browser hijacker
-
Re: browser hijacker
Hi,tallicafanatik
Please download LSPfix and save it to the Desktop and unzip it.
Run LSPfix and place a check against the I know what I am doing checkbox.
Highlight every instance of the following names and move them from the Keep to the Remove panel. Be sure to move nothing other than the files listed below!
O10 - Broken Internet access because of LSP provider 'c:\program files\newdotnet\newdotnet6_38.dll' missing
When done, click on Finish to exit the program; do not use the X in the top right-hand corner as nothing will happen!
Check the following items in HijackThis.
Close all windows except HijackThis and click Fix checked:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.dbkpqwfscqyjkw.info/RSkG..._5jEWo1ulAV.htm
O2 - BHO: (no name) - {2C576562-913C-5C7F-F88E-103410D05DC1} - (no file)
O2 - BHO: (no name) - {779490C4-0CE2-5827-AEB7-0BD2D405C50D} - (no file)
This item here fix only if not put inplace by you
if you are using Spybot don't fix it
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
This item here up to you but i would remove/Uninstall it
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
This item here has your Start Page locked if no idea what it is fix it
O14 - IERESET.INF: START_PAGE_URL=http://www.umt.edu/reslife
these here if not added by you or no idea what they are fix them
O15 - Trusted Zone: http://www.etronics.com
O15 - Trusted Zone: *.umt.edu
O15 - Trusted Zone: *.umt.edu (HKLM)
O15 - Trusted IP range: 64.127.104.144
then let us know how it is doing
HGD
-
Everything works great. Thank you.
-
Hi,tallicafanatik
That's great news but it would be nice to have a look
at a new logfile.
HGD