This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Browser hijacked by Tradeadexchange.com, gopadsell.com [Closed]

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Dear Most Exalted Malware Gurus,

 

Windows 7,64 bit, Chrome browser hijacked by Tradeadexchange.com, gopadsdell.com and newpopad.com pop ups with unfailing regularity. Observed that pop-up appears when side scroll bar is operated. The following have been tried with no avail.

1. Uninstalling and reinstalling Chrome

2. Resetting Chrome settings

3. Chrome Cleanup Tool

4. No sign of any unwanted extensions in Chrome, WindowsTaskManager,

5. Using Firefox

6. AdwCleaner, Avast-browser-cleanup, ESET Online Scanner, Hitman Pro, Junkware Removal Tool, RKill, Malwarebytes Anti-malware, Malwarebytes Anti-Exploit.

Malwarebytes Anti-malware Home manages to stop the pop-up from appearing, but a new window appears all the same declaring 'Mawarebytes has managed to stop the pop up', annoying just the same.

7. The Farber Recovery Scan Tool FRST.txt with the Addition.Txt and the Shortcut.Txt are attached to this post.

8. Likewise, ran the aswMBR tool and HijackThis and the .Txt files are attached here.

9. Ditto with Combofix.txt, Zoek.txt and GMER.txt files.

Please advise. 

Methinks there should be a law that holds malware creators accountable! If not, a special hell awaits them!

 

Warm Regards

RavindraNath

 

 

:welcome:

 

You have run so many scans and programs , sometimes its best just to bite the bullet and post a FRST log so we can see where we are at. A heads up on some of our tools you may see online, as a helper I am updated about flaws in them that can cause problems but the public is not.  I prefer that you just copy and paste any logs we ask for into this thread in lieu of attaching them. 

 

All our tools and programs that we use to clean malware runs more efficiently from the desktop in lieu of being buried in some folder. So go here Y:\MUNDANE\MALWARE and look for FRST64, right click on it and select CUT, come back to your desktop and right click on a blank space and select PASTE

 

Then lets start from the beginning, open up FRST64 on your desktop by right clicking it and select RUN AS ADMINISTRATOR , be sure to checkmark ADDITIONS, leave everything else at default, run a new scan and post both the FRST and Additions logs. 

 

 

 

Then also run this program and lets see what it finds

 

 
 
Download CKScanner by askey127 from Here & save it to your Desktop.
  •  
  • Doubleclick CKScanner.exe then click Search For Files
  • When the cursor hourglass disappears, click Save List To File
  • A message box will verify the file saved
  • Please Run this program only once
  • Double-click the CKFiles.txt icon on your desktop then copy/paste the contents in your next reply
 
 
 
 
Copy and paste the FRST, Additions and CKScanner log back into this thread, if they wont all fit take as many posts as you need to post them all

 

 

 

 

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI