Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Resolved HJT Threads Resolved spyware and popup issues.

 
 
LinkBack Thread Tools
Old 11-17-2008, 02:12 PM   #1 (permalink)
Registered User
 
Join Date: Nov 2008
Posts: 5
OS: Vista Home Premium SP1


[SOLVED] Google Search Links Redirect Me to Unrequested Website

The browser I am using is Internet Explorer 7. The problem is every time I search for something on Google the links I get sometimes lead me to a totally different page that the link suggested. For example when I search for "how to tie a shoe" on Google, I click on the first link that shows up then it redirects me to a website that has nothing to do with what I searched for! I have attached the files needed.

DDS.txt


DDS (Version 1.0) - NTFSx86
Run by Ben at 17:01:53.39 on Mon 11/17/2008
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.3070.1808 [GMT -5:00]

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\PnkBstrB.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\System32\Drivers\WTSRV.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Windows\system32\schtasks.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Zune\ZuneLauncher.exe
C:\Windows\system32\jusched.exe
C:\WINDOWS\System32\WTClient.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Ben\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Ben\Desktop\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe

============== Psuedo HJT Report ===============

uStart Page = hxxp://www.google.com/
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=74&bd=Pavilion&pf=desktop
uInternet Settings,ProxyOverride = *.local
BHO: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - c:\program files\avg\avg8\avgssie.dll
BHO: {58E525D9-DF76-3665-93EA-B368507BA77B} - c:\windows\system32\xwr28640.dll
BHO: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\progra~1\micros~3\office12\GRA8E1~1.DLL
BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.6.0_01\bin\ssv.dll
BHO: {AE7CD045-E861-484f-8273-0445EE161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\4.1.805.4472\swg.dll
BHO: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
uRun: [AlcoholAutomount] "c:\program files\alcohol soft\alcohol 120\axcmd.exe" /automount
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [hpsysdrv] c:\hp\support\hpsysdrv.exe
mRun: [IAAnotif] "c:\program files\intel\intel matrix storage manager\Iaanotif.exe"
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [SunJavaUpdateReg] "c:\windows\system32\jureg.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [Zune Launcher] "c:\program files\zune\ZuneLauncher.exe"
mRun: [WTClient] WTClient.exe
mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam10\QuickCam10.exe" /hide
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [Adobe Acrobat Speed Launcher] "m:\programs\adobe acrobat\acrobat\Acrobat_sl.exe"
mRun: [Acrobat Assistant 8.0] "m:\programs\adobe acrobat\acrobat\Acrotray.exe"
mRunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_01\bin\ssv.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\progra~1\micros~3\office12\GR99D3~1.DLL
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
AppInit_DLLs: avgrsstx.dll
SEH: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\progra~1\micros~3\office12\GRA8E1~1.DLL

============= SERVICES / DRIVERS ===============

R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys
R2 adfs;adfs;c:\windows\system32\drivers\adfs.sys
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe
R2 DQLWinService;DQLWinService;"c:\program files\common files\intel\inteldh\nms\adpplugins\DQLWinService.exe"
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0;c:\program files\common files\nero\nero backitup 4\NBService.exe
R2 Viewpoint Manager Service;Viewpoint Manager Service;"c:\program files\viewpoint\common\ViewpointService.exe"
R3 PTSimBus;PenTablet Bus Enumerator;c:\windows\system32\drivers\PTSimBus.sys
S2 IntelDHSvcConf;Intel DH Service;"c:\program files\intel\inteldh\intel media server\tools\IntelDHSvcConf.exe"
S3 GameConsoleService;GameConsoleService;"c:\program files\wildgames\game console - wildgames\GameConsoleService.exe"
S3 PTSimHid;PenTablet Simulated HID MiniDriver;c:\windows\system32\drivers\PTSimHid.sys
S3 Steam Client Service;Steam Client Service;c:\program files\common files\steam\SteamService.exe /RunAsService

=============== Created Last 30 ================

2008-11-17 16:28 250 a------- c:\windows\gmer.ini
2008-11-16 17:16 <DIR> --d----- c:\program files\Alcohol Soft
2008-11-16 14:47 <DIR> --d----- c:\program files\Lavasoft
2008-11-16 14:47 <DIR> --d----- c:\program files\common files\Wise Installation Wizard
2008-11-16 14:38 <DIR> --d----- c:\program files\HyCam2
2008-11-16 13:48 <DIR> --d----- c:\program files\Trend Micro
2008-11-16 01:08 0 a---h--- c:\windows\SwSys2.bmp
2008-11-16 01:08 0 a---h--- c:\windows\SwSys1.bmp
2008-11-16 00:33 <DIR> --d----- c:\windows\ERUNT
2008-11-15 22:28 <DIR> --d----- c:\program files\IObit
2008-11-15 22:04 <DIR> --d----- c:\program files\PixPlant
2008-11-15 22:04 2,335,803 a------- c:\windows\system32\xa27633985.exe
2008-11-15 22:04 2,335,803 a------- c:\windows\system32\xa27633627.exe
2008-11-15 22:04 167,936 a------- c:\windows\system32\xwr28640.dll
2008-11-15 22:04 167,936 a------- c:\windows\system32\wr28640.dll
2008-11-15 16:50 0 a------- c:\windows\system32\convert
2008-11-15 16:23 <DIR> --d----- c:\program files\Alex Feinman
2008-11-15 15:19 <DIR> --d----- c:\programdata\LightScribe
2008-11-15 15:19 <DIR> --d----- c:\progra~2\LightScribe
2008-11-15 15:03 4,767 a------- c:\windows\Irremote.ini
2008-11-15 14:46 <DIR> --d----- c:\program files\Nero
2008-11-15 14:45 <DIR> --d----- c:\programdata\Nero
2008-11-15 14:45 <DIR> --d----- c:\progra~2\Nero
2008-11-14 20:44 <DIR> --d----- c:\program files\Atmosphir Private BETA 1.2
2008-11-13 20:09 <DIR> --d----- c:\program files\Master Of Defense
2008-11-12 07:42 212,480 a------- c:\windows\system32\drivers\mrxsmb10.sys
2008-11-12 07:42 1,191,936 a------- c:\windows\system32\msxml3.dll
2008-11-12 07:42 1,334,272 a------- c:\windows\system32\msxml6.dll
2008-11-11 22:20 151,552 a------- c:\windows\system32\nvRegDev.dll
2008-11-08 17:49 237,056 -------- c:\windows\system32\mwgfx24.dll
2008-11-08 17:49 118,784 -------- c:\windows\system32\mwgfxvb.dll
2008-11-08 17:49 28,672 -------- c:\windows\system32\mwgfxcopy.exe
2008-11-08 17:49 188,928 -------- c:\windows\system32\mwgfx.dll
2008-11-08 17:49 256,512 -------- c:\windows\system32\mwdlg.dll
2008-11-08 17:49 104,960 -------- c:\windows\system32\mwdds.dll
2008-11-08 17:49 49,152 -------- c:\windows\system32\mwddsvb.dll
2008-11-08 17:49 56,832 -------- c:\windows\system32\mwace.dll
2008-11-08 17:49 27,136 -------- c:\windows\system32\mwacevb.dll
2008-11-08 17:18 <DIR> --d----- c:\programdata\Autodesk
2008-11-08 17:18 <DIR> --d----- c:\progra~2\Autodesk
2008-11-08 17:14 <DIR> --d----- c:\program files\common files\Autodesk Shared
2008-11-08 17:14 <DIR> --d----- c:\program files\Autodesk
2008-11-08 17:13 2,297,552 a------- c:\windows\system32\d3dx9_26.dll
2008-11-08 16:18 <DIR> --d--r-- c:\users\ben\Oblivion Modding
2008-11-07 18:05 <DIR> --d----- c:\program files\PyFFI
2008-11-07 18:04 <DIR> --d-h--- C:\Python25
2008-11-07 16:32 3,120 a------- c:\windows\system32\ALLFSAF6a.ocx
2008-11-07 16:32 <DIR> --d----- c:\programdata\Google
2008-11-06 19:50 <DIR> --d----- c:\programdata\2DBoy
2008-11-06 19:50 <DIR> --d----- c:\progra~2\2DBoy
2008-11-05 16:30 21,792,256 a------- c:\windows\system32\imageres.dll
2008-11-02 13:39 <DIR> --d--r-- c:\users\ben\That Guy Benz Website
2008-11-01 18:56 453,632 a------- c:\windows\system32\SetACL.ocx
2008-10-31 12:37 <DIR> --d----- c:\users\ben\appdata\roaming\Ashampoo
2008-10-31 12:37 <DIR> --d----- c:\programdata\ashampoo
2008-10-31 12:37 <DIR> --d----- c:\progra~2\ashampoo
2008-10-31 11:57 22,872 a----r-- c:\windows\system32\AdobePDFUI.dll
2008-10-29 22:18 <DIR> --d----- c:\program files\NVIDIA Corporation
2008-10-29 22:17 <DIR> --d----- c:\program files\NVIDIA nTune Performance Application
2008-10-29 17:04 <DIR> --d----- c:\programdata\TEMP
2008-10-29 17:04 <DIR> --d----- c:\programdata\Anvsoft
2008-10-29 17:04 <DIR> --d----- c:\progra~2\Anvsoft
2008-10-29 14:38 <DIR> --d----- c:\users\ben\appdata\roaming\Kodak
2008-10-29 00:48 443,392 a------- c:\windows\system32\win32spl.dll
2008-10-29 00:48 147,456 a------- c:\windows\system32\Faultrep.dll
2008-10-29 00:48 125,952 a------- c:\windows\system32\wersvc.dll
2008-10-28 19:46 <DIR> --d----- c:\program files\Kodak
2008-10-27 13:12 <DIR> --d----- c:\programdata\Lavasoft
2008-10-27 13:12 <DIR> --d----- c:\progra~2\Lavasoft
2008-10-27 01:25 428,544 a------- c:\windows\system32\EncDec.dll
2008-10-27 01:25 217,088 a------- c:\windows\system32\psisrndr.ax
2008-10-27 01:25 177,664 a------- c:\windows\system32\mpg2splt.ax
2008-10-27 01:25 293,376 a------- c:\windows\system32\psisdecd.dll
2008-10-27 01:25 80,896 a------- c:\windows\system32\MSNP.ax
2008-10-24 19:16 <DIR> --d----- c:\programdata\AppData
2008-10-24 19:16 <DIR> --d----- c:\progra~2\AppData
2008-10-24 07:38 356,352 a------- c:\windows\system32\RealMediaSplitter.ax
2008-10-24 07:01 <DIR> --d----- c:\program files\Microsoft GIF Animator
2008-10-24 06:28 <DIR> --d----- c:\programdata\Redfield
2008-10-24 06:28 <DIR> --d----- c:\progra~2\Redfield
2008-10-23 19:16 <DIR> --d----- c:\users\ben\appdata\roaming\WildTangent
2008-10-23 19:14 <DIR> --d----- c:\program files\WildGames
2008-10-23 18:44 <DIR> --d----- c:\users\ben\appdata\roaming\Acoustica
2008-10-23 18:43 57,344 a------- c:\windows\system32\Wnaspint.dll
2008-10-23 18:42 <DIR> --d----- c:\programdata\Acoustica
2008-10-23 18:42 <DIR> --d----- c:\progra~2\Acoustica
2008-10-22 21:15 <DIR> --d----- c:\users\ben\appdata\roaming\MAGIX
2008-10-22 21:10 <DIR> --d----- c:\programdata\MAGIX
2008-10-22 21:10 <DIR> --d----- c:\progra~2\MAGIX
2008-10-22 20:56 120,200 a------- c:\windows\system32\DLLDEV32i.dll
2008-10-22 20:54 700,416 a------- c:\windows\system32\mgxoschk.dll
2008-10-22 20:54 5,937 a------- c:\windows\mgxoschk.ini
2008-10-22 20:54 <DIR> --d----- c:\windows\system32\MAGIX
2008-10-21 21:35 <DIR> --d----- c:\programdata\FLEXnet
2008-10-21 21:22 <DIR> --d----- c:\program files\Adobe Media Player
2008-10-21 21:16 <DIR> --d----- c:\program files\common files\Macrovision Shared
2008-10-21 18:10 30,512 a------- c:\windows\system32\mdimon.dll
2008-10-21 18:05 <DIR> --d----- c:\program files\Microsoft Visual Studio 8
2008-10-19 01:05 <DIR> --d----- c:\program files\Switch Off

==================== Find3M ====================

2008-11-16 18:50 <DIR> --d----- c:\users\ben\appdata\roaming\LimeWire
2008-11-10 18:23 <DIR> --d----- c:\program files\Steam
2008-11-09 14:08 <DIR> --d----- c:\program files\common files\Steam
2008-11-07 18:11 <DIR> --d----- c:\program files\NifTools
2008-10-23 19:18 <DIR> --d----- c:\progra~2\WildTangent
2008-10-22 15:45 21,248 a------- c:\windows\help\oem\scripts\HPScript.exe
2008-10-21 22:25 <DIR> --d----- c:\progra~2\avg8
2008-10-18 16:43 <DIR> --d-h--- c:\progra~2\{0E8E33D8-193A-414A-A909-0F101A142D26}
2008-10-18 16:38 <DIR> --d----- c:\program files\Stardock Games
2008-10-16 18:04 <DIR> --d----- c:\users\ben\appdata\roaming\SPORE
2008-10-15 21:12 <DIR> --d----- c:\users\ben\appdata\roaming\Syntrillium
2008-10-04 14:01 <DIR> --d----- c:\program files\Darwinia
2008-10-01 22:49 827,392 a------- c:\windows\system32\wininet.dll
2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll
2008-09-30 16:22 <DIR> --d----- c:\program files\EA GAMES
2008-09-27 12:12 <DIR> --d----- c:\program files\SpeedFan
2008-09-26 14:31 103,736 a------- c:\windows\system32\PnkBstrB.exe
2008-09-26 14:31 66,872 a------- c:\windows\system32\PnkBstrA.exe
2008-09-26 13:09 <DIR> --d----- c:\progra~2\PopCap Games
2008-09-26 13:08 <DIR> --d----- c:\progra~2\Steam
2008-09-26 12:07 <DIR> --d----- c:\program files\Silent Hill
2008-09-26 12:06 720,896 a------- c:\windows\iun6002ev.exe
2008-09-25 22:31 <DIR> --d----- c:\program files\Giant
2008-09-25 19:17 <DIR> --d----- c:\program files\DAEMON Tools Lite
2008-09-25 19:13 <DIR> --d----- c:\users\ben\appdata\roaming\DAEMON Tools
2008-09-25 19:13 <DIR> --d----- c:\program files\Zuma Deluxe
2008-09-25 17:04 <DIR> --d----- c:\program files\Bagatrix
2008-09-24 21:27 <DIR> --d----- c:\program files\Virtual Villagers
2008-09-24 21:25 <DIR> --d----- c:\progra~2\Trymedia
2008-09-24 20:50 <DIR> --d----- c:\program files\Virtual Villagers The Secret City
2008-09-24 20:37 <DIR> --d----- c:\program files\ReflexiveArcade
2008-09-24 20:22 <DIR> --d----- c:\program files\Virtual Villagers 2
2008-09-24 16:27 <DIR> --d----- c:\users\ben\appdata\roaming\PlayFirst
2008-09-24 16:27 <DIR> --d----- c:\progra~2\PlayFirst
2008-09-24 16:08 <DIR> --d----- c:\program files\Diner Dash 3-in-1
2008-09-22 17:11 <DIR> --d----- c:\program files\Multiwinia
2008-09-18 00:09 3,601,464 a------- c:\windows\system32\ntkrnlpa.exe
2008-09-18 00:09 3,549,240 a------- c:\windows\system32\ntoskrnl.exe
2008-09-17 21:16 2,032,640 a------- c:\windows\system32\win32k.sys
2008-09-16 17:18 <DIR> --d----- c:\progra~2\YoYoGames
2008-09-11 16:37 <DIR> --d----- c:\users\ben\appdata\roaming\The Complete Genealogy Reporter - FTB
2008-09-07 11:50 6,128 a------- c:\windows\system32\ealregsnapshot1.reg
2008-09-06 12:38 <DIR> --d----- c:\users\ben\appdata\roaming\SPORE Creature Creator
2008-09-03 17:51 <DIR> --d----- c:\progra~2\Electronic Arts
2008-08-28 16:35 101,888 a------- c:\windows\system32\ifxcardm.dll
2008-08-28 16:35 82,432 a------- c:\windows\system32\axaltocm.dll
2008-08-28 11:31 319,456 a------- c:\windows\DIFxAPI.dll
2008-08-28 11:28 <DIR> --d----- c:\users\ben\appdata\roaming\WinBatch
2008-08-27 21:58 <DIR> --d----- c:\users\ben\appdata\roaming\Auslogics
2008-08-27 18:15 669,184 a------- c:\windows\system32\pbsvc.exe
2008-08-27 18:14 <DIR> --d----- c:\progra~2\Media Center Programs
2008-08-27 14:39 <DIR> --d----- c:\progra~2\Stardock
2008-08-27 14:19 <DIR> --d----- c:\users\ben\appdata\roaming\InstallShield Installation Information
2008-08-27 13:51 <DIR> --d----- c:\progra~2\Viewpoint
2008-08-27 13:51 <DIR> --d----- c:\progra~2\acccore
2008-08-27 13:20 107,888 a------- c:\windows\system32\CmdLineExt.dll
2008-08-27 13:08 <DIR> --d----- c:\users\ben\appdata\roaming\GlarySoft
2008-08-27 05:49 139,661 a------- c:\windows\hpoins15.dat
2008-08-27 05:18 10,520 a------- c:\windows\system32\avgrsstx.dll
2008-08-27 04:38 61,440 a------- c:\windows\system32\winipsec.dll
2008-08-27 04:38 28,672 a------- c:\windows\system32\FwRemoteSvr.dll
2008-08-27 04:38 361,984 a------- c:\windows\system32\IPSECSVC.DLL
2008-08-27 04:38 272,896 a------- c:\windows\system32\polstore.dll
2008-08-27 04:35 2,048 a------- c:\windows\system32\tzres.dll
2008-08-27 04:27 6,656 a------- c:\windows\system32\kbd106n.dll
2008-08-27 04:27 988,216 a------- c:\windows\system32\winload.exe
2008-08-27 04:27 927,288 a------- c:\windows\system32\winresume.exe
2008-08-27 04:27 378,368 a------- c:\windows\system32\srcore.dll
2008-08-27 04:27 318,464 a------- c:\windows\system32\rstrui.exe
2008-08-27 04:27 46,592 a------- c:\windows\system32\setbcdlocale.dll
2008-08-27 04:27 40,960 a------- c:\windows\system32\srclient.dll
2008-08-27 04:27 19,000 a------- c:\windows\system32\kd1394.dll
2008-08-27 04:27 14,848 a------- c:\windows\system32\srdelayed.exe
2008-08-27 04:27 615,992 a------- c:\windows\system32\ci.dll
2008-08-27 04:26 295,936 a------- c:\windows\system32\gdi32.dll
2008-08-27 04:26 2,560 a------- c:\windows\apppatch\AcRes.dll
2008-08-27 04:25 14,848 a------- c:\windows\system32\wshrm.dll
2008-08-27 04:24 1,695,744 a------- c:\windows\system32\gameux.dll
2008-08-27 04:24 738,304 a------- c:\windows\system32\inetcomm.dll
2008-08-27 04:24 84,480 a------- c:\windows\system32\INETRES.dll
2008-08-27 04:24 1,314,816 a------- c:\windows\system32\quartz.dll
2008-08-27 04:08 <DIR> --d----- c:\progra~2\Symantec
2008-08-27 03:32 <DIR> --d----- c:\users\ben\appdata\roaming\Snapfish
2008-08-21 22:38 2,154,496 a------- c:\windows\apppatch\AcGenral.dll
2008-08-21 22:38 541,696 a------- c:\windows\apppatch\AcLayers.dll
2008-08-21 22:38 460,288 a------- c:\windows\apppatch\AcSpecfc.dll
2008-08-21 22:38 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2007-09-11 16:24 <DIR> --d----- c:\progra~2\PC-Doctor
2007-09-11 16:06 <DIR> --d----- c:\progra~2\Intel
2008-03-19 21:04 22 a--sh--- c:\windows\sminst\HPCD.SYS

============= FINISH: 17:02:10.32 ===============
Attached Files
File Type: txt Gmer.txt (42.1 KB, 2 views)
File Type: txt Attach.txt (10.2 KB, 1 views)
ThatGuyBenz is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Sponsored Links
Old 11-19-2008, 04:04 PM   #2 (permalink)
Analyst, Security Team
 
Katana's Avatar
 
Join Date: Nov 2007
Location: Manchester, UK
Posts: 1,204
OS: W2K SP4 + XP SP2 + Vista


Re: Google Search Links Redirect Me to Unrequested Website

Quote:
Please note that all instructions given are customised for this computer only, the tools used may cause damage if used on a computer with different infections.

If you think you have similar problems, please post a log in the HJT forum and wait for help.

Hello and welcome to the forums

My name is Katana and I will be helping you to remove any infection(s) that you may have.

Please observe these rules while we work:
  1. Please Read All Instructions Carefully
  2. If you don't understand something, stop and ask! Don't keep going on.
  3. Please do not run any other tools or scans whilst I am helping you
  4. Please continue to respond until I give you the "All Clear"
    (Just because you can't see a problem doesn't mean it isn't there)
If you can do those few things, everything should go smoothly

Please ensure that any USB/Flash/External drives are connected whilst we are cleaning your machine.

Please Note, your security programs may give warnings for some of the tools I will ask you to use.
Be assured, any links I give are safe

----------------------------------------------------------------------------------------

Information


Registry Cleaners

Re. Glary Registry Repair 3.0

I don't personally recommend the use of ANY registry cleaners.
Here is an excerpt from a discussion on regcleaners
Quote:
Most reg cleaners aren't "bad" as such, but they aren't perfect and even the best have been known to cause problems.
The point we are trying to make is that the risk of using one far outweighs any benefit.
If it does work perfectly you will not see any difference
If it doesn't work properly you may end up with an expensive doorstop.
http://forums.whatthetech.com/Regcleaner_t42862.html

----------------------------------------------------------- -----------------------------------------------------------

Step 1


Malwarebytes' Anti-Malware

Please download Malwarebytes' Anti-Malware to your desktop.
  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to
    • Update Malwarebytes' Anti-Malware
    • and Launch Malwarebytes' Anti-Malware
  • then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform full scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. please copy and paste the log into your next reply
    • If you accidently close it, the log file is saved here and will be named like this:
    • C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt

----------------------------------------------------------- -----------------------------------------------------------
Step 2

Download and Run ComboFix
  • Download ComboFix from one of these locations:
    ComboFix.exe 1
    ComboFix.exe 2
    ComboFix.exe 3
  • You must download it to and run it from your Desktop
  • Now STOP all your monitoring programs (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix.
  • Double click combofix.exe & follow the prompts.
  • When finished, it will produce a log. Please save that log to post in your next reply along with a fresh HJT log
  • Re-enable all the programs that were disabled during the running of ComboFix..

Note:
Do not mouse-click combofix's window while it is running. That may cause it to stall.

CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
ComboFix SHOULD NOT be used unless requested by a forum helper

----------------------------------------------------------- -----------------------------------------------------------
Step 3

Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system.

Please download JavaRa and unzip it to your desktop.

***Please close any instances of Internet Explorer (or other web browser) before continuing!***
  • Double-click on JavaRa.exe to start the program.
  • From the drop-down menu, choose English and click on Select.
  • JavaRa will open; click on Remove Older Versions to remove the older versions of Java installed on your computer.
  • Click Yes when prompted. When JavaRa is done, a notice will appear that a logfile has been produced. Click OK.
  • A logfile will pop up. Please save it to a convenient location.

Now download and install Java Runtime Environment (JRE) .

----------------------------------------------------------- -----------------------------------------------------------
Step 4

Logs/Information to Post in Reply
Please post the following logs/Information in your reply
  • Malwarebytes Log
  • CombofixLog
  • How are things running now ?

----------------------------------------------------------- -----------------------------------------------------------

Additional Notes



Your Adobe Acrobat Reader is out of date. Older versions have vulnerabilities that malware can use to infect your system.

Adobe Reader is a large program and uses unnecessary space.
If you prefer a smaller program you can get Foxit 2.0 from http://www.foxitsoftware.com/pdf/rd_intro.php << Recommended

There is a newer version of Adobe Acrobat Reader available.
  • Please go to this link Adobe Acrobat Reader Download Link
  • Click Download
  • On the right Untick Adobe Phototshop Album Starter Edition if you do not wish to include this in the installation.
  • Click the Continue button
  • Click Run, and click Run again
  • Next click the Install Now button and follow the on screen prompts

When the installation is complete go to Add/Remove Programs and uninstall all previous versions.
__________________
Katana is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 11-20-2008, 04:18 PM   #3 (permalink)
Registered User
 
Join Date: Nov 2008
Posts: 5
OS: Vista Home Premium SP1


Re: Google Search Links Redirect Me to Unrequested Website

Hi and sorry, I have already been helped by people at geekstogo.com, by the way the instructions you gave were very similar to the ones at geekstogo.com, but thanks anyways :] My redirect problem is gone now.
ThatGuyBenz is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
Old 11-21-2008, 01:35 AM   #4 (permalink)
Analyst, Security Team
 
Katana's Avatar
 
Join Date: Nov 2007
Location: Manchester, UK
Posts: 1,204
OS: W2K SP4 + XP SP2 + Vista


Re: Google Search Links Redirect Me to Unrequested Website

Thanks for letting me know
__________________
Katana is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Bookmark on Thread SoupReddit!
 


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 11:08 PM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84