Reply
Bot Obliterator
Quads
Posts: 13,259
Registered: ‎07-21-2008

Re: GOOGLE REDIRECTS TO http://abnow.com

[ Edited ]

Just don't plug it back into the Computer if the Flash Drive is infected.

 

Flash Drive is the same as what people call Pen Drive

 

Quads

Contributor
shevo11
Posts: 93
Registered: ‎03-14-2012

Re: GOOGLE REDIRECTS TO http://abnow.com

Ok, no matter if i format it?

Bot Obliterator
Quads
Posts: 13,259
Registered: ‎07-21-2008

Re: GOOGLE REDIRECTS TO http://abnow.com

When you plug it in you get infected so no don't plug it in.

 

If you know someone with very good PC knowledge or a PC shop, they should know how to isolate the Pen Drive so when it's plugged in nothing at all runs,  then they can wipe (format) the drive.

 

If it's a really cheasp drive it may not be worth it, but just thow it away.

 

Quads

Contributor
shevo11
Posts: 93
Registered: ‎03-14-2012

Re: GOOGLE REDIRECTS TO http://abnow.com

Ultimately the computer is working fine, but sometimes there are porlbems involving the symantec, besides that, when this problems appear, i run the malwarebytes and it finds always a rootkit, it removes it on reboot, but then when i run again the malwarebytes, the rootkit is found again and again.

Bot Obliterator
Quads
Posts: 13,259
Registered: ‎07-21-2008

Re: GOOGLE REDIRECTS TO http://abnow.com

What is the file??

 

Quads

Contributor
shevo11
Posts: 93
Registered: ‎03-14-2012

Re: GOOGLE REDIRECTS TO http://abnow.com

It's called str.sys and it's a Rootkit.Agent located at a folder called drivers at the system32 folder.

Contributor
shevo11
Posts: 93
Registered: ‎03-14-2012

Re: GOOGLE REDIRECTS TO http://abnow.com

It seems tat malwarebytes removes it only temporaly, and i have my system restore OFF still.

Bot Obliterator
Quads
Posts: 13,259
Registered: ‎07-21-2008

Re: GOOGLE REDIRECTS TO http://abnow.com

I am trying to find out if malwarebytes has the Junction problem back again.

 

Quads

Contributor
shevo11
Posts: 93
Registered: ‎03-14-2012

Re: GOOGLE REDIRECTS TO http://abnow.com

Any news?

 

Do you reccomend me to enable the malwarebytes protection? I'm only using the scaning.

 

 

Bot Obliterator
Quads
Posts: 13,259
Registered: ‎07-21-2008

Re: GOOGLE REDIRECTS TO http://abnow.com

I have nothing that says the actual malware that used that object from a couple of years ago is back again, and through all the logs none of the logs found it.

 

I did say your Symantec product appeared somewhat broken, which could be causing the slow down, which has happened in the past with Norton products, where Norton needs completely removing in full and installing fresh and new.

You may have to do that with your Symantec product. but for the complete removal and fresh install of SEP you will need to use the corporate forum that is for those products.

 

Quads