Ask Paula!

...bringing you notes from the field...
posts - 117 , comments - 87 , trackbacks - 0

My Links

News

Copyright © 2008-2014 Paula DiTallo

Tag Cloud

Article Categories

Archives

Post Categories

Image Galleries

.NET Development

Enterprise Integration

Entertainment - Games

Java Development

Mobile/PDA Development

Professional Affiliations

Why does my browser take me to Scour.com? (redirect virus)

The "scour" or Rootkit.Win32.TDSS virus has a long history which can be found here: http://en.wikipedia.org/wiki/Scour

Here is the primary symptom: after searching for something in your web browser using google, one of the results that you click on redirects you to scour.com.

If you've executed ClamWin, Malwarebytes, McAfee, Norton, etc. to find and isolate the virus without any luck--this isn't really a surprise, since this virus attaches to existing system drivers.

I only know of one reliable package that will remove this without ill effects--like adding new spyware. This package is called TDSSKiller. I have seen multiple websites that claim to have this software available, but the one that I know is reliable is located here:

http://support.kaspersky.com/viruses/solutions?qid=208280684

Once you go to Kaspersky's tech support site, the TDSSKiller zip file is available for downloading.

When you execute this software, you will be able to "cure" or repair the infected driver. Remember to jot down the name of the driver for future reference--should you need to reinstall the driver from a "same-as" working computer, or your install disk if the repair is ineffective. The driver that happened to get infected on my computer was the tcpip.sys driver. This caused my win sockets to loose their ip addresses. In most other instances, less critical drivers such as HDAudBus.sys are infected. In my case, I was not through correcting my computer problems until I corrected the broken WinSock issue and loaded an earlier version of the tcpip.sys driver from: C:\WINDOWS\ServicePackFiles\i386 which I placed in: C:\WINDOWS\system32\drivers

Don't forget to reboot your computer after your repair!

Once you download TDSSKiller and cure/repair your infected driver(s), the redirect on google searches should disappear .

Print | posted on Wednesday, June 29, 2011 7:58 PM | Filed Under [ Malware, Viruses, SpyWare ]

Feedback

Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

Yep, that TDSS killer worked awesome, I was getting so tired of scour.com, I was about to throw my laptop out the window
7/7/2011 10:12 PM | Cash
Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

I'm glad tdss killer worked out for you.
7/8/2011 9:20 AM | plditallo
Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

Thanks! this finally worked after trying many other things :)
10/2/2011 1:24 AM | Alice
Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

Nothing found...still on the trail to find a solution.
8/2/2012 9:19 AM | Paula Thornton
Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

oh my gosh thank you so much! Total life saver!
8/26/2012 11:41 AM | Phi
Gravatar

# re: Why does my browser take me to Scour.com? (redirect virus)

It did not find the Scour.com malware, even though I get redirected there constantly. But I thank you for your dedication in defeating these problems. If you have any ideas let me know, this computer is basically ruined without being able to use search. Thanks, Dan
10/26/2012 11:03 PM | Dan
Post A Comment
Title:
Name:
Email:
Comment:
Verification:
 
 

Powered by: