Register   FAQ   Login  

Antivirus XP 2008 redirects internet "go to" addre





AddThis Social Bookmark Button AddThis Feed Button

       2-spyware forum index -> Removal of spyware, adware and other parasites
Author Message
Cof1der



Joined: 18 Sep 2008
Posts: 1
Location: Austin, TX

Post Post subject: Antivirus XP 2008 redirects internet "go to" addre Reply with quote

I'm infected w/ antivirus XP 2008. I followed the suggested task manager end process but I still have remnants (or maybe all, what do I know). I tried going to pctools to download spyware doctor, but was redirected to some other web site. It seems something is redirecting me to sites different from the one I enter in the "go to address" box, so I can't go to where I can download remedy.

What do I do? How is it doing this. How do I locate the code that changes what I enter in internet explorer/mozilla fox "go to" address box?

P.S. This message from a different computer since I wouldn't be able to get here from my infected PC.

Question
_________________
Life, living and the pursuit of happiness
Fri Sep 19, 2008 12:28 pm
Back to top
Cof1der View user's profile Send private message
 
Bobby



Joined: 03 May 2006
Posts: 290

Post Post subject: Reply with quote

Hello there,
as you can't download the anti-spyware on the infected computer, you have to download install on another computer, then put the install on cd or usb and run it on the infected machine. i recommend malwarebytes antimalware : http://www.2-spyware.com/review-malwarebytes-anti-malware.html
_________________
I reccomend Spyware Doctor and Malwarebytes’ Anti-malware as ultimate protection.
Mon Sep 22, 2008 4:43 am
Back to top
Bobby View user's profile Send private message
 
DanaKate



Joined: 11 Dec 2008
Posts: 3

Post Post subject: Reply with quote

I found that I could get around some of the redirect by going directly to CNet and downloading from there. I found that my version of AV09 evidently didn't consider CNet to be a threat to it. But if my browser wasn't being rerouted to a fake AV site, I would get the message that my security software couldn't be updated or that the site I wanted to visit (AVG, Spybot, Lavasoft, whatever) was not found. So I found a fix today on another site. I posted in another thread here (maybe where I shouldn't, since I'm new, I dunno), but I can give another overview here in case it helps someone with similar problems.

Go to Start > Control Panel > System > Hardware > Device Manager > View > Show Hidden Devices. Scroll down to "Non-plug and Play Drivers" and click the plus icon to open those drivers. Search for "TDSSserv.sys", right click on it, select Disable, and reboot your system. Make sure you don't choose to uninstall it, because it'll just reinstall itself when you reboot.

This doesn't get rid of AV09, but it fixed my redirect problem and allowed my AVG and Spybot to update and run so I could get rid of AV09 with them. I was also able to download and install trusted software. I'm running Malwarebytes now to make sure I didn't miss anything, and I still did some manual registry cleanup by following the AV09 removal instructions on this site. I hope this helps someone in a similar situation. I was so very happy when I found this. I couldn't wait to get home from work and try it out, and it worked like a charm for me. :D
Fri Dec 12, 2008 12:01 am
Back to top
DanaKate View user's profile Send private message
 
tamariki



Joined: 20 Dec 2008
Posts: 2
Location: New Zealand

Post Post subject: Reply with quote

Had the same problem. Ran a couple of anti virus programmes, but couldn't get on their sites to download the upgrades. Downloaded spybot, installed it, but it wouldn't run.
One of the programmes I downloaded suggested running check disk. That would n't run.
Non of the previously installed spyware and anti virus programmes would run.
The solution you advised worked. When I rebooted, check disc cut in, and restored corrupted files. Ran for three minutes.
Am now able to run spybot, avast etc.
Thanks for finding a solution. Saved me re-installing Windows again.
PS
Had turned off system restore, so hope the PC in clean.
Sat Dec 20, 2008 7:34 pm
Back to top
tamariki View user's profile Send private message
 
visiondash



Joined: 20 Dec 2008
Posts: 3

Post Post subject: Reply with quote

I did what you said but I can't find "TDSSserv.sys". Can it be under a different name?
Sat Dec 20, 2008 8:38 pm
Back to top
visiondash View user's profile Send private message
 
tamariki



Joined: 20 Dec 2008
Posts: 2
Location: New Zealand

Post Post subject: Reply with quote

After I disabled TDDS.sys, I found a solution that removed it by downloading and running SDFix.exe.
Instructions can be obtained from here:-

http://www.computer-juice.com/forums/f49/im-under-assault-smartest-virus-ever-help-19431/
Sun Dec 21, 2008 4:03 am
Back to top
tamariki View user's profile Send private message
 
       2-spyware forum index -> Removal of spyware, adware and other parasites All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum




Recommended software:
Spyware Doctor
(91/100)
Spyware Doctor is a very powerful, but yet highly user-friendly spyware remover, made by PC Tools, reputable computer security experts. This product provides effective and easy-to-manage...
Malwarebytes Anti Malware
(89/100)
There are loads of malware removers on the net today and most of them are lightweight applications, which usually means they’re fast and don’t have many features. One such...
Spy Sweeper
(85/100)
Spy Sweeper is one of the most powerful and effective spyware removers available today. This Webroot Software's product uses unique, patent-pending parasite detection and removal...
Windows Defender
(80/100)
Windows Defender is a free anti-spyware program made by the leading software company to add native spyware protection to its most popular product - the Microsoft Windows operating...
SUPERAntiSpyware
(75/100)
SUPERAntiSpyware is a powerful, highly effective spyware remover introducing advanced parasite detection and removal features along with reliable real-time protection. The program is not...
Encyclopedia of parasites: