View Single Post
Join Date: Sep 2008
Posts: 2
Reputation: 2b_berean is an unknown quantity at this point 
Solved Threads: 0
2b_berean 2b_berean is offline Offline
Newbie Poster

Re: google search results redirecting to porn sites and other random sites

 
0
  #3
Sep 20th, 2008
Thanks so much Gerbil for reviewing my logs..... i followed your advice and got cc cleaner (great freeware) & comodo firewall which is very thorough and very annoying but very necessary given recent attacks.
It seems malware bytes(MBAM) has saved the day again for me so i didn't bother running panda.
below is the MBAM log:

Malwarebytes' Anti-Malware 1.28
Database version: 1180
Windows 5.1.2600 Service Pack 2

20/09/2008 5:15:04 PM
mbam-log-2008-09-20 (17-15-04).txt

Scan type: Full Scan (C:\|)
Objects scanned: 81809
Time elapsed: 12 minute(s), 40 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 8

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\tdssadw.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdssl.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdssserf.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdssmain.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdssinit.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdsslog.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\tdssservers.dat (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\drivers\tdssserv.sys (Trojan.Agent) -> Delete on reboot.


thanks again gerbil you've been an awesome helper....
Reply With Quote