Jump to content


Virus - Can't watch videos/happili redirect


  • Please log in to reply
7 replies to this topic

#1 rzombie1988

rzombie1988

    Perverted By Language

  • Members
  • 4,980 posts

Posted 28 March 2012 - 11:05 PM

I got a virus the other day and I'm having two big problems:

1) I cannot watch any videos. All previous videos that I could watch no longer work. This includes quicktime, windows media player, media player classic and vlc player.
2) I'm getting redirected from google searches onto happili.com and gimmeanswers.com
3) Internet websites keep crashing. I constantly get the operation aborted error and I get messages that IE needs to close.

I've downloaded about 6 different programs to fix the viruses but nothing has worked. Tried Norton, McAfee, Spybot, CCleaner and nothing.

Any advice? I tried to do system restore but of course that doesn't work either.
http://prowresblog.blogspot.com

Currently featuring:
Weekly WWE, TNA, ROH, Japanese and Mexican Wrestling Reports

#2 Ryan

Ryan

    More Songs About Being a Fucking Champion

  • Members
  • 9,376 posts

Posted 28 March 2012 - 11:40 PM

I assume you've tried this? The second post, not the HijackThis dump. There are other similar methods. It sounds like it's a root-kit of some sort.

http://forums.techgu...i-redirect.html
Posted Image

#3 J.T.

J.T.

    Team Leeroy Jenkins

  • Members
  • 12,704 posts

Posted 29 March 2012 - 03:19 PM

My girlfiend got hit with this over the weekend.  Getting it off her laptop was a fucking chore.

Kapersky has a tool called TDSSKiller that is specifically designed to remove rootkits.  She had the version of the rootkit that attempts to disable TDSSKiller, but I renamed the executable and finally got it to work.

Failing that, you will probably have to go old school.  

Boot your computer into Safe Mode while logged on as an administrator and delete the following registry keys:
  • %AllUsersProfile%\{random}\
  • %AllUsersProfile%\{random}\*.lnk
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce [RANDOM]
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run [RANDOM]
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [RANDOM].exe
  • HKEY_CURRENT_USER\Software\[RANDOM]
Those are the ones associated with the redirect rookit.

If you are uncomfortable with making registry edits, then hit up the support forums in places like ArsTechnica.

I think there is also a YouTube video tutorial about how to manually remove the happili.com rootkit.
And if you can't enjoy a horror flick while high and surrounded by black people, what the fuck are you even doing watching horror flicks?
-tlm

Your DVDVR Online Gaming Meeting Hub Thread!

#4 rzombie1988

rzombie1988

    Perverted By Language

  • Members
  • 4,980 posts

Posted 22 April 2012 - 02:19 AM

Thanks for the tip. It worked but everything culminated and the pc died a week later. I was able to save most of my stuff though so its okay.
http://prowresblog.blogspot.com

Currently featuring:
Weekly WWE, TNA, ROH, Japanese and Mexican Wrestling Reports

#5 RandomAct

RandomAct

    Perverted By Language

  • Members
  • 4,880 posts

Posted 22 April 2012 - 04:15 AM

In the future, my be-all, end all for this sort of thing is Combofix.  It has never failed me.
The important thing to remember is that Abraham Lincoln always had respect for the business, and always busted his ass for the boys in the back. And those boys were our forefathers, and that back was AMERICA.---S.L.L

#6 Chaos

Chaos

    PALACE OF SWORDS REVERSED

  • Members
  • 1,507 posts

Posted 23 April 2012 - 12:10 AM

Next time you get a bad infection... give Malwarebytes a try. If your computer will allow it to install (I've had some computers that were beyond this point, and I just did a full reformat), Malwarebytes seems to get the job done in most cases.  The free one is great, and the paid service is supposed to be that much better.
My Blog Where I Diatribe About Pop Culture

To Watch Queue: Rashomon, Dexter Season 7

Now Playing: Mass Effect, FIFA 13, Max Payne 3

Now Reading: Game of Thrones, Sun Also Rises, Invisible Man

View PostMike Cyclone, on 29 September 2011 - 02:58 AM, said:

The Yankees are like Ric Flair to the Red Sox' Sting. They strung them along and played it up like they were buddies and tag team partners, then right at crunch time- BAM.

And you'd think Sting would know better by now.

#7 RandomAct

RandomAct

    Perverted By Language

  • Members
  • 4,880 posts

Posted 23 April 2012 - 12:44 AM

I use the paid Malwarebytes, and it's awesome.  Excellent real time protection to go along with the deep scan.  I use MBam and Combofix on all of my repairs.
The important thing to remember is that Abraham Lincoln always had respect for the business, and always busted his ass for the boys in the back. And those boys were our forefathers, and that back was AMERICA.---S.L.L

#8 Vick

Vick

    Bend Sinister

  • Members
  • 3,768 posts

Posted 23 April 2012 - 05:30 PM

Use Malwarebytes and Microsoft Security Essentials in the future.