Welcome to What the Tech! ( Log In | Register ) What tech support ought to be... Fast, friendly and free! Once registered - you'll have the ability to post your question in the appropriate forum below. Additionally, if you can assist another member by sharing your tech knowledge, please post a reply! Best of all - Registration and all assistance is FREE! Once you've completed registration, simply choose the appropriate forum below, click on the "new topic" button, and post your question! What are you waiting for? Register today! *Registered users see NO ADVERTISING.
![]() ![]() |
Jun 23 2009, 11:44 AM
Post
#1
|
|
|
New Member ![]() Group: New Member Posts: 1 Joined: 22-June 09 Member No.: 86,382 Operating System: windows xp |
When I use a web browser I consistently being redirected to other pages, always seeing the same ad in different pages, I did use Panda software to detect the virus, it found one, but it failed to removed it. This is the name and location, globalroot\systemroot\system32\msivxrxdytqxwnkvptnvlrkktvdjkymuanvt.dll. I did try to run HijackThis but it does not load, even if Safemode HijackThis will not run.
|
|
|
|
Jun 26 2009, 03:59 AM
Post
#2
|
|
![]() SuperHelper Group: Classroom Teacher Posts: 5,027 Joined: 28-April 07 From: UK Member No.: 69,799 Operating System: Windows XP (Professional), Windows Vista (Home Business), Windows 7 (Ultimate), Ubuntu Linux |
Hi,
Sounds like you've got a Rootkit. Please delete your existing copy of ComboFix. Please download ComboFix to your desktop from one of these locations. You must rename it before saving it. Save it to your desktop. Link 1 Link 2 Link 3 ![]() ![]() IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here
As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures. ![]()
![]()
When finished, it shall produce a log for you. Please include the C:\ComboFix.txt in your next reply. Notes: 1. Do not mouse-click Combofix's window while it is running. That may cause it to stall. 2. Do not "re-run" Combofix. If you have a problem, reply back for further instructions. 3. ComboFix may reset a number of Internet Explorer's settings, including making IE the default browser. 4. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you -- please advise. 5. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine. |
|
|
|
Jul 1 2009, 03:34 AM
Post
#3
|
|
![]() SuperHelper Group: Classroom Teacher Posts: 5,027 Joined: 28-April 07 From: UK Member No.: 69,799 Operating System: Windows XP (Professional), Windows Vista (Home Business), Windows 7 (Ultimate), Ubuntu Linux |
Due to inactivity this topic will be closed.
If you need help please start a new thread and post a new HJT log |
|
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
20 | toyotomi | 372 | Today, 11:16 AM Last post by: CatByte |
|||
![]() |
3 | techmbr08 | 90 | Today, 05:53 AM Last post by: LDTate |
|||
![]() |
17 | Granny Mouse | 259 | Today, 05:04 AM Last post by: CatByte |
|||
![]() |
2 | Ceil | 38 | Today, 05:02 AM Last post by: CatByte |
|||
|
Time is now: 7th November 2009 - 02:40 PM |