Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

PUP.Optional.Conduit.A malware / Conduit Search - cannot completely re


  • This topic is locked This topic is locked

#16
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

Do you have Chrome set to synch ?  As that should not return as your home page once it is removed


  • 0

Advertisements


#17
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

I do have Sync Everything selected under Settings -> Advanced Sync Settings.

 

Should I Sync nothing? And if so, will re-enabling Syncing reintroduce the problem?


  • 0

#18
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

Disable sync  and reset Chrome again..  Meanwhile I will check to see how you reset the  sync


  • 0

#19
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

Ok. I've disabled syncing and reset Chrome's browser settings. I'm keeping my fingers crossed. 


  • 0

#20
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK found out how to delete the sync data. Once you have done this you can set up a new sync if you wish

http://www.howtogeek...wser-sync-data/
  • 0

#21
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

Great. I've deleted the sync data. I'm hoping that does the trick. Thanks.


  • 0

#22
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK keep me informed please :) theoretically it should not return now
  • 0

#23
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

Hmmm. Still seeing this.

 

As far as I can tell, I've disabled the Sync by signing out of my Google Account on the chrome://settings/ page. Now instead of an area with Sync on that page, I have a button to Sign in to my google account. 

 

I then pressed the "Reset browser settings..." button under the Advance settings rollout.

 

I've also gone to https://www.google.c...tings/dashboard and have clicked the Manage Chrome Sync link. From that page, I've pressed the Stop and Clear button. I've then repeated the "Reset browser settings..." button from the Settings page.

 

Did I miss anything?

 

The only other device we use Chrome on is my iPad. Could the Conduit Search be residing on that device and then getting synced via Google Chrome? I just performed the Stop and Clear function on the iPad's Chrome app, but I'm not sure if that will help or not.

 

One thing of note is that even though I've supposedly disabled syncing, on the https://www.google.c...ngs/chrome/sync page (that's the link in which I can Stop and Clear my sync data) it says the following:  Last time synced on Monday, April 21, 2014 at 8:40:42 PM UTC-4

 

That timestamp corresponds closely to the scan results below. Does running gmail on Chrome force syncing to occur? Other than gmail, we're otherwise not signed into a Google account.

 

Here is the Malware Bytes log:

 

Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 4/21/2014
Scan Time: 8:45:49 PM
Logfile: 
Administrator: Yes
 
Version: 2.00.1.1004
Malware Database: v2014.04.21.04
Rootkit Database: v2014.03.27.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Chameleon: Disabled
 
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Jones
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 371768
Time Elapsed: 10 hr, 6 min, 55 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Shuriken: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 0
(No malicious items detected)
 
Registry Values: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Folders: 0
(No malicious items detected)
 
Files: 1
PUP.Optional.Conduit.A, C:\Users\Jones\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (      "startup_urls": [ "http://search.condui...PV=SE2YA1_sp_ch" ],), ,[a157a983d7a42b0ba731de7764a0bb45]
 
Physical Sectors: 0
(No malicious items detected)
 
 
(end)

  • 0

#24
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Yes as GMail is part of the synching process

Did you allow MBAM to reset the startup page
  • 0

#25
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

I'm unsure how to allow MBAM to reset the startup page. I quarantined the file in question, i.e. the PUP.Optional.Conduit.A file.

 

Incidentally, I found an interesting post relating to this: https://groups.googl...lQ/iHf3uSouEYgJ

 

The post by Lu suggests clicking the "Open a specific page or set of pages" and deleting the Conduit search from there. I found the startup URL there and cleared it out. I'll Reset my browser settings again and see if that does the trick.


  • 0

Advertisements


#26
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts

I really must download Chrome at some stage and find my way around it :)

 

That should resolve the problem


  • 0

#27
jnjones

jnjones

    Member

  • Topic Starter
  • Member
  • PipPip
  • 15 posts

Ok. Been problem-free for two days now. I'd say this is solved. Thanks for all your help!


  • 0

#28
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP