Kalarm
2010-11-19, 02:13
Hello, I have sadly installed a program named "SaveTubedVideo" which I DLed in haste for my sister.
Sadly, the program install an annoying search hijacker (who seem to also hide my hidden files).
I have done some research, and felt on http://forums.spybot.info/showthread.php?t=60043
I followed most indications that were said to have fixed the problem, but it STILL happen. There is also instructions that seem to be for windows XP *IE, combofix doesn't work on vista 64*.
How do I get rid of this? I did the OTL script given in the post and here is my results.
All processes killed
========== OTL ==========
Prefs.js: "www.google-feed.net" removed from browser.search.defaultenginename
Prefs.js: "Web Search" removed from browser.search.order.1
Prefs.js: "Google" removed from browser.search.order.2
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "http://www.veerboo.com/results.php?q=" removed from keyword.URL
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56502 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Maxime
->Temp folder emptied: 19448174 bytes
->Temporary Internet Files folder emptied: 29173452 bytes
->Java cache emptied: 128094 bytes
->FireFox cache emptied: 45635069 bytes
->Google Chrome cache emptied: 189658951 bytes
->Flash cache emptied: 62012 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 67400 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 28474707 bytes
Total Files Cleaned = 298,00 mb
OTL by OldTimer - Version 3.2.17.3 log created on 11182010_184636
Files\Folders moved on Reboot...
C:\Users\Maxime\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KEKPZTJ2\ADSAdClient31[1].txt moved successfully.
File move failed. C:\Windows\SC6BDB14B.tmp scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Also, I just tried to do a search in firefox, and it seem to not be redirecting now. It still does it in google chrome tho *which is my main browser*.
Sadly, the program install an annoying search hijacker (who seem to also hide my hidden files).
I have done some research, and felt on http://forums.spybot.info/showthread.php?t=60043
I followed most indications that were said to have fixed the problem, but it STILL happen. There is also instructions that seem to be for windows XP *IE, combofix doesn't work on vista 64*.
How do I get rid of this? I did the OTL script given in the post and here is my results.
All processes killed
========== OTL ==========
Prefs.js: "www.google-feed.net" removed from browser.search.defaultenginename
Prefs.js: "Web Search" removed from browser.search.order.1
Prefs.js: "Google" removed from browser.search.order.2
Prefs.js: true removed from browser.search.useDBForOrder
Prefs.js: "http://www.veerboo.com/results.php?q=" removed from keyword.URL
========== COMMANDS ==========
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56502 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Maxime
->Temp folder emptied: 19448174 bytes
->Temporary Internet Files folder emptied: 29173452 bytes
->Java cache emptied: 128094 bytes
->FireFox cache emptied: 45635069 bytes
->Google Chrome cache emptied: 189658951 bytes
->Flash cache emptied: 62012 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 67400 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 28474707 bytes
Total Files Cleaned = 298,00 mb
OTL by OldTimer - Version 3.2.17.3 log created on 11182010_184636
Files\Folders moved on Reboot...
C:\Users\Maxime\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KEKPZTJ2\ADSAdClient31[1].txt moved successfully.
File move failed. C:\Windows\SC6BDB14B.tmp scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Also, I just tried to do a search in firefox, and it seem to not be redirecting now. It still does it in google chrome tho *which is my main browser*.