Tuesday, April 12, 2011

When I search for something in Google, I click on a link and it brings up some weird search page. Why?

I came across many online users puzzled and worried about one of the most spreading malware these days via Internet called the go.google.com redirects virus which redirects the user browser while browsing to some fake sites containing adsense ads.

Go.google.com mainly redirects the google search results to corrupt adsense web sites and also stops user from downloading files from the Internet. When user tries to download by clicking on download links go.google.com displays the following fake errors
  • Internet explorer cannot open web page
  • filename.exe is not a valid win 32 application
  • Setup files are corrupted. Please obtain new copy of program
Go.google.com is browser hijacker tool which infects your web browser such as firefox and Internet explorer and redirects the user to the following sites
  • clearask.com
  • web-analytics.google.com
  • brittaniasearch.com
  • go.google.com
Let’s see the symptoms of this virus and how can we remove go.google.com on Windows Vista and Windows XP.
Most common symptoms of go.google.com browser hijacker

  • It corrupt Registry files and "Blue Screen of Death"
  • It changes the desktop background
  • IE and Firefox slows down after getting infected by go.google.com virus
  • Also infects e-mail attachments, messenger and other freeware programs
There are two tools available on the Internet which can remove go.google.com virus from Windows XP and Windows Vista

Note: Both of these tools are Shareware programs classified as spyware and antivirus tools which lets you remove the virus completely free of cost, so you can use them in their trail version time period.

For Those who are not able to remove go.google.com virus by above mentioned tools can try Malwarebytes’ Anti-Malware (MBA-M)


Another Solution to fix Hacked Browser
 

Download and Run UnHack Me tool that will fix any browser hijacking, hacking and redriect issues.
The main difference between UnHackMe and other antirootkit software is the detection method.
UnHackMe tries to detect the hidden rookits by watching the computer from early study of the boot process till the normal Windows mode.

UnHackMe is a first bootwatch antirootkit.
Most modern antirookit programs try to detect the rookits when the rookit is already active. They use the very complex methods for detecting hooked system functions. But rookit authors creates the new tricks and this war will not have the end.

Download UnHack Me tool


Another Method To Fix Go.google.com redirect problem:

There is Malware Removal tool called Combofix which can fix this go.google.com virus if the above methods are not working for you. Beware that its a DOS based tool and do not interrupt the tool while it is running as it may cause problems with registry entries. Be sure that you are not running any softwares while running scan using Combofix.


Last Method to Remove Go.google.com virus(manually)

Go to Start > Control Panel > System > Hardware > Device Manager > View > Show Hidden Devices.
Scroll down to “Non-plug and Play Drivers” and click the plus icon to open those drivers.
Then search for “TDSSserv.sys”
Right click on it, and select “Disable”
Note: If you select Uninstall, it will install itself again when you reboot the system, so DON’T select Uninstall.
Restart your pc.
You can now update your Antirus/Malware/Rootkit softwares and the go.google rubbish will stop.
Its now up to the Anti-Virus/Malware/Spyware companies to make an effort to stop this, and not rely on simple basic home PC user’s like myself to save the world
In simple terms, TDSSserv.sys is a service/server redirecting all software updates to 127.0.0.1 (your own computer) so they won’t update.

If you have any comment's queries i would be happy to answer them.