Jump to content

Hello, so this one day i went to download a COC computer version (which does not exist) and got a virus, (well not a virus just an annoying piece of crap because i scanned it with avast) and my search engine is stuck at a "SafeSearch" yahoo thingy and i can't change it because the search engine is 'enforced' by the admin when i am the admin.

 

 

I don't care how to solve this I will not wipe my computer though, there's lots of data on this... 600GB hard drive? i don't know.

 

Have a good day people :D :D D:

Link to comment
https://linustechtips.com/topic/338529-virus/
Share on other sites

Link to post
Share on other sites

Hello, so this one day i went to download a COC computer version (which does not exist) and got a virus, (well not a virus just an annoying piece of crap because i scanned it with avast) and my search engine is stuck at a "SafeSearch" yahoo thingy and i can't change it because the search engine is 'enforced' by the admin when i am the admin.

 

 

I don't care how to solve this I will not wipe my computer though, there's lots of data on this... 600GB hard drive? i don't know.

 

Have a good day people :D :D D:

What browser are you using?

01101110 01101111 00100000 01101111 01101110 01100101 00100000 01101100 01101111 01110110 01100101 01110011 00100000 01111001 01101111 01110101


Main Rig: i7-4790K | Corsair H100i | Asus Z97 | 16GB Ripjaws | 4TB WD Black/512GB SSD | x2 R9 290x | NZXT H440 | HX1000i | 6 Noctuas   [spoiler=SILENT BUILD] Silent build: i5-4460, Be Quiet! Pure Rock, Asrock H97, 8GB HyperX, Samsung 850 Evo 500gb, MSI GTX 970, Be Quiet! Silent Base 800, EVGA Supernova GS 650w 

AMD CPU's. [spoiler=] thats right m8 get 420 no scoped 
Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4618141
Share on other sites

Link to post
Share on other sites

You have adware on your PC, just run Malwarebytes, Adwcleaner and Junkware Removal Tool.

If you have Chrome and after you finish running those 3 programs, just go to settings and make sure all the search engines are correct. Then double check extensions if there is anything else thats bad and just delete. 

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4618495
Share on other sites

Link to post
Share on other sites

Would recommend downloading both malwarebytes and adwceaner.  

Desktop 1: CPU: Intel Core i7 4770  GPU: Nvidia Geforce GTX 960 Ram: Crucial DDR3 2x8GB 1600 MHz  Storage: Samsung 850 Evo 250GB and Segate 1TB Hard drive  Desktop 2: CPU: Intel Pentium G3258  GPU: AMD R7 250  Ram: Corsair Vengance DRR3 2x8GB 1600 MHz  Mobo: MSI H81M-E33  PSU: Corsair CX430M  Case: Rosewill MicroAtx Mini Tower

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4619143
Share on other sites

Link to post
Share on other sites

Download and run:
ADWCleaner
Adware-removal-rool
Combofix
Hitmanpro
RogueKiller
MSE
Malwarebytes
and Spybot S&D 1.6.2

Run them all as an admin.

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4621544
Share on other sites

Link to post
Share on other sites

i have scanned my computer with all the programs but it still won't go away, I also tried reinstalling chrome out right but no success there

the malware is probably stuck in the Registry key. Try running MalwareBytes

01101110 01101111 00100000 01101111 01101110 01100101 00100000 01101100 01101111 01110110 01100101 01110011 00100000 01111001 01101111 01110101


Main Rig: i7-4790K | Corsair H100i | Asus Z97 | 16GB Ripjaws | 4TB WD Black/512GB SSD | x2 R9 290x | NZXT H440 | HX1000i | 6 Noctuas   [spoiler=SILENT BUILD] Silent build: i5-4460, Be Quiet! Pure Rock, Asrock H97, 8GB HyperX, Samsung 850 Evo 500gb, MSI GTX 970, Be Quiet! Silent Base 800, EVGA Supernova GS 650w 

AMD CPU's. [spoiler=] thats right m8 get 420 no scoped 
Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4622753
Share on other sites

Link to post
Share on other sites

Download and run:

ADWCleaner

Adware-removal-rool

Combofix

Hitmanpro

RogueKiller

MSE

Malwarebytes

and Spybot S&D 1.6.2

Run them all as an admin.

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4623242
Share on other sites

Link to post
Share on other sites

i have scanned my computer with all the programs but it still won't go away, I also tried reinstalling chrome out right but no success there

So you said you have "Safe Search" installed. Here's a removal guide: http://malwaretips.com/blogs/safesearch-net-removal/

01101110 01101111 00100000 01101111 01101110 01100101 00100000 01101100 01101111 01110110 01100101 01110011 00100000 01111001 01101111 01110101


Main Rig: i7-4790K | Corsair H100i | Asus Z97 | 16GB Ripjaws | 4TB WD Black/512GB SSD | x2 R9 290x | NZXT H440 | HX1000i | 6 Noctuas   [spoiler=SILENT BUILD] Silent build: i5-4460, Be Quiet! Pure Rock, Asrock H97, 8GB HyperX, Samsung 850 Evo 500gb, MSI GTX 970, Be Quiet! Silent Base 800, EVGA Supernova GS 650w 

AMD CPU's. [spoiler=] thats right m8 get 420 no scoped 
Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4623358
Share on other sites

Link to post
Share on other sites

ok it says it's enforced by my admin and will not go away, like in big companies. i am just going to use firefox untill it gos away tell me how to find it in the reg or something like that

Did you run ALL of the tools i told you to?

As for chrome being controlled by admin:

Here are step by step instructions:

1. Save these instructions somewhere safe and close all instances of Chrome 

2. Press the Windows key + R, type regedit.exe and press Enter 

3. Navigate to HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\ 

4. Double-click on UpdateDefault or DefaultUpdate 

5. Change the data type 0 to 1 

6. Exit the registry editor and launch Chrome

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4632095
Share on other sites

Link to post
Share on other sites

i ran all the tools you asked for exept MSE because i have avast which is better.

 

i did the reg edit and nothing worked. i did find all the safesearch things and it's still there.

(btw i am using firefox to respond and use as my daliy driver)

and also it is being controlled with admin tools and one last thing, i did not find the reg you told me to go to because it was not there

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4632412
Share on other sites

Link to post
Share on other sites

i ran all the tools you asked for exept MSE because i have avast which is better.

 

i did the reg edit and nothing worked. i did find all the safesearch things and it's still there.

(btw i am using firefox to respond and use as my daliy driver)

and also it is being controlled with admin tools and one last thing, i did not find the reg you told me to go to because it was not there

MSE is worlds better than Avast!

I can't tell you how many forum posts here alone have been solved by removing Avast!.

 

Spoiler

I7 4790K @4.5 Ghz 1.294V

VALIDATION, MSI Z97 Gaming 7, 24GB DDR3 1600, Asus Strix 1070 8GB OC@ 2.2Ghz, Corsair graphite series 760T (Black), Cooler master V850, NH-D15 w/LNA ,1TB Samsung 850 Evo,  480GB Sandisk Ultra II SSD, 3TB Seagate Barracuda x 3, 1 TB WD Passport (Backup drive), 2 TB WD Passport (Backup Drive 2),  Windows 10 Pro x64 (uhg), Logitech G900 Chaos (Main), Steelseries Rival (FADE) (Courtesy of Edzel Yago, Thanks Ed), Steelsieres Rival 300 Hyperbeast Special Edition, Coolermaster Quickfire TKL (MX Blue), Razer Blackwidow Tournament edition (Greens).  Audio: Sennheiser HD598 SE, Edifier S1000DB, AudioEngine D1 DAC; Yamaha MG06X Mixer & AudioTechnica AT2020.

 

Phones; Daily drivers: Nexus 6P 64GB/iPhone 6 (Music), Apple Watch, Apple AirPods.

Laptop: 2015 Macbook Pro 13, 8GB of RAM, 2.7Ghz i5, 240GB Apple SSD. 

 

Spoiler

Plex Server: i7 3770, Gigabyte Board, 16GB DDR3 1600, Asus Strix GTX 1050ti 4GB, 120GB SSD Boot Drive, 8 x 3TB Seagate Barracuda, Rosewill RSV-R4000 With 2 Rosewill Hot Swap 4x Backplane Bays, 1050 Watt Corsair HX Series PSU,Hyper T2, Windows 10 Pro 

 

I also do Youtube, check me out!

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4632787
Share on other sites

Link to post
Share on other sites

i ran all the tools you asked for exept MSE because i have avast which is better.

 

i did the reg edit and nothing worked. i did find all the safesearch things and it's still there.

(btw i am using firefox to respond and use as my daliy driver)

and also it is being controlled with admin tools and one last thing, i did not find the reg you told me to go to because it was not there

Go to C:\users\%username%\appdata\local\google\chrome\user data\default\    (you can copy paste this into your start menu and it will take you right there.)

And copy Bookmarks and Bookmarks.bak to a seperate folder like on your desktop.

 

Now Uninstall Google Chrome and make sure to tick the box 'remove all settings'

Now go back to that *\local\google folder and make sure chrome isn't there, if it is delete it.

 

Now reinstall Chrome and once it's done installing close it, and copy paste those 2 bookmark files back into where they originally where.

 

Now chrome should be adware free and your bookmarks saved. 

Link to comment
https://linustechtips.com/topic/338529-virus/#findComment-4633228
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×