A Windows Vista forum. Vista Banter

Welcome to Vista Banter.

You are currently viewing our boards as a guest which gives you limited access to view most discussions, articles and access our other FREE features. By joining our free community you will have access to ask questions and reply to others posts, upload your own photos and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact contact support.

Go Back   Home » Vista Banter forum » Microsoft Windows Vista » Performance and Maintainance of Windows Vista
Site Map Home Register Authors List Search Today's Posts Mark Forums Read Web Partners

Performance and Maintainance of Windows Vista A forum for performance and maintenance tasks in Windows Vista. (microsoft.public.windows.vista.performance_maintainance)

A trojan that is redirecting to Google and shopping sites



 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old February 11th 09, 08:11 AM posted to microsoft.public.windows.vista.performance_maintenance
Frank Crap
external usenet poster
 
Posts: 1
Default A trojan that is redirecting to Google and shopping sites

I don't know if this is the right place to mention this, but I have been going nuts because of a virus that "redirects" my web wandering away from the Microsoft software update website to Google Search or some other url to take me shopping and it wouldn't allow me to go to anti virus or security pages. I know it sounds unreal, but these bugs are designed now to evolve and to practically think for themselves.

I was able to find a virus geek website and got the key to the problem. The bug's name is msqpdxserv.sys and the website for information on killing it is at:

http://www.myantispyware.com/2009/01...an-w32tidserv/

I found the virus on my pc at: C:\Windows\system32\drivers\msqpdxxviytpxr.sys and it's a hidden file. I was able to view it there with GMER system application. It's free to download and did the job when the Microsoft apps couldn't do a thing. But the thing evolves and clones itself with different names. So soon after I tested and saw that it was gone, it was back. I hve to back and get all the cousins it's cloned.

I coudn't find a newsgroup for viruses so I posted here. If anyone could steer me to a better group, I'd appreciate it. And if you have had problems with this bug, let me know. Thanks all....
  #2 (permalink)  
Old February 11th 09, 09:41 AM posted to microsoft.public.windows.vista.performance_maintenance
DL
external usenet poster
 
Posts: 1,028
Default A trojan that is redirecting to Google and shopping sites

microsoft.public.security.virus
is one group

"Frank Crap" wrote in message
...
I don't know if this is the right place to mention this, but I have been
going nuts because of a virus that "redirects" my web wandering away from
the Microsoft software update website to Google Search or some other url to
take me shopping and it wouldn't allow me to go to anti virus or security
pages. I know it sounds unreal, but these bugs are designed now to evolve
and to practically think for themselves.

I was able to find a virus geek website and got the key to the problem. The
bug's name is msqpdxserv.sys and the website for information on killing it
is at:

http://www.myantispyware.com/2009/01...an-w32tidserv/

I found the virus on my pc at:
C:\Windows\system32\drivers\msqpdxxviytpxr.sys and it's a hidden file. I was
able to view it there with GMER system application. It's free to download
and did the job when the Microsoft apps couldn't do a thing. But the thing
evolves and clones itself with different names. So soon after I tested and
saw that it was gone, it was back. I hve to back and get all the cousins
it's cloned.

I coudn't find a newsgroup for viruses so I posted here. If anyone could
steer me to a better group, I'd appreciate it. And if you have had problems
with this bug, let me know. Thanks all....


  #3 (permalink)  
Old February 12th 09, 03:48 AM posted to microsoft.public.windows.vista.performance_maintenance
Mick Murphy
external usenet poster
 
Posts: 5,685
Default A trojan that is redirecting to Google and shopping sites

These 2 programs should clean it out.
Info below on how to install, if you can not get to thie websites for updates:

http://www.spybot.info/en/index.html

Spybot Search & Destroy 1.6 is a very good, FREE Anti-Spyware Program.
Download, install, update, and immunize your System with it.
Then SCAN with it.
Update it, and scan your System once a fortnight.

http://www.malwarebytes.org/mbam.php

Malwarebytes is as the name says, a Malware Remover!
For the Free version scroll down their page to either download from
Download.com, or Major Geeks.com

Download, install, and update.

Important Safe Mode
If you happen to find a problem that you can’t uninstall / delete, reboot
the computer, and go into Safe Mode.
To get into Safe mode, tap F8 right at Power On / Startup, and use UP arrow
key to get to Safe Mode from list of options, then hit ENTER.
RESCAN your computer with your Anti-Virus, Malwarebytes and Spybot S & D
while in Safe Mode.

If unable to install above Programs in Normal Mode:
Sometimes Trojans, Viruses, Malware, etc stop you installing and/or updating
Programs to remove them.
If that happens, reboot into Safe Mode with Networking (from F8 list of
Startup Options), and install, update and scan from there.
,
--
Mad Mike


"Frank Crap" wrote:

I don't know if this is the right place to mention this, but I have been
going nuts because of a virus that "redirects" my web wandering away from
the Microsoft software update website to Google Search or some other url
to take me shopping and it wouldn't allow me to go to anti virus or
security pages. I know it sounds unreal, but these bugs are designed now
to evolve and to practically think for themselves.

I was able to find a virus geek website and got the key to the problem.
The bug's name is msqpdxserv.sys and the website for information on
killing it is at:

http://www.myantispyware.com/2009/01...servsys-trojan
-w32tidserv/

I found the virus on my pc at:
C:\Windows\system32\drivers\msqpdxxviytpxr.sys and it's a hidden file. I
was able to view it there with GMER system application. It's free to
download and did the job when the Microsoft apps couldn't do a thing. But
the thing evolves and clones itself with different names. So soon after I
tested and saw that it was gone, it was back. I hve to back and get all
the cousins it's cloned.

I coudn't find a newsgroup for viruses so I posted here. If anyone could
steer me to a better group, I'd appreciate it. And if you have had
problems with this bug, let me know. Thanks all....

 




Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:23 PM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.Search Engine Optimization by vBSEO 3.0.0 RC6
Copyright ©2004-2012 Vista Banter.
The comments are property of their posters.