Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads

User Tag List

Problem with Iexplorer main page,local,default..

This is a discussion on Problem with Iexplorer main page,local,default.. within the Resolved HJT Threads forums, part of the Tech Support Forum category. Already found the wayout of thi problem! Problem with Iexplorer main page,always open( https://213.159.117.134/index.php ) !Yee I now this is


 
 
Thread Tools Search this Thread
Old 10-17-2004, 06:34 AM   #1
Aly
Guest
 
Join Date: Oct 2004
Posts: 11
OS:



Already found the wayout of thi problem!
Problem with Iexplorer main page,always open(https://213.159.117.134/index.php) !Yee I now this is most often problem,but i need help with it,and regedit dosn't help with it!May be i'm doing something wrong or not doing something! Adware dosnt help!

Logfile of HijackThis v1.97.7
Scan saved at 16:33:25, on 2004.10.17.
Platform: Windows 2000 SP2 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\AVPersonal\AVGUARD.EXE
C:\Program Files\AVPersonal\AVWUPSRV.EXE
C:\WINNT\System32\svchost.exe
C:\FaxE_Run\FaxECtrl.exe
C:\WINNT\system32\regsvc.exe
C:\FaxE_Run\FaxEPrnt.exe
C:\WINNT\system32\MSTask.exe
C:\FaxE_Run\FaxEPurg.exe
C:\FaxE_Run\FaxERecv.exe
C:\FaxE_Run\FaxEStat.exe
C:\FaxE_Run\FaxEScdr.exe
C:\FaxE_Run\FaxEDisp.exe
C:\WINNT\System32\WFXSVC.EXE
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\Program Files\Symantec\TalkWorks\WFXMOD32.EXE
C:\WINNT\Explorer.EXE
C:\WINNT\System32\wfxsnt40.exe
C:\WINNT\System32\atiptaxx.exe
C:\WINNT\System32\systime.exe
C:\WINNT\System32\internat.exe
C:\WINNT\System32\systime.exe
C:\Documents and Settings\Administrator\Application Data\tacr.exe
C:\Program Files\Symantec\TalkWorks\WFXCTL32.EXE
C:\TYPSoft FTP Server\ftpserv.exe
C:\Program Files\AVPersonal\AVGNT.EXE
C:\Program Files\AVPersonal\AVSched32.EXE
C:\FaxE_Run\FaxeTool.exe
C:\Program Files\RegFreeze\regfreeze.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINNT\system32\systime.exe
C:\Documents and Settings\Administrator\Desktop\hjt\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://link.times.lv
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://213.159.117.134/index.php
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://213.159.117.134/index.php
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://213.159.117.134/index.php
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://213.159.117.134/index.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = https://213.159.117.134/index.php
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = https://213.159.117.134/index.php
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [AVSCHED32] C:\Program Files\AVPersonal\AVSched32.EXE /min
O4 - HKLM\..\Run: [SysTime] C:\WINNT\System32\systime.exe
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [SysTime] C:\WINNT\System32\systime.exe
O4 - HKCU\..\Run: [Ruae] C:\Documents and Settings\Administrator\Application Data\tacr.exe
O4 - HKCU\..\Run: [Mrrermj] C:\WINNT\System32\l?***.exe
O4 - Startup: RegFreeze.lnk = C:\Program Files\RegFreeze\regfreeze.exe
O4 - Startup: TYPSoft FTP Server (2).lnk = C:\TYPSoft FTP Server\ftpserv.exe
O4 - Global Startup: Controller.LNK = C:\Program Files\Symantec\TalkWorks\WFXCTL32.EXE
O9 - Extra button: Search and Remove Spyware (HKLM)
O9 - Extra 'Tools' menuitem: Search and Remove Spyware (HKLM)
O14 - IERESET.INF: START_PAGE_URL=https://www.times.lv
O15 - Trusted Zone: https://*.doska.lv
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/s...sh/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3A42060-983B-4B92-8D63-DC7841E647DD}: NameServer = 212.70.174.35,159.148.60.20
Aly is offline  
Sponsored Links
Advertisement
 
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2
Powered by vBadvanced CMPS v3.2.3


All times are GMT -7. The time now is 11:56 PM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts