Is this a script virus ?

syzygy

Diamond Member
Feb 5, 2001
3,038
0
76
Symptoms:

1 - Tabs are being forcefully opened in FF directing me to ad pages

2 - Can't start Google Chrome.

3 - Google searches in IE and FF are hijacked and directed to various ad pages.

4 - On-line PandaScan couldn't complete search.

5 - Trend Micro did, but found nothing.
 

Gamingphreek

Lifer
Mar 31, 2003
11,679
0
81
It is definitely a virus of some sort

Run HijackThis! and post the results to the thread.

-Kevin
 

syzygy

Diamond Member
Feb 5, 2001
3,038
0
76
Weird . . . but I am not able to post the Hijack text file because of the following
limit imposed by this site :

"" You have included 67 images in your message. You are limited to using 10 images so please go back and correct the problem and then continue again.

Images include use of smilies, the BB code tag and HTML <img> tags. The use of these is all subject to them being enabled by the administrator. ""



the text file doesn't have any images !! what the hell . . .
 

Gamingphreek

Lifer
Mar 31, 2003
11,679
0
81
There may be symbols in the text that lead the forums to think you are trying to paste code or HTML or something.

Paste the results in the code brackets and try it again. If not try and post a screenshot of it.
 

syzygy

Diamond Member
Feb 5, 2001
3,038
0
76
I can't post attachments. HTML code is off. I can't even copy and paste.
 

Gamingphreek

Lifer
Mar 31, 2003
11,679
0
81
O3 - Toolbard: (no name)
Additionally I'm not sure about Eraser.exe

All of those look suspicious to me.

There are some others that I would look into, but if you go http://www.hijackthis.de/ and upload your logfile, it will confirm my suspicions.

-Kevin
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |