Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Myfamily.com - hijacked network - server 3 pcs

Status
Not open for further replies.

heavyfreak

IS-IT--Management
Aug 27, 2004
3
US
I have a network, that has been hijacked by myfamily.com, not sure how it happened. the company website is entered into the browser the address changes to :


and it takes you to myfamily.com, same with any page desired. Also, it over-rides yahoos seach.

this happens on the server and 3 pcs, Virus scan's have been run, norton corprate (latest def's) and using bitdefender.com
I've used, cwshredder, hijackthis, spybot1.3.
--nodda

I have search the registry, found nothing, pc, nothing and the web, nothing. This is the first encounter with this type of spyware, any info would be greatfull, only out come i can see now is to restore all the pcs, and server! I DON'T LIKE THIS OUTCOME! PLEASE HELP!
 
For sizzle! thank you, thank you, I'll see what happens
 
I'm not sure about that fix above, that file looks like it can be a legitimate file.

Social Engineering - they'll call the file anything that looks right, or can be explained

Find the directory the file resides in, right click the file, and check the file properties, and it should give the company details, product version etc. if it looks bogus, stop the service, rename the file, and reboot the machine

if it complains, rename it back, you may need emergency boot disks

Standard Disclaimer
If I told you to put your hand in the fire, would you do it?
If the answer is yes, do nothing
If the answer is no, use your own judgement, and bear in mind I take no responsibity in this act (either express or implied)

HTH
--Paul

It's important in life to always strike a happy medium, so if you see someone with a crystal ball, and a smile on their face ... smack the fecker
 
No can do people, this last fix was a failure, I used task manager program, ran on all systems, did not find the crypsrv service, or something like that, nodda, no can do, anyone else out there who has hear something of something, from someone? please help.
 
I suggest you download and run HiJack This, save the log file without fixing anything, and then post the log file in the Virus/Spyware forum here for an expert to peruse. Someone there should be able to get you fixed up. You may even try searching that forum first for the MyFamily deal and someone may have already posted the fix...

Good Luck,

Jeff

MCSE,CCNA,ASE
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top