1.

Solve : search redirect and other issues?

Answer»

Hi.  I am new here and I am not computer savvy.  I have been reading as many posts as I can trying to FIND an answer to my own problems.  I have downloaded programs that were recommended to others but I am at my wits end with this computer.

Here is my brief history:
I have had this Dell computer for less than a year.  Used it very rarely because we were on slow dial up.  We had a company come in and install a satellite but before I had a chance to do anything with it, my boys were on here DOWNLOADING stuff so I am not sure what is good or bad.

I am using Microsoft Windows XP PS2

The first clue that there was something wrong was when we started getting pop ups that we had adware and they wanted me to buy a cleaner.  Also, every time I do a web search it takes me to a different site than the link says and I can see it says "redirect" in the bottom window.  It never takes me to the same site twice.  I no longer get the pop ups but I still get redirected.

I have downloaded several things and they have found several things:

Spybot S&D:
Zlob video activeX Access
Magic antispy
Spylocked.fake alert
Zlob DNS changer
Drivecleaner 2006 (can not delete)

AVG
Virus Vault: Trojanhorse Dowloader Zlob

SuperAnti Spyware Quarantined:
Malware Drivecleaner
Malware Virus Protect Pro
Trojan Smitfraud Variant
Adware Tracking Cookies

All of these were ran in "Safe Mode" and they say their clean, except for Spybot's DriveCleaner2006, and I still get redirected.  Why do none of the others find DriveCleaner 2006?

I also downloaded a firewall but I am not sure on the very first thing that comes up.  What is IEXPLORE.exe?

What should I do next?  I tried running Combofix but Spybot went crazy and I was afraid to continue.

Thanks to anyone who can help this computer newbie...
I'm not expert with this sort of thing, but you might get better response if you posted in the virus section. It appears that you are infested with lots of malware. Be patient waiting for a reply as our experts are all volunteers and for various reasons are not immediately available. Quote

I also downloaded a firewall but I am not sure on the very first thing that comes up.  What is iexplore.exe?
iexplore.exe is Internet Explorer.Hold up and see if there is anything else you can do but I would recommend reinstalling windows starting with a nice new clean computer... But remember anything installed before this will have been removed. Quote
you might get better response if you posted in the virus section

Can this post be MOVED to the right section?

Quote
iexplore.exe is Internet Explorer.

iexplore is okay?  My firewall says it may be spyware.

Quote
I would recommend reinstalling windows starting with a nice new clean computer...

Posting for some advice is my last resort before doing just that.  Well actually it would be, taking my computer to someone to have it cleaned.

Thanks for your replys
Where to start?

Your computer re-directs because  a virus changed your settings to re-direct. You may have now removed the virus or not! but the settings it changed remain.

To be honest I personally would do a complete re-format and reload everything again. Then load an Anti-Virus and Anti-Spyware first before going back on the internet rather than afterwards.

Someone behind me may give you advice on cleaning up what's there if you prefer to go that route.

What is your firewall? iexplore.exe is definitely not dangerous, so I don't know why it would say so.

Now, as CBMatt would say, post up a HiJackThis log (get it from here).Dark Blade - iexplorer.exe can be used by viruses. It is usually an infected/modified version put in a different folder to the original.


Quote from AV site

But sometimes the same filename is used to deceive the user. For example:
Trojan.KillAV.B was cought using iexplore.exe filename.
File iexplore.exe is related to keylogger Power Key Logger. File iexplore.exe is related to trojan DarkSky Trojan. File iexplore.exe is related to trojan Boxer Trojan. File iexplore.exe is related to Ruland. File iexplore.exe is related to Mailbancos. iexplore.exe is an executable file that is responsible for launching Quote
What is your firewall?

It's Comodo

Because my firewall is new and my connection type is new I was not sure if this is something that I should always allow.  I found out that I have to allow it or I do not get on line. 

I have someone helping me with the HiJackThis log findings  Thanks

Quote from: Dark Blade on September 04, 2007, 12:22:05 AM
Now, as CBMatt would say, post up a HiJackThis log (get it from here).
That's exactly what I would say.

And mektek is right.  Although iexplore is a legit file, an infection could be using the same name.  You have to pay attention to not only a file's name, but also its location.

I HOPE the person helping with your log knows what they're doing, because removing the wrong thing could damage your computer.  Be sure to update us on what happens; I'd like to see where this goes.Due to lack of feedback, I am closing this topic.  If you are the original poster and you would like this topic to be re-opened for any reason, PM me or another moderator and it can be arranged.

If you are not the original poster and you require help, please start a New Topic with information about your computer and your problem.


Discussion

No Comment Found