (Hijacker.XMLLookup) -> Value: bak_XMLLookup -> Quarantined and deleted successfully.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\bak_Application (Hijacker.Application) -> Value: bak_Application -> Quarantined and deleted successfully.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations\bak_intl (Hijacker.intl)

June 7, 2011 at 11:41 PM Anonymous said... my problem is i can't find the hosts file. August 31, 2010 at 9:37 AM Math-Aids.Com said... I have tried running it in safe mode.

nothing worth noting for either of them. AVPFind.bat It should take a couple minutes to run. I am positive that the redirect virus is hijacking the PC by preventing it from ever reaching the real Google web site in the first place. I even downloaded the Google Pack with the Spyware Doctor, but it completely messed with my computer.

Copy & Paste the contents of the log in your next post please. Use CCleaner to remove unnecessary system/temp files and browser cache CCleaner is a freeware system optimization.

Check Local Area Network (LAN) settings a) Open Internet Explorer.

If your Control Panel is set to Category View, then double-click on Network and Internet Connections and then click on Network Connections at the bottom.

Super Malware Fighter - Major Dilemma Staff Member Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.

The TDSSKiller definitely did the trick. I have done all of this, run combofix, spybot, malwarebytes and still I have the redirect virus! Thank you for this advice. this content March 13, 2011 at 1:10 AM Anonymous said...

The cleaning process, once started, has to be completed. I ran the program and it seemed to work ok then when I switched accounts I was getting the redirect virus again. It makes me feel as if the virus is protecting itself.

  • tried some other websites' suggestions, and they actually made it worse.this site worked for me, thanks!tdsskiller and combofix February 13, 2011 at 5:36 PM Anonymous said...
  • Please include a link to your topic in the Private Message.
  • I have attached the combofix file.
  • CC cleaner did not solve itAVG anti-virus did not solve itcombofix DID solve it for me.Thank you.
If it does not, please manually reboot the machine yourself to ensure a complete clean. Scan your computer with legitimate anti-malware software.

Run msconfig.

Is this just a different breed of the same virus. Thanks,redgum54 Back to top BC AdBot (Login to Remove) BleepingComputer.com Register to remove ads #2 gringo_pr gringo_pr Bleepin Gringo Malware Response Team 136,771 posts OFFLINE Gender:Male Location:Puerto rico Local Your instructions were very easy to understand. Thank you very much.

please copy and paste the log into your next replyIf you accidentally close it, the log file is saved here and will be named like this:C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txtNote: Please print out these instructions, or copy them to a Notepad file.

Awesome instructions. i can do everything you said except change the hosts file. YAY!