This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Malware Removal Forums

Google Redirect Victim

16 min read

✨ The volunteers who helped with this thread aren't active anymore, but you can still get a personalized answer — click Ask AI below.

This thread's last reply is from October 10, 2013, 1:53 AM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

stillpressingtoward
OTL file

All processes killed
========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== FILES ==========
File\Folder C:\Users\Philippians 3-14\AppData\Local\Acer\Microsoft Help\fcmgehga.dll not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: [redacted]
->Temp folder emptied: 52704 bytes
->Temporary Internet Files folder emptied: 805157 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 54171759 bytes
->Flash cache emptied: 602 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10400 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 35574009 bytes

Total Files Cleaned = 86.00 mb

Restore point Set: OTL Restore Point

OTL by OldTimer - Version 3.2.69.0 log created on 10062013_123345

Files\Folders moved on Reboot...
C:\Users\[redacted]\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\[redacted]\AppData\Local\Temp\MMDUtl.log moved successfully.
C:\Users\[redacted]\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\LMutilps32.log scheduled to be moved on reboot.
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
pgmigg Admin/Teacher
Hello stillpressingtoward,

I downloaded and installed Java, but I can not see how to do the "optional" steps you suggested - and i want to do them.
OK. Please try to run another set of steps and if something will be wrong agian let me know exactly what it was.

OPTIONAL:
To prevent some unnecessary JAVA components from running when you boot your computer each time...
  1. Go to Control Panel and click on the JAVA icon.
  2. Now press the Advanced tab and go down in menu until you see the "Miscellaneous" options which probably will be the last one.
  3. UNCHECK "Java Quick Starter".
  4. Press Apply and OK. Then close the Java Control Panel. Close and exit Control Panel.


Please don't hesitate to ask any additional questions.

Stay Safe! ;)
pgmigg

Failure to post replies within 72 hours will result in this thread being closed
stillpressingtoward
Done.
pgmigg Admin/Teacher
Hello stillpressingtoward,

Done.
Glad to read it! :D

Please don't hesitate to ask any additional questions.

Stay Safe! ;)
pgmigg

Failure to post replies within 72 hours will result in this thread being closed
NonSuch Administrator
As this issue appears to be resolved,

✨ Ask AI about this thread

No ads, no affiliate links — generated on request from this thread's own archived content, not written by forum staff. Never run a scan/removal tool as a self-service step if the original thread describes it being done under a helper's direct supervision, and don't include your name, email, or other personal details in a follow-up question. See our privacy page for details on how this works.