Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

Resolved Question

Google Redirect Trojan Virus

Sep 26, 2012 11:04AM PDT

Help! I have sought help from AVG support and Dell computer support and both have been unable to remove this malicious Trojan virus. I have scanned my system with AVG, Malwarebytes, and Super AntiSpyware. None of these programs picked up nor eliminated the Google Re-direct Trojan virus. AVG, said that could eliminate it if I paid one of their techs a little over $100 and gave them remote access.
I am at my wits end. Can anybody help short of re-imaging my Dell Win7 PC? Thanks for helping!

Discussion is locked

dratner has chosen the best answer to their question. View answer

Best Answer

- Collapse -
It would help to know..
Sep 27, 2012 3:11AM PDT

It would help to know what AVG and Dell support suggested you do, so as not to duplicate time, effort and work. It would also help to know a bit more about what you're experiencing.

In the meantime ........

• Did they have you scan with:

Kaspersky's TDSSKiller - Instructions are listed below. (Additional instructions can be found here)
http://support.kaspersky.com/viruses/solutions?qid=208280684

Hitman Pro - It's free to use without a license. If a virus is found, you will receive a free 30-day license to remove the threat. Note: There are separate downloads for 32 and 64-bit versions of Windows 7.

http://www.surfright.nl/en/home/

ESET's Online Scanner - Their FAQ and Help sections should answer any questions you might have. (Temporarily disable your A/V prior to running the scan)

• Did they have you check your LAN settings to make sure they haven't been changed to use a Proxy Server?:

Open Internet Explorer. Go to Tools>Internet Options>Connections Tab. Click on the "LAN Settings" button. If there is a check in the box "Use a proxy server for your LAN", uncheck it. Click "OK". Then "OK", again.

Open Firefox. Go to Tools>Options>Advanced. Click on the "Network" tab. To the right of where you see ""Configure how Firefox connects to the Internet", click on the "Settings" button. Put a tick mark next to "No proxy". Click "OK". Then "OK", again.

• Did they suggest resetting your router to its default configuration?

• Did they suggest resetting the HOSTS file?

... and the list goes on.

Let us know..
Carol

- Collapse -
solved?
Sep 27, 2012 6:56AM PDT

Hi Carol:
It appears that your combination of anti-malware programs may just have removed the Google Re-direct Trojan. I would like to keep using my PC for a day or so before I can make a definite Assessment. I did not reset the router as my wife's Dell laptop was not experiencing the redirect virus and she is on the same router. The ESET program took the longest to run and had the most "hits". Is there a program that I can permanently run along side AVG or do I need to switch from AVG which never detected the Google re-redirect or any other malware? Thank you so much for helping me. I will keep you posted.

- Collapse -
Good news .. so far..
Sep 27, 2012 7:54AM PDT

There's no need to reset the router, if you think you straightened out the problem. It was only an added suggestion.

A rootkit is known to be the cause of the Google redirect virus infection. Switching from AVG wouldn't have prevented it. While having (updated) security software in place is important, I don't rely heavily on any of them. It's more about the actions you take - or don't take.

You mentioned you scanned with Malwarebytes' Anti-Malware and SUPERAntiSpyware. I would keep one (if not both) as a stand-alone scanner. Additionally, if you don't have a safe browsing tool such as Web of Trust (WOT), I would install it. I believe AVG does have a link scanner built into it. I haven't read this article in its entirely, but it should help you determine if it's a component of the AVG version you have.

My fingers are crossed..
Carol

- Collapse -
Fixed!
Oct 3, 2012 6:07AM PDT

Carol:
It's been a week and no more Google Re-direct virus. Thanks so much for your help!

- Collapse -
Now.. Great news! Glad we were able to help. :)
Oct 4, 2012 12:03AM PDT

Thanks for posting back and letting us know.

So much for giving AVG .. 'a little over $100'. You did a great job!

Carol