Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Update > No update because of trojan - msqpdxserv.sys

Reply
Thread Tools Display Modes

No update because of trojan - msqpdxserv.sys

 
 
Danielcarlson@hotmail.com
Guest
Posts: n/a

 
      02-11-2009
I finally found out why I kept being redirected when I tried to access
Microsoft updates. I had noticed that my automatic updates hadn't been
happening. So when I saw that two or three weeks ago I sent problem reports
to Microsoft and the usual message I always get said the problem would be
evaluated and an answer was soon to come. It never did..... so I downloaded
every super malware app I could find. I ran them all and it did no good. I
had popups like crazy and kept being redirected from websites to Google or
one of those obnoxious Vimax ad sites or another of the ad sites that Google
is paid to allow on Google Search.

Before I am redirected from here again, I want to tell you all the name of
the trojan and some info to rid yourselves of it. It's a rootkit and it
infected my machine at C:\Windows\system32\drivers\msqpdxserv.sys I found
exactly where and what it was by searching the web for "redirect" and by
downloading a free program: GMER which is a great and apparently strong force
for this sort of thing. I was able to detach it from its perch on one of my
unused, and hidden plug and play drivers in Device Manager.

It loads up and is hidden so few programs can find it. I'm going to look for
the website that gives the fix, but I may not be back if it catches me. I
thought I was rid of it an hour ago, but it creates clones with different
names. I'm going to post this and I'll try to come back with the website.....
we can do this people!!!
 
Reply With Quote
 
 
 
 
PA Bear [MS MVP]
Guest
Posts: n/a

 
      02-11-2009
1. See if you can download/run the MSRT manually:
http://www.microsoft.com/security/ma...e/default.mspx

2. Run this online scan (in safe mode w/networking, if need be):
http://onecare.live.com/site/en-us/center/howsafe.htm

3. Run a /thorough/ check for hijackware, including posting the requested
logs in an appropriate forum.

Checking for/Help with Hijackware
http://aumha.net/viewtopic.php?f=30&t=4075
http://mvps.org/winhelp2002/unwanted.htm
http://inetexplorer.mvps.org/data/prevention.htm
http://inetexplorer.mvps.org/tshoot.html
http://www.mvps.org/sramesh2k/Malware_Defence.htm
http://www.elephantboycomputers.com/...moving_Malware

**Seek expert assistance in
http://spywarehammer.com/simplemachi...php?board=10.0,
http://forums.spybot.info/forumdisplay.php?f=22,
http://aumha.net/viewforum.php?f=30, or other appropriate forums.**

If the procedures look too complex - and there is no shame in admitting this
isn't your cup of tea - take the machine to a local, reputable and
independent (i.e., not BigBoxStoreUSA) computer repair shop.
=====================
Start a free Windows Update support incident request:
https://support.microsoft.com/oas/de...spx?gprid=6527

Support for Windows Update:
http://support.microsoft.com/gp/wusupport

For home users, no-charge support is available by calling 1-866-PCSAFETY in
the United States and in Canada or by contacting your local Microsoft
subsidiary. There is no-charge for support calls that are associated with
security updates.
--
~Robear Dyer (PA Bear)
MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002
AumHa VSOP & Admin http://aumha.net
DTS-L http://dts-l.net/

wrote:
> I finally found out why I kept being redirected when I tried to access
> Microsoft updates. I had noticed that my automatic updates hadn't been
> happening. So when I saw that two or three weeks ago I sent problem
> reports
> to Microsoft and the usual message I always get said the problem would be
> evaluated and an answer was soon to come. It never did..... so I
> downloaded
> every super malware app I could find. I ran them all and it did no good. I
> had popups like crazy and kept being redirected from websites to Google or
> one of those obnoxious Vimax ad sites or another of the ad sites that
> Google
> is paid to allow on Google Search.
>
> Before I am redirected from here again, I want to tell you all the name of
> the trojan and some info to rid yourselves of it. It's a rootkit and it
> infected my machine at C:\Windows\system32\drivers\msqpdxserv.sys I found
> exactly where and what it was by searching the web for "redirect" and by
> downloading a free program: GMER which is a great and apparently strong
> force for this sort of thing. I was able to detach it from its perch on
> one
> of my unused, and hidden plug and play drivers in Device Manager.
>
> It loads up and is hidden so few programs can find it. I'm going to look
> for
> the website that gives the fix, but I may not be back if it catches me. I
> thought I was rid of it an hour ago, but it creates clones with different
> names. I'm going to post this and I'll try to come back with the
> website..... we can do this people!!!


 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Trojan infecting update.exe? ArielZusya Windows Update 5 09-29-2008 05:35 AM
Windows Update Installs An "Upgrade" That Acts Like A Trojan springshades Windows Update 10 10-01-2006 02:00 PM
New Trojan Cuts Off PCs From Security Update Sites Mc Windows Update 2 07-01-2005 04:28 PM
Trojan Horse w/XP Update frzzldmm1 Windows Update 2 06-19-2005 09:15 PM
(UNCONFIRMED) Recived Virus and trojan through update Eqvaliser Windows Update 5 06-28-2004 08:39 AM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59