This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Malware Removal Forums

Google Redirect

47 min read

This thread's last reply is from September 27, 2011, 7:22 PM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

Hi allison.geers,

Please download aswMBR and save it to your Desktop.

  • Right click aswMBR.exe and select " Run as administrator " to run it.
  • Click the Scan button.
  • After a short while when the scan reports "Scan finished successfully", click Save log & save the log to your desktop.
  • Click OK > Exit.
  • Note: Do not attempt to fix anything at this stage!
  • Two files will be created, aswMBR.txt & a file named MBR.dat.
  • MBR.dat is a backup of the MBR(master boot record), do not delete it..
  • I strongly suggest you keep a copy of this backup stored on an external device.
  • Copy & Paste the contents of aswMBR.txt into your next reply.
aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-09-20 08:10:35
-----------------------------
08:10:35.708 OS Version: Windows x64 6.1.7601 Service Pack 1
08:10:35.708 Number of processors: 2 586 0x1706
08:10:35.710 ComputerName: ALLISONRENEE-PC UserName: Allison
08:10:37.641 Initialize success
08:11:19.791 AVAST engine defs: 11092000
08:11:23.475 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
08:11:23.477 Disk 0 Vendor: ST9320320AS 0303 Size: 305245MB BusType: 11
08:11:23.519 Disk 1 \Device\Harddisk1\SR0 -> \Device\SdBus-0
08:11:23.522 Disk 1 Vendor: ( Size: 1882MB BusType: 12
08:11:25.586 Disk 0 MBR read successfully
08:11:25.594 Disk 0 MBR scan
08:11:25.608 Disk 0 Windows 7 default MBR code
08:11:25.612 Service scanning
08:11:30.614 Modules scanning
08:11:30.618 Disk 0 trace - called modules:
08:11:30.639 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS PCIIDEX.SYS hal.dll msahci.sys
08:11:30.643 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c18060]
08:11:30.647 3 CLASSPNP.SYS[fffff8800195943f] -> nt!IofCallDriver -> [0xfffffa80046bf520]
08:11:30.988 5 ACPI.sys[fffff88000f557a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa80046d61f0]
08:11:33.346 AVAST engine scan C:\Windows
08:11:38.221 AVAST engine scan C:\Windows\system32
08:16:13.168 AVAST engine scan C:\Windows\system32\drivers
08:16:35.386 AVAST engine scan C:\Users\Allison
08:20:47.507 Disk 0 MBR has been saved successfully to "C:\Users\Allison\Desktop\MBR.dat"
08:20:47.515 The log file has been saved successfully to "C:\Users\Allison\Desktop\aswMBR.txt"
Hi allison.geers,

Please let me know if you are connected to the Internet through a router or if you have more than 1 way to connect (e.g. cable, ADSL, 3G)
Router
Hi allison.geers,

Please follow the instructions here to set you computer to use OpenDNS.

Now Reboot and let me know if the browser redirects have stopped.
I cannot type words in only numbers.
Hi allison.geers,

I cannot type words in only numbers.


That is correct, please enter the numbers as shown in the diagram.
The redirects have not stopped after entering the numbers and rebooting.
OK, please use the same instructions to set back to Obtain DNS server address automatically then let me know when complete.
Changed it back.
Hi allison.geers,

ESET Online Scanner:

Note: You can use either Internet Explorer or Mozilla FireFox for this scan. You will however need to disable your current installed Anti-Virus, how to do so can be read here.

Vista/Windows 7 users: You will need to to right-click on the either the IE or FF icon in the Start Menu or Quick Launch Bar on the Taskbar and select Run as Administrator from the context menu.

  • Please go here to run the scan.
    Note: If using Mozilla Firefox you will need to download esetsmartinstaller_enu.exe when prompted then double click on it to install.
    All of the below instructions are compatible with either Internet Explorer or Mozilla FireFox.
  • Select the option YES, I accept the Terms of Use then click on:
  • When prompted allow the Add-On/Active X to install.
  • Make sure that the option Remove found threats is NOT checked, and the option Scan archives is checked.
  • Now click on Advanced Settings and select the following:

    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology

  • Now click on:
  • The virus signature database... will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed select Uninstall application on close if you so wish, make sure you copy the logfile first!
  • Now click on:
  • Use notepad to open the logfile located at C:\Program Files\ESET\EsetOnlineScanner\log.txt.
  • Copy and paste that log as a reply to this topic.


Note: Do not forget to re-enable your Anti-Virus application after running the above scan!
a lack of response,