Browser Infected

lupi

Lifer
Apr 8, 2001
32,539
260
126
Got some type of pop up/redirect infection going on and can't seem to get rid of it. Run full virus scan, MWAB, spybot, hitman and none have reported anything other than antivirus reporting an infected item prevented initially.

What else out there can I run to wipe this out?
 

Elixer

Lifer
May 7, 2002
10,376
762
126
You check your hosts file to make sure that is OK?
Screenshot of the popup might help identify it as well.
 

lupi

Lifer
Apr 8, 2001
32,539
260
126
Host file unmodified with nothing that isn't commented out by the OS.

pop up pages are for a secret search, another privacy thing, and a couple computer help related. Also had one of those we've locked you computer pay us messages, unless you realize alt-f4 works.
 

mikeymikec

Lifer
May 19, 2011
18,047
10,224
136
DNS servers? Unlikely but I'd check what is set anyway.

Which browser are you using? There are ways to hijack browsers without requiring a binary left behind. Backing up any data from the browser that you want to keep then resetting it may help.
 

John Connor

Lifer
Nov 30, 2012
22,840
617
121
Check out if you have any rouge extensions or services installed in the browser. Run Autoruns and make sure something shouldn't be there. Run Freefixer and be very careful and what you delete. Research each module. I can't stress that enough.
 

Newfangle9

Member
Sep 23, 2012
56
9
71
Reimage looks like a nice little program. Showed me things others didn't, but I imagine it finds problems every time it's used since it costs 27 dollars and change. Not for a one year license or anything, but for each repair. Nice to sit and watch the whole process and then see the charge. I can't say that I was surprised because I've seen it before, but it's a sleazy way to do things if you ask me.
 

mikeymikec

Lifer
May 19, 2011
18,047
10,224
136
I wouldn't touch Reimage with a barge pole. Customers with unwanted software and performance problems often also have this software on their computer, with no idea how it got there.

OP, did resetting Chrome help?
 

Newfangle9

Member
Sep 23, 2012
56
9
71
Quick update regarding reimage. Uninstalled the program, did a malware scan and this morning I have a pop up window with a "special offer" My thanks to the poster of that link, nice one
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |