DNS Changer Woes

So I’ve been having some trouble with a DNS changer recently which essentially puts banner ads into my browser and slows everything down. I’ve removed it several times through the following means:

  • Malwarebytes scan
  • Avast full system scan
  • Using Windows cmd - ipconfig/flushdns
  • Network and Sharing Center and removing the rogue DNS from the advanced settings

Although these methods work, it always seems to come back. Here’s the most recent screens I have.

Malware Scan regarding the location

and the DNS server address that messes with everything
Default is usually 8.8.8.8 and 8.8.4.4 in cmd

Any insight on how to permanently remove it?

I wasn’t 100% sure where to put this thread so feel free to move it if necessary. Thanks guys!

I always give the same advice. Your computer is compromised, the best thing you can do is wipe the drive and reinstall.

There DNS changer Trojans tend not to come alone.

For removing it you need to find what's reinstalling it and remove it all, everything every file and folder and registry entry linked to it. Could be an application, plugin, it might be hiding and replicating.

Wipe and reinstall. It's quicker and you know your systems clean.

1 Like

I was just digging through the registry and what not, looks like you have the best solution.

I have an SSD boot drive and a HDD for storage, Gonna have to wipe them both I assume?