|
|
|
|
17th Feb 05, 04:57 AM
|
Senior Member
|
|
Join Date: Oct 2001
Location: USA
Posts: 603
|
|
about: Blank???
Help is needed here on this. At work on the computer there has occured a file named "win32.trojan Downloader.agent.al" which has been detected by Trojan Remover V6.3.5 with updates. Also Ad-Aware SE keeps on detecting all sorts of malware....COOLSEARCH as well as many others. After throughly scanning with Symantec, Ad-aware SE, and Trojan Scanner 6.3.5 and all is cleaned. When you open IE 6.0 w/ updates, it will keep displaying "about: Blank" as the webpage instead of Google when you open IE. What are the best ways to solve the problem?
I can NOT do a clean reinstall as some of the software can NOT be reinstalled except by the company that owns the software and they really charge for their services to come out when they get ready.
Please give advice as to a real good correction.
WindowsXP
Symantec 9.0
ZoneAlarm 4.0.123
Trojan Remover 6.3.5
Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
|
|
17th Feb 05, 07:25 AM
|
Retired
|
|
Join Date: Jul 2001
Location: vancouver
Posts: 803
|
|
Have you read this page?
_http://www.lavasoftsupport.com/index.php?showtopic=27767
|
|
17th Feb 05, 09:46 PM
|
BetaONE Supporter
|
|
Join Date: Jul 2001
Location: U.S.A
Posts: 2,220
|
|
HS Remove should fix this problem. Be sure to run in safe mode.
Also, check msconfig and services.msc for anything that should not be there.
While in safe mode. Also scan with all other tools in safe mode.
Also remove anything in add/remove programs that should not be there.
Also I would try:
Microsoft AntiSpyware Beta 1
Spyware blaster
BHO Demon
Hijack This
Spy Sweeper
Spybot - Search & Destroy
That normally does it for me. Also check boot.ini for anything strange.
__________________
Ad Muncher Usage Statistics for v4.7 Build 27105/1624
Adverts removed by Ad Muncher: 1,601,933
Approximate bandwidth saved: 12,515 MB
Counter started: April 2, 2003
Download: http://war59312.admuncher.com/download.shtml
|
|
18th Feb 05, 12:06 AM
|
Senior Member
|
|
Join Date: Oct 2001
Location: USA
Posts: 603
|
|
@War
HS Remove should fix this problem. Be sure to run in safe mode.
Do you know where this can be got and I will pass the message along to the Boss?
( http://www.hsremove.com/) (click the "HSRemove.Exe" link to download)
Thanks for the responses ....now to go and break the news to the boss, he has gotta be more careful and be patient.
Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
Last edited by Dudelive : 18th Feb 05 at 12:40 AM.
|
|
18th Feb 05, 12:54 AM
|
|
Chopped Liver
|
|
Join Date: Sep 2001
Posts: 851
|
|
Q: Does About Blank take you to a search page? Or just a blank page? If it's just a blank page you might just need to reset your default homepage in the IE tools/options settings?
}---:?
|
|
18th Feb 05, 01:42 AM
|
Senior Member
|
|
Join Date: Oct 2001
Location: USA
Posts: 603
|
|
@ tubebuoy
It takes me to a search page with various words already filled it. At least it is not porn....yet
Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
|
|
18th Feb 05, 02:43 AM
|
|
Chopped Liver
|
|
Join Date: Sep 2001
Posts: 851
|
|
Have you read this...
http://www.betaone.net/forum/thread-15529.html
WARNING! The method I describe is DANGEROUS but it works well if you try it as soon as you get hijacked. For example, I've been hit by "your search" and while my spyapps find it, as soon as you reboot it comes back. Using my tips is the only way I've been able to gid rid of it.
If your boss is using WinXP you might want to try "System Restore".
Good luck!
}---
|
|
18th Feb 05, 03:57 AM
|
Senior Member
|
|
Join Date: Oct 2001
Location: USA
Posts: 603
|
|
@tubebuoy........Yes I did read that post you made and I after this problem here, that just may really be the only way to fix it. Since I did not find this out till 2-3 days later.....that would be too much of a gamble for a buisness computer.
I have not tried system restore because some of the programs can ONLY be installed by the company that made the program and he asked me not to mention the name of the software. So I am not sure the programs would continue to work or not with out having to PAY again for the install which can only be done in person.
Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
|
|
18th Feb 05, 05:29 AM
|
BetaONE Supporter
|
|
Join Date: Jul 2001
Location: U.S.A
Posts: 2,220
|
|
Originally Posted by Dudelive
@War
Do you know where this can be got and I will pass the message along to the Boss?
( http://www.hsremove.com/) (click the "HSRemove.Exe" link to download)
Thanks for the responses ....now to go and break the news to the boss, he has gotta be more careful and be patient.
Thanks
Dudelive
Easy to find. lol
It should work. Aways worked for me on computers that had this type of problem.
Take Care,
Will
__________________
Ad Muncher Usage Statistics for v4.7 Build 27105/1624
Adverts removed by Ad Muncher: 1,601,933
Approximate bandwidth saved: 12,515 MB
Counter started: April 2, 2003
Download: http://war59312.admuncher.com/download.shtml
|
|
18th Feb 05, 11:51 PM
|
Senior Member
|
|
Join Date: Oct 2001
Location: USA
Posts: 603
|
|
Well The file I got from hsremove.com fixed it........but only till IE was restarted 3 times. The 3rd time it was back to "about:blank" , I think I am going to install netscape or firefox and leave it alone before it really breaks and the phone calls have to be made.
Thanks
Dudelive
__________________
Be careful what you ask for, because you might just get it.
|
|
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
|
|
Thread Tools |
|
Display Modes |
Linear Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
Thread |
Thread Starter |
Forum |
Replies |
Last Post |
server speeds |
Menace Inc |
FTP Help |
11 |
24th Mar 02 06:39 AM |
All times are GMT +1. The time now is 01:15 AM.
|
|