Welcome to the Australian Ford Forums forum.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and inserts advertising. By joining our free community you will have access to post topics, communicate privately with other members, respond to polls, upload content and access many other special features without post based advertising banners. Registration is simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Please Note: All new registrations go through a manual approval queue to keep spammers out. This is checked twice each day so there will be a delay before your registration is activated.

Go Back   Australian Ford Forums > General Topics > Non Ford Related Community Forums > The Bar

The Bar For non Automotive Related Chat

Reply
 
Thread Tools Display Modes
Old 12-01-2009, 05:13 PM   #1
MotherNatureVer2
FF.Com.Au Hardcore
 
Join Date: Jan 2005
Posts: 5,165
Default Beware of the Yoog !!!!!!

I have spent the best part of today battling it ..... no definitive fixes until I found the following.

Nothing and I mean NOTHING else worked on getting rid of this ......... I tried many of the apparent fixes I found in google.

Quote:
Steps 1 - Open Firefox and click Bookmarks/Organise Bookmarks.

Step 2 - Click Import and Backup and select ‘Backup’. Choose the destination for saving this file and click ‘Save’.

Only Do Steps 1 and 2 if you want to save all your current ‘Bookmarks’ and ‘Bookmark Folders’ otherwise you can skip this part.

Step 3 - Uninstall Mozilla Firefox - Control Panel/Add Remove Programs/Mozilla/Uninstall.

Step 4 – Now remove all traces of Mozilla Firefox from your system - My Computer/C:/Documents and Settings/Admin *or whatever your System Username is*/Application Data *(if this is hidden click folder options and tick the box that says show hidden folders*/Mozilla/Delete this folder if it is still there.

Step 5 - Remove any other Mozilla Files - Click Start (bottom left corner) and click 'Search'/click 'Search All Files and Folders'/Type in 'Mozilla' in the section that says 'all or part of the file name'/then click 'More Advanced Options' and tick both 'Search System Folders' and 'Search Hidden Files and Folders'/*Click Search and Wait*

Step 6 - Once the Search has finished, locate the Mozilla files listed and delete them from your system, this includes any Mozilla Files that may be in a different programs such as a Photo Editor.

Step 7 - When all traces of Mozilla have been deleted from your PC (be sure to empty your ‘Recycle Bin’) then restart your system.

Step 8 - Download the following programs from these locations if you do not already have them, install them one by one and ensure you update them online. Do not run them yet; just ensure they are up to date.
• AdAware - http://www.lavasoft.com/single/trialpay.php - (Green Package is Free)
• SuperAntispyware - http://www.superantispyware.com
• Spybot Search & Destroy - http://www.safer-networking.org/en/index.html
• Malwarebytes' Anti-Malware - http://www.malwarebytes.org/mbam.php

Step 9 – Temporarily turn off your internet connection and disable your current Anti Virus/Spyware programs so they do not interfere with the new programs we will run.

Step 10 – Run the programs in the order above, ensuring that you follow each step carefully including any back up requests and re-boots. *I only used the first three to clean my system*

Step 11 – After rebooting your system, you can uninstall these programs if you wish.

Step 12 – Turn on your Anti Virus/Spyware programs and reconnect to the Internet. Re-install Mozilla.

Step 13 – Once Mozilla Firefox is on check to ensure the Yoog Malware has gone and then import your ‘Saved Bookmarks’ by following Steps 1 and 2 but this time choosing ‘Import’ instead of ‘Backup’.

Your System should now be clean from the Yoog Malware as well as any other Malware your current security software may have missed. I hope this helped.

Long winded ..... yes ...... worth it .... yes!!!!!!

MotherNatureVer2 is offline   Reply With Quote Multi-Quote with this Post
Old 12-01-2009, 05:37 PM   #2
Airmon
King of the Fairy's.
 
Airmon's Avatar
 
Join Date: Jan 2007
Location: CeeeeeTown.
Posts: 5,093
Default

Probably a stupid question but what the hell is the yoog?? :
__________________
www.bseries.com.au/airmon
They say less talk more action,
I say more torque less traction!
Airmon is offline   Reply With Quote Multi-Quote with this Post
Old 12-01-2009, 05:42 PM   #3
RJO89
EuroFordClub
 
RJO89's Avatar
 
Join Date: Oct 2007
Location: SE Melbourne
Posts: 727
Default

I agree, what the hell is the yoog?
__________________
'08 Black Ford Focus LT CL Hatch

Far from stock... --- SOLD :


Now riding a 2009 Kawasaki Ninja 250R :
RJO89 is offline   Reply With Quote Multi-Quote with this Post
Old 12-01-2009, 05:45 PM   #4
MotherNatureVer2
FF.Com.Au Hardcore
 
Join Date: Jan 2005
Posts: 5,165
Default

Seems to be a virus that no scanner finds, it takes over the google search bar in Firefox & IE. Not sure what else it does but it did slow down this computer by a massive amount.
MotherNatureVer2 is offline   Reply With Quote Multi-Quote with this Post
Old 13-01-2009, 01:34 AM   #5
MaTTe
FF.Com.Au Hardcore
 
Join Date: Jan 2007
Location: Perth
Posts: 619
Default

did you try panda antivirus? it finds all sorts of things that other programs seem happy to coexist with..
__________________
Shed cleanout.. Pictures and prices here
Dynamat type product Group Buy Here(Round 2)
MaTTe is offline   Reply With Quote Multi-Quote with this Post
Old 13-01-2009, 01:39 AM   #6
burnz
VFII SS UTE
 
burnz's Avatar
 
Join Date: Apr 2007
Location: Central Coast
Posts: 6,353
Default

Quote:
Originally Posted by MotherNature
Seems to be a virus that no scanner finds, it takes over the google search bar in Firefox & IE. Not sure what else it does but it did slow down this computer by a massive amount.
you may have to stay away from porn site's. LOL

but i constantly check with spybot and eusing it amazing how many trogan's get around an antivirus.
the antivirus is good for email only nowadays, most are browser attack's.
__________________
I don't often hear the sound of a screaming LSX.
But when I do, So do the neighbours..
GO SOUTHS
burnz is offline   Reply With Quote Multi-Quote with this Post
Old 13-01-2009, 09:38 AM   #7
MotherNatureVer2
FF.Com.Au Hardcore
 
Join Date: Jan 2005
Posts: 5,165
Default

LOL @ Porn sites ......... we do have three teenage boys here ..... mmmmmmm now to ban them from my computer :P

Have to agree with you burnz about the antivirus programs. I have an antivirus but the main things I use are my Spybot and Ad-Aware. I did download the other two programs and will use them when I do my regular scans.
MotherNatureVer2 is offline   Reply With Quote Multi-Quote with this Post
Old 13-01-2009, 07:47 PM   #8
Falcon Coupe
Clevo Mafia Inc.
 
Falcon Coupe's Avatar
 
Join Date: Dec 2004
Location: Melbourne
Posts: 10,496
Chairman's Award: Chairman's Award - Issue reason: The exceptional contribution made to AFF over an extended period of time. Valued Contributor: For members whose non technical contributions are worthy of recognition. - Issue reason: Your tireless efforts behind the scenes in keeping AFF the place it is. 
Default

Download and run this program in safe mode, it will get rid of it:

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Combo fix has saved me more than once.
Falcon Coupe is offline   Reply With Quote Multi-Quote with this Post
Old 14-01-2009, 08:51 AM   #9
MotherNatureVer2
FF.Com.Au Hardcore
 
Join Date: Jan 2005
Posts: 5,165
Default

Thanks for that Falcon Coupe, I am clean now but have saved the program just in case for next time ...... there's always a next time with this stuff ;)
MotherNatureVer2 is offline   Reply With Quote Multi-Quote with this Post
Old 14-01-2009, 10:36 AM   #10
DBourne
FF.Com.Au Hardcore
 
DBourne's Avatar
 
Join Date: Mar 2007
Location: sydney.nsw.au
Posts: 6,119
Default

this is why no one should use google toolbars.

they are evil things. just take the 2 seconds to type in google.com to the address bar
__________________
flickr
DBourne is offline   Reply With Quote Multi-Quote with this Post
Old 14-01-2009, 11:23 AM   #11
outside
off in outer space
 
outside's Avatar
 
Join Date: Feb 2005
Location: newcastle nsw
Posts: 1,176
Default

i dont and wont install toolbars.
outside is offline   Reply With Quote Multi-Quote with this Post
Old 14-01-2009, 06:13 PM   #12
Marduk
BFII XR6
 
Marduk's Avatar
 
Join Date: Oct 2008
Posts: 220
Default

Quote:
Originally Posted by burnz
you may have to stay away from porn site's. LOL

but i constantly check with spybot and eusing it amazing how many trogan's get around an antivirus.
the antivirus is good for email only nowadays, most are browser attack's.
Really? You must be browsing some pretty dodgy sites. I haven't had anything for as long as I can remember. I use NOD 32, Ad-aware & Custom HOSTS file(Probably the most important of all 3).
__________________
2007 BF MKII XR6 'Vixen Red'
Marduk is offline   Reply With Quote Multi-Quote with this Post
Old 14-01-2009, 08:46 PM   #13
TURBOTAXI
Turbo Falcon Fiend
 
TURBOTAXI's Avatar
 
Join Date: May 2005
Location: Far West NSW
Posts: 3,205
Default

malawarebytes tends to get at most things. I used that for some nasty things the kids managed to get on my PC.

On adult material, there are that many free adult sites with acres of content dont see why people would want to go to the virus laden silicone and make up end of the market.

Ermmmm So I'm told......

There are so many ways to beat a trojan, not all will work (except clean install - that'l work!), and there is no right way.

I find the commercial retail antivirus's the worst thing around for keeping your PC clean. The free ones like - avast and avg are sooooo much better.
__________________

Too many turbo toys......
2009 FG F6 Nitro LPI LPG 290rwkw on LPG.
2005 BAMKII XR6 Turbo with LPG (ex HWP 255,000k's and counting)
Honda 2001 CR500E Road registered CR500
Honda 1985 CR500 (the one with the arm ripping power)
DT200r regoed Hack
Yamaha IT/YZ 465 Vinduro rocket
Imported IT465 and 490 back up bikes
VF1000R mid 80's racer built by HMR
Honda CR480 Air cooled project road cafe racer.
T88 Turbo XT Falcon project with 351 Cleveland (mothballed)
Plus the rest.

.
TURBOTAXI is offline   Reply With Quote Multi-Quote with this Post
Old 16-01-2009, 06:51 PM   #14
GasoLane
Former BTIKD
Donating Member2
 
GasoLane's Avatar
 
Join Date: Mar 2005
Location: Sunny Downtown Wagga Wagga. NSW.
Posts: 53,197
Default

Is a YOOG any relation to a YOWIE?

You are fairly close to the Plliga remember!
__________________
Dying at your job is natures way of saying that you're in the wrong line of work.
GasoLane is offline   Reply With Quote Multi-Quote with this Post
Old 30-01-2009, 04:28 PM   #15
Biggav
On the search for cubes..
 
Biggav's Avatar
 
Join Date: Jan 2005
Location: Perth, W.A.
Posts: 691
Default

did it affect your google searches say search for something, click a link, it opens in new window(which never happened before) then loads another webpage with adverts and stuff?(not pop-up)
__________________
FG G6ET - Daily Driveway Ornament...

Current Projects
ED SOHC 3v 5.4 Cammed 5.4 3V Garage Ornament Project
Project Brimstone XE Wagon Phase 6 powered by Coyote

Long Gone Projects
EA Falcon SOHC 4.0 237rwhp
BA 3V 'The Taxi' DJR320 Kit, G6ET Wheels, Lunati Voodoo Cams 320rwhp
Biggav is offline   Reply With Quote Multi-Quote with this Post
Old 30-01-2009, 08:14 PM   #16
uranium_death
FF.Com.Au Hardcore
 
uranium_death's Avatar
 
Join Date: Jul 2006
Location: Gren A Waverrey
Posts: 2,373
Default

In looking for some NON-porn-related things, my browser was highjacked, where many sites were inaccessible either temporarily or permanently (only a few) for when I typed in a certain address, the browser would redirect me somewhere completely unrelated.

Spybot and AVG picked up NOTHING.

As a result, I re-installed Windows.

My friend re-installs Windows often to ensure his PC is clean. Unlike many, he has partitioned his drives so his C:\ is ONLY Windows, with his documents and other things kept on a separate drive.

I'm a big fan of re-installing.
__________________
Practicing - Sleeping with a guitar in your hand counts, as long as you don't drop it.

Don't snap my undies.
uranium_death is offline   Reply With Quote Multi-Quote with this Post
Old 30-01-2009, 08:19 PM   #17
Biggav
On the search for cubes..
 
Biggav's Avatar
 
Join Date: Jan 2005
Location: Perth, W.A.
Posts: 691
Default

well ran a full ad-aware scan picked up couple of things cleaned them out, reset comp still getting same problem but no virus picked up?
__________________
FG G6ET - Daily Driveway Ornament...

Current Projects
ED SOHC 3v 5.4 Cammed 5.4 3V Garage Ornament Project
Project Brimstone XE Wagon Phase 6 powered by Coyote

Long Gone Projects
EA Falcon SOHC 4.0 237rwhp
BA 3V 'The Taxi' DJR320 Kit, G6ET Wheels, Lunati Voodoo Cams 320rwhp
Biggav is offline   Reply With Quote Multi-Quote with this Post
Old 30-01-2009, 11:06 PM   #18
bd737
Regular Member
 
bd737's Avatar
 
Join Date: Apr 2006
Location: WA
Posts: 277
Default

Quote:
Originally Posted by Biggav
well ran a full ad-aware scan picked up couple of things cleaned them out, reset comp still getting same problem but no virus picked up?
Try running the scan in safe mode and then resetting, and see what happens. Sometimes need to be in safe mode for the scans and removal to take proper effect.
__________________
06 BF SR - Shockwave, JTG Liquid Injection duel fuel, K&N air filter, XR8 upper intake, F6 lower intake
bd737 is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2009, 12:04 AM   #19
MITCHAY
FF.Com.Au Hardcore
 
Join Date: Apr 2005
Location: Canberra
Posts: 13,402
Default

Quote:
Originally Posted by bd737
Try running the scan in safe mode and then resetting, and see what happens. Sometimes need to be in safe mode for the scans and removal to take proper effect.
X2 Safe mode loads basic services and has been the only way to remove bad crap so many times for me.

I highly recommend that people partition their hard drive into at least C and D, it makes formatting a lot easier if the need occurs. Keep the C partition for Windows crap only.
MITCHAY is online now   Reply With Quote Multi-Quote with this Post
Old 31-01-2009, 07:27 PM   #20
TURBOTAXI
Turbo Falcon Fiend
 
TURBOTAXI's Avatar
 
Join Date: May 2005
Location: Far West NSW
Posts: 3,205
Default

Quote:
Originally Posted by uranium_death
In looking for some NON-porn-related things, my browser was highjacked, where many sites were inaccessible either temporarily or permanently (only a few) for when I typed in a certain address, the browser would redirect me somewhere completely unrelated.

Spybot and AVG picked up NOTHING.

As a result, I re-installed Windows.

My friend re-installs Windows often to ensure his PC is clean. Unlike many, he has partitioned his drives so his C:\ is ONLY Windows, with his documents and other things kept on a separate drive.

I'm a big fan of re-installing.
It would take me a good 15 hours to reconfigure my PC and reinstall all the crap I use. I hate reinstalling!
__________________

Too many turbo toys......
2009 FG F6 Nitro LPI LPG 290rwkw on LPG.
2005 BAMKII XR6 Turbo with LPG (ex HWP 255,000k's and counting)
Honda 2001 CR500E Road registered CR500
Honda 1985 CR500 (the one with the arm ripping power)
DT200r regoed Hack
Yamaha IT/YZ 465 Vinduro rocket
Imported IT465 and 490 back up bikes
VF1000R mid 80's racer built by HMR
Honda CR480 Air cooled project road cafe racer.
T88 Turbo XT Falcon project with 351 Cleveland (mothballed)
Plus the rest.

.
TURBOTAXI is offline   Reply With Quote Multi-Quote with this Post
Old 31-01-2009, 08:18 PM   #21
deesun
FF.Com.Au Hardcore
 
deesun's Avatar
 
Join Date: Jan 2005
Posts: 4,167
Default

Recently I got a bug in, I have spysweeper(paid) and adaware (free) and neither picked picked it up but to my surprise I downloaded Microsoft Defender and it did. Short download but long sweep. Its free so give it a go. No harm.Wasn't the YOOG though.
__________________
igodabigblackshinycar and I relented and allowed a BMW into the garage.
deesun is offline   Reply With Quote Multi-Quote with this Post
Reply


Forum Jump


All times are GMT +11. The time now is 12:40 AM.


Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Other than what is legally copyrighted by the respective owners, this site is copyright www.fordforums.com.au
Positive SSL