Solved PC infected with initialsite123.com

Blackorange

New Member
Thread author
Apr 23, 2017
4
Hello,


Please download Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.


  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.

    x5o4gh.png

  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
Hi, I got the same problem as ashvern. I've exhausted all the method online, but still can't get rid of it from my chrome. Whatever I did, It will always automatically become hack as default search engine (as below).
207tdzt.png
[/IMG]
207tdzt.png

The attached files are generated in the Farbar Recovery Scan Tool.

Would you please help me to solve this?

Many thanks
 

Attachments

  • Addition.txt
    36.3 KB · Views: 2
  • FRST.txt
    85.2 KB · Views: 2

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
Hello,


Please download Zemana AntiMalware and save it to your Desktop.
  • Install the program and once the installation is complete it will start automatically.
  • Without changing any options, press Scan to begin.
  • After the short scan is finished, if threats are detected press Next to remove them.
Note: If restart is required to finish the cleaning process, you should click Reboot. If reboot isn't required, please restart your computer manually.
  • Open Zemana AntiMalware again.
  • Click on
    4zu6vb.jpg
    icon and double click the latest report.
  • Now click File > Save As and choose your Desktop before pressing Save.
  • The only left thing is to attach saved report in your next message.
 

Blackorange

New Member
Thread author
Apr 23, 2017
4
Hi, after I scanned, and clicked next to remove, it tried to open my Chrome and do some search. It seems to be solved. But when I open the Setting in my Chrome, the initialsite123 appeare again and regenerated as my default search engine. Then everything back to before. The attached is the latest report from Zenama AntiMalware. Any other method to get rid of it? Sorry I'm so desperate.
 

Attachments

  • 2017.04.28-09.46.40-i0-t92-d5.txt
    2.9 KB · Views: 3

TwinHeadedEagle

Level 41
Verified
Mar 8, 2013
22,627
FRST.gif
Scan with Farbar Recovery Scan Tool

Please re-run Farbar Recovery Scan Tool to give me a fresh look at your system.
  • Right-click on
    FRST.gif
    icon and select
    RunAsAdmin.jpg
    Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Make sure that Addition.txt option is checked.

    2873ryc.png

  • Press Scan button and wait.
  • The tool will produce two logfiles on your desktop: FRST.txt and Addition.txt.
Please attach report into your next reply.
 

Blackorange

New Member
Thread author
Apr 23, 2017
4
Hi,

That's alright. As long as I did not open the settings in my Chrome, it will not regenerate as default search engine. If it affects other software in the future. I'll come back to you.

Thank you very much for your prompt help.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top