• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Browser searches redirected

Joined
Jun 2, 2007
Messages
5,106 (0.83/day)
Location
Kansas
Processor Core i5 3570K
Motherboard AsRock z77 Pro4
Cooling Zalman CNPS10X Extreme
Memory 2x4GB GSkill Sniper
Video Card(s) MSI GTX970 Gaming
Storage 240GB OCZ ARC 100, Samsung Spinpoint F3 1TB
Display(s) LG 23" 1920x1080
Case Antec P100
Audio Device(s) Onboard
Power Supply Antec Edge 750W
Software Windows 8.1 Pro 64
I'm seeing this problem on multiple computers; one at work and also my nephew's laptop. They will run a search in Google or whatever but when a link is clicked as a result of a search, whether it be to wikipedia or hotsneekylovin.com, the click is redirected to different sites, generally wanting you to buy some sort of merchandise. I've gone through cleanups, System Restores, and everything else I can think of without reinstalling to no avail because a feformat on the work comp would be like a 2 day process. Anyone had any success killing this?
 
Joined
Jul 2, 2010
Messages
4,015 (0.80/day)
Location
UK
System Name PC
Processor AMD Ryzen 3600
Motherboard MSI B450 Mortar Max
Cooling Phanteks PH-TC12DX, 3 x NZXT FN 140mm, 1x NZXT FV V2 120mm
Memory 32gb DDR4 3200mhz
Video Card(s) ASUS R9 290 DCII-OC 4GB
Storage corsair mp600 1TB
Display(s) LG 27MB85Z 27" 1440p
Case NZXT Source 340
Power Supply Thermaltake 675w
Mouse Logitech G500S
Keyboard Logitech G510S
Software Windows 8.1 64 bit
I'm seeing this problem on multiple computers; one at work and also my nephew's laptop. They will run a search in Google or whatever but when a link is clicked as a result of a search, whether it be to wikipedia or hotsneekylovin.com, the click is redirected to different sites, generally wanting you to buy some sort of merchandise. I've gone through cleanups, System Restores, and everything else I can think of without reinstalling to no avail because a feformat on the work comp would be like a 2 day process. Anyone had any success killing this?

run a virus scan, preferably with this -> http://download.cnet.com/Malwarebyt...4572.html?part=dl-10804572&subj=dl&tag=button

though if the PC's are on 2 different networks i would assume it was caused by something you did on them
 
Joined
Jun 2, 2007
Messages
5,106 (0.83/day)
Location
Kansas
Processor Core i5 3570K
Motherboard AsRock z77 Pro4
Cooling Zalman CNPS10X Extreme
Memory 2x4GB GSkill Sniper
Video Card(s) MSI GTX970 Gaming
Storage 240GB OCZ ARC 100, Samsung Spinpoint F3 1TB
Display(s) LG 23" 1920x1080
Case Antec P100
Audio Device(s) Onboard
Power Supply Antec Edge 750W
Software Windows 8.1 Pro 64
I've run Malwarebytes, SAS, and most of the rest. I wouldn't have come here if I hadn't run a virus scan yet. :roll:

These computers are not networked, one being at work and the other being personal and had the problems before I got a hold of them. Did you even read my post?
 
Joined
Jul 2, 2010
Messages
4,015 (0.80/day)
Location
UK
System Name PC
Processor AMD Ryzen 3600
Motherboard MSI B450 Mortar Max
Cooling Phanteks PH-TC12DX, 3 x NZXT FN 140mm, 1x NZXT FV V2 120mm
Memory 32gb DDR4 3200mhz
Video Card(s) ASUS R9 290 DCII-OC 4GB
Storage corsair mp600 1TB
Display(s) LG 27MB85Z 27" 1440p
Case NZXT Source 340
Power Supply Thermaltake 675w
Mouse Logitech G500S
Keyboard Logitech G510S
Software Windows 8.1 64 bit
I've run Malwarebytes, SAS, and most of the rest. I wouldn't have come here if I hadn't run a virus scan yet. :roll:

These computers are not networked, one being at work and the other being personal and had the problems before I got a hold of them. Did you even read my post?

if the computers are on 2 different networks, are thoroughly virus scanned etc, i would think it would be a user problem, maybe you've left some sort of proxy running on them or left a specific google account logged in on both

have the 2 PC's ever had contact via using the Same floppy disk, CD etc
 
Joined
Mar 2, 2009
Messages
5,061 (0.92/day)
Processor AMD Ryzen 5 7600
Motherboard Gigabyte B650 Aorus Elite AX
Cooling Thermalright Peerless Assassin 120 SE
Memory Kingston Fury Beast DDR5-5600 16GBx2
Video Card(s) Gigabyte Gaming OC AMD Radeon RX 7800 XT 16GB
Storage TEAMGROUP T-Force Z440 2TB, SPower A60 2TB, SPower A55 2TB, Seagate 4TBx2, Samsung 870 2TB
Display(s) AOC 24G2 + Xitrix WFP-2415
Case Montech Air X
Audio Device(s) Realtek onboard
Power Supply Be Quiet! Pure Power 11 FM 750W 80+ Gold
Mouse Logitech G304
Keyboard Redragon K557 KAIA RGB Mechanical Keyboard
Software Windows 10
Must be a virus that YOU carry then, since that's the only thing in common between the two (you have accessed both). :laugh:


Maybe some screenshots? It probably only replaces the first few search results?
 
Joined
May 31, 2008
Messages
5,787 (1.00/day)
Location
Switzerland, Heart of Europe
System Name Fractality 1.0
Processor Intel Core i7-860 @ 3.6GHz
Motherboard EVGA P55 SLI
Cooling Prolimatech Megahalems and four Fractal Design 120mm fans, sleeved
Memory 16GB Kingston Hyper RAM
Video Card(s) PNY GeForce 580 XLR8
Storage 64GB and 180GB SSDs / 1TB and 2TB HDDs
Display(s) 24" Acer V243W
Case Fractal Design Define R2, sleeved all I/O cables
Audio Device(s) onboard
Power Supply Corsair HX750W modular, sadly only stock sleeving
Software Win 7 64bit
What does it redirect to? genuine websites, or CanadianRX/V1aagraaa/Nicole is lonely?
 

newtekie1

Semi-Retired Folder
Joined
Nov 22, 2005
Messages
28,472 (4.24/day)
Location
Indiana, USA
Processor Intel Core i7 10850K@5.2GHz
Motherboard AsRock Z470 Taichi
Cooling Corsair H115i Pro w/ Noctua NF-A14 Fans
Memory 32GB DDR4-3600
Video Card(s) RTX 2070 Super
Storage 500GB SX8200 Pro + 8TB with 1TB SSD Cache
Display(s) Acer Nitro VG280K 4K 28"
Case Fractal Design Define S
Audio Device(s) Onboard is good enough for me
Power Supply eVGA SuperNOVA 1000w G3
Software Windows 10 Pro x64
I've seen this alot coming into the shop.

I suggest a program called TDSSKiller: http://support.kaspersky.com/faq/?qid=208283363

It generally takes care of this pretty quickly.

Combofix might also be required, but I always save that as a last resort because it breaks 1 in 100 computers, but if it is a last resort before formatting anyway I just go ahead an use it.
 
Joined
Oct 1, 2010
Messages
2,361 (0.48/day)
Location
Marlow, ENGLAND
System Name Chachamaru-IV | Retro Battlestation
Processor AMD Ryzen 9 5900X | Intel Pentium II 450MHz
Motherboard ASUS ROG STRIX X570-F Gaming | MSI MS-6116 (Intel 440BX chipset)
Cooling Noctua NH-D15 SE-AM4
Memory 32GB Corsair DDR4-3000 (16-20-20-38) | 512MB PC133 SDRAM
Video Card(s) nVIDIA GeForce RTX 4070 FE | 3dfx Voodoo3 3000
Storage 1TB WD_Black SN850 NVME SSD (OS), Toshiba 3TB (Storage), Toshiba 3TB (Steam)
Display(s) Samsung Odyssey G5 27" @ 1440p144 & Dell P2312H @ 1080p60
Case SilverStone Seta A1 | Beige box
Audio Device(s) Creative Sound Blaster AE-7 (Speakers), Creative Zen Hybrid headset | Sound Blaster AWE64
Power Supply EVGA Supernova 750 G2 | 250W ASETEC
Mouse Roccat Kone Air| Microsoft Serial Mouse v2.0A
Keyboard Vortex Race3 | Dell AT102W
Software Microsoft Windows 11 Pro | Microsoft Windows 98SE
I had something very similar to this. MSE couldn't fix it, Norton couldn't fix it, Kaspersky couldn't fix it and neither could Malwarebytes. In the end, Lavasoft's Adaware cleared it out. I suggest downloding that and running a scan.
 
T

twilyth

Guest
Close all browsers. Delete the hosts file. Start up a browser to create a new hosts file. Lock it.

This thread should give you the info you need.

http://www.bleepingcomputer.com/forums/topic353766.html

edit: However a corrupted hosts file means you are guaranteed to be infected. Try Avira. The full product I think is free for 60 days and their free version is supposed to be pretty good.
 

95Viper

Super Moderator
Staff member
Joined
Oct 12, 2008
Messages
12,670 (2.24/day)
Close all browsers. Delete the hosts file. Start up a browser to create a new hosts file. Lock it.

This thread should give you the info you need.

http://www.bleepingcomputer.com/forums/topic353766.html

edit: However a corrupted hosts file means you are guaranteed to be infected. Try Avira. The full product I think is free for 60 days and their free version is supposed to be pretty good.


+1 agree
____________________________________________

Info @ MS KB...

How do I reset the hosts file back to the default?
 
Joined
Jun 2, 2007
Messages
5,106 (0.83/day)
Location
Kansas
Processor Core i5 3570K
Motherboard AsRock z77 Pro4
Cooling Zalman CNPS10X Extreme
Memory 2x4GB GSkill Sniper
Video Card(s) MSI GTX970 Gaming
Storage 240GB OCZ ARC 100, Samsung Spinpoint F3 1TB
Display(s) LG 23" 1920x1080
Case Antec P100
Audio Device(s) Onboard
Power Supply Antec Edge 750W
Software Windows 8.1 Pro 64
I've seen this alot coming into the shop.

I suggest a program called TDSSKiller: http://support.kaspersky.com/faq/?qid=208283363

It generally takes care of this pretty quickly.

Combofix might also be required, but I always save that as a last resort because it breaks 1 in 100 computers, but if it is a last resort before formatting anyway I just go ahead an use it.

TDSS did the job. +5 internets for you, tekie. Thanks! :toast:
 
Joined
Sep 15, 2009
Messages
2,076 (0.39/day)
System Name Omen
Processor i7-4710HQ
Cooling Dual fan/heatpipe
Memory 16GB
Video Card(s) 4GB GTX 860M
Storage 256GB PCIE SSD/256GB PNY UHS-1 SD Card
Display(s) 15.6' 1080P
Case Aluminium
Audio Device(s) Onboard
Power Supply Brick
Software Win 10
Ah yes, I have the same problem on my two desktops, my laptop and my fathers laptop! I assure you, the computers are all clean. I'll have a go at that prog. you mentioned.
 
Top