My browser got hijacked by DNS Unlocker!
I am using Win10 with Defender activated and I am careful about what sites I visit, but I still got hit!
Spybot S & D did not find the ‘Malware’ neither did AdAware.
Analysis of my system showed that DNS Unlocker had made 2 changes to my system.
The first change I located was that DNS server addresses had been added to my network adapter TCP/IP settings.
To get to these settings I navigated to my network adapter then navigated as follows:-
Properties > Internet Protocol V4 > Properties > Advanced > DNS tab
Here in the DNS server addresses I found that 82.163.142.7 95.211.158.134 had been added.
I deleted these addresses and rebooted my PC, all fixed; or so I thought.
After a while I was again bombarded by DNS Unlocker adds. I checked the TCP/IP settings and there was nothing there.
I eventually found that a Registry key had been added. See details below:-
Key Location : HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
Key Name : NameServer
Key Type : REG_SZ
Key Value : 82.163.142.7 95.211.158.134
I deleted the key, rebooted and all is well.
I hope this helps others.