Browser Hijacker.

NeptuneUK

Space Core
Joined
Aug 25, 2004
Messages
4,447
Reaction score
16
Can someone tell me how to get rid of it? Must've come with some dodgy freeware program or something.
I cant find anything with AVG, windows defender, spybot and several other anti-malware programs so how do I proceed?

What I know:
As far as I can tell it blocks a couple of antispyware sites and only hijacks search engine results links (ie google) and affects both IE and FF
Appears to be linked to 'gtracktool.com' and 'findolink'
That is all i know.

The whole situation has me distraught... even though it doesn't really hinder me in anyway. It's just that I never get viruses or shit on my PCs*. EVER!
The last time I ever experienced a virus was before I ever owned a PC to myself. This is only spyware and I will not allow it to win! I hope that this mother****er isn't trying to log my bank details or some shit.



* - only if they are passworded and/or nobody else uses my PC


Edit : just to make it clear, I am not a moron. And i have tried many things, as far as I can see the PC 'LOOKS' clean.
Got rid of registry things i didnt like the look of... removed everything else I didnt like etc no weird processes blah blah blah.
If I can figure out what it is, I may be able to rid myself of it.
 
First, you shouldn't **** around and download shareware, if PC is used for banking, purchases, Etc. Any 2yr old knows that.
If you downloaded and installed Virus/Trojan/Spyware, your AVG/Defender would probably find it, but to be on the safe side, do the full-scan.
Check your browser Add-On/s, restore default search programs. Disable programs you think hijacking search. Uninstall the program allegedly started all this. Delete browser cache, cookie, history and all of it's temp internet files.

Good Luck.
 
I don't download such programs, that's why I never get viruses etc.
My failing is going away for a while and leaving my PC unpassworded.

And I have already done these things, any 2 year old would do that.
:/
 
Apparently Ad-Aware gives you a little advertisement once in awhile to upgrade to the payed-for version. Lavasoft has definitely gone downhill recently...

Maybe it's time to convert you, my child.
 
Hijacker now removed.
There's some kind of google search link tracker though, related to 'gtracktool.com'
Affects mozilla and ie but not chrome.
Also, the Super antispyware thing (which I've never really heard of) doesnt install properly.
 
Then it may be blocked by your malware. Install it in safe mode. Hold F8 while booting your computer to enter safe mode.

Run Superantispyware and I am certain it will remove your malware, and other malware you may not even be aware of.
 
Then it may be blocked by your malware. Install it in safe mode. Hold F8 while booting your computer to enter safe mode.

Run Superantispyware and I am certain it will remove your malware, and other malware you may not even be aware of.

I was skeptical of this program when you mentioned it so I tried it out. Actually works very well, thanks.
 
I was skeptical of this program when you mentioned it

Yeah...It's a good idea to explain your recommendation a bit beyond "it will work" :p

I also have a search engine hijacker. Superantispyware found some things but the browser problem remains :\
I'll try it one more time in safe mode I guess.
 
Yeah...It's a good idea to explain your recommendation a bit beyond "it will work" :p

I also have a search engine hijacker. Superantispyware found some things but the browser problem remains :\
I'll try it one more time in safe mode I guess.

SAS is nothing special at all, that's probably why its relatively unheard of.
It IS legitimate though. (But didn't help)

[anti-kneejerk rant]
Infact I had issues installing it (immediate crash at the end of installation) but mention of this on steam chat when I was looking for help was a grave error of judgement because it OBVIOUSLY means that my PC is completely ****ed up beyond repair (because there is ZERO chance there could EVER be a problem with the SAS installer/installshield/whateverthe****itwas even though the first time the PC had ever crashed since I built it was when this installer ****ed up) so I should immediately enter safe mode and go on a wild goose chase. If I refuse, then I am obviously in denial about my serious PC issues (OMG THE PC CRASHED - VIRUS!!!!!!!!! SHITSHITSHITs\eirugawt8adyeary)
[/anti-kneejerk rant]
A quick google search revealed how right I was about there being an issue with SAS, many other users have experienced the same crash on supposedly clean systems.


aaanyway.....
I solved the problem using combofix (www.combofix.org)



Because every single anti-malware prog I used never found anything relavent to the hijacking (or anything relatively harmful) I never found out the name of the malware affecting my browser. Which is a shame because I wanted to investigate the source of it. My browsing habits remain very routine lol and so I never get viruses on my own machines until I let other people use them unsupervised.
I am starting to lose faith in commercial anti-malware programs for telling me I have a perfectly healthy PC, even HijackThis couldn't find anything!! And HijackThis has never failed me in the past.

And all the ignorant morons on the steam chat the other night trying to convince me I have a terrible PC destroying virus (by making up symptoms that I never had), but failing to, then falling out with me in an immature manner were rather unhelpful, biased and downright logically flawed. Die in a fire.


To all the people smart enough to not jump to conclusions and were genuinely wanting to help me out, thanks alot guys! <3
 
Waah, cry some more. Your impotent anger was just a front for your being unable to even get into safe mode when it was recommended to you. Pardon everyone else if being completely unable to start your comp in safe mode damages your credibility, particularly when you claim such mastery over your PC and you're pretending to know better than the people you're requesting help from.

Where's your evidence that there's something wrong with the SAS installer? Never mind, next time don't even ask for help, no one will waste their time on you.
 
So I just finally fixed my problem yesterday with GooRedFix. I guess it was just an FF extension that snuck it's way in there. Haven't seen a redirect since.
 
Back
Top