Smart questions
Smart answers
Smart people
INTELLIGENT WORK FORUMS
FOR COMPUTER PROFESSIONALS

Member Login

Come Join Us!

Are you a
Computer / IT professional?
Join Tek-Tips now!
  • Talk With Other Members
  • Be Notified Of Responses
    To Your Posts
  • Keyword Search
  • One-Click Access To Your
    Favorite Forums
  • Automated Signatures
    On Your Posts
  • Best Of All, It's Free!

Join Tek-Tips
*Tek-Tips's functionality depends on members receiving e-mail. By joining you are opting in to receive e-mail.

LINK TO THIS FORUM!

Add Stickiness To Your Site By Linking To This Professionally Managed Technical Forum.
Just copy and paste the
code below into your site.

Partner With Us!

"Best Of Breed" Forums Add Stickiness To Your Site
Partner Button
(Download This Button Today!)

Feedback

"...Your site was well structured and I found what I was looking for in about 2 minutes. I am looking forward to participating with you in the future..."

Geography

Where in the world do Tek-Tips members come from?
1043 (Vendor)
23 Jul 12 10:34
Any recomended programs to remove this malware.(B00kmarks 7search)... Malewareabytes,Spybot,Trojan Remover find no problem.AVG Antivirus finds nothing.
goombawaho (MIS)
23 Jul 12 12:30
1. Download ComboFix onto a USB flash drive or onto computer.
2. Boot into SAFE MODE or regular mode (if required) and uninstall your anti-virus software. Yes - remove it. Reboot.
3. Clean out temp files and registry with CCleaner. Save before making registry changes each time until no more errors.
4. Reboot computer in Safe Mode with networking (hopefully you can attach the PC to a wired/ethernet connection vs. wireless because some wireless will not work in safe mode and you NEED internet).
5. Launch combofix and allow it to do its thing. Follow screen prompts and do what it says to do/NOT to do.
6. When computer has restarted for the last time, check things out.
7. Turn OFF system restore to flush out anything left
8. Reinstall anti-virus and MalwareByte's Anti-Malware. Run a full scan using each (at different times) and see if things are clean.
9. Turn System Restore ON.

Fair warning: Combofix will hose a few computers out of every hundred or so. Not likely, but possible.
1043 (Vendor)
23 Jul 12 13:21
Thanks man. I'll try and let you know.
goombawaho (MIS)
23 Jul 12 13:35
On second thought, before running combofix, how do you know it's actually malware and not some setting or malfunction within Firefox?

Does it happen in IE?

I can't find anything on the internet like that. If that was malware, it wouldn't be any good to the producer. They want to take you to THEIR site of choice, not your bookmarks.
1043 (Vendor)
23 Jul 12 14:10
It is a XP CPU running IE8. She had her antivirus expire and left it go. She told me that everytime she Googles it takes her somewhere else. I verified. Sometime to B00kmarks.com sometimes to search7.com. I checked LAN settings in IE settings to make sure proxy server wasn't set, I ran cleanup to arase temp files and ran Trojan Remover,Malewareabytes, and Spybot , removed old Antivirus and installed AVG ,all found nothing. If I type the URL out I get website under construction or website not reachable.

Its not my bookmarks its a B00kmarks.com website.

http://www.google.com/#hl=en&output=search&...

1043 (Vendor)
23 Jul 12 14:12
Not sure of the websites posted in link so I wanted to run it by tek-tips forum first.
goombawaho (MIS)
24 Jul 12 8:00
I thought it went to one of HER BOOKMARKS. Yeah, sounds virus-y then. Do what I suggested.
1043 (Vendor)
28 Jul 12 22:51
Thanks for the help.
ComboFix kept seeing my antivirus even after it was uninstalled completely and scared the crap out of me. I didn't feel like reinstalling software so I keep looking and found the following software link for "TDS SKiller"

http://support.kaspersky.com/viruses/solutions?qid...
fixed the problem in 2 minutes.



1043 (Vendor)
28 Jul 12 23:14
Forgot to mention this also had something to do with the dreaded "just in time debug maleware" the program fixed everything.
goombawaho (MIS)
29 Jul 12 8:35
Normally I recommend TDSSKiller before Combofix. Not sure why I didn't this time.

Reply To This Thread

Posting in the Tek-Tips forums is a member-only feature.

Click Here to join Tek-Tips and talk with other members!

Close Box

Join Tek-Tips® Today!

Join your peers on the Internet's largest technical computer professional community.
It's easy to join and it's free.

Here's Why Members Love Tek-Tips Forums:

Register now while it's still free!

Already a member? Close this window and log in.

Join Us             Close