[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
I have no idea whether it’s both IE or firefox as it’s extremely hard to test. It happens on average once or twice a day, so unless I switch to IE for a week I really wouldn’t know. I can start using IE instead from today and see… but I have already tried reinstalling firefox and this has made no difference. Would you like me to use IE instead from today? It might be a while before I can find out, or I can continue with firefox and I can say within a few days if the problem is still there. Such an annoying bug!
Update. The problem appears to be still here but the symptoms may have changed. Instead of a redirect to 64.XXX.whatever, avast blocks it as going to http:// (empty).
Clicking on the details, I get:
Infection Details
Process: file://C:\Program Files\Mozilla Firefox\firefox.exe
Infection: url:Mal
[*]Then click the Run Fix button at the top
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
Hi Essexboy,
Damn the virus is still here. I thought it had gone for a bit as I didn’t get one the whole weekend, but just got a redirect to 64.111.199.226.
VERY IMPORTANT !!! Save ComboFix.exe to your Desktop *
IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here
[*]Double click on ComboFix.exe & follow the prompts.
[*]Accept the disclaimer and allow to update if it asks
Ran the combofix. Got a few messages asking me to run certain things, etc. I clicked yes, agree, etc. to all. Screenshots attached, along with the log at the end.
Before the reboot, combofix closed a whole lot of my windows and this caused some windows errors, asking to send error reports, etc. to which I just selected cancel or close or whatever was appropriate.
Haven’t noticed any changes yet other than my windows security centre settings appear to have been changed a bit.
[*]Ensure all Firefox windows are closed.
[*]To run the tool, double-click it (XP), or right-click and select Run As Administrator (Vista).
[*]When prompted to run the scan, click Yes.
[*]GooredFix will check for infections, and then a log will appear.
Please post the contents of that log in your next reply (it can also be found on your desktop, called GooredFix.txt).
hi essexboy,
Unfortunately I’ll have to try this another time. I got pulled to work for 4 months and won’t be able to use this computer for a while. Hope in that time this redirect doesn’t manifest itself into a monster.
Anyway, I’ll repost here when I’m back in Feb. Thanks for your help.