re: About Blank
Monday, March 14, 2005 at 1:00 pm Windows XP Annoyances Discussion Forum
Posted by Jimho
(1 messages posted)
Thanks for this information. I had a simalar problem and was able to peice together
a solution from this msg.
Jim
in Nashville
On Sunday, February 13, 2005 at 4:16 pm, Otter wrote:
>
> - Unzip HijackThis to a permanent folder. It makes backups.
> - Uninstall New.Net from Add/Remove Programs, if present.
> - Download LSPFix: http://www.cexx.org/lspfix.htm
> - Reboot to Safe Mode
> - Run CWShredder again.
> - Check these entries in HijackThis and press Fix:
>
>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\Chris\LOCALS~1\Temp\se.dll/sp.html
>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.seekerbar.com/ie.aspx?tb_id=50154
>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\Chris\LOCALS~1\Temp\se.dll/sp.html
>R3 - URLSearchHook: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - (no file)
>O2 - BHO: (no name) - {2D7655EA-1539-469C-A7CA-3E92E79D9D34} - C:\WINDOWS\system32\gheg.dll
>O2 - BHO: URLLink Class - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet6_38.dll
>O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,NewDotNetStartup -s
>O4 - HKLM\..\Run: [sp] rundll32 C:\DOCUME~1\Chris\LOCALS~1\Temp\se.dll,DllInstall
>O4 - Startup: PowerReg Scheduler V3.exe
>O18 - Filter: text/html - {EFFF58D0-CF24-4B4C-960D-5ECCBAAFCCBA} - C:\WINDOWS\system32\gheg.dll
>O18 - Filter: text/plain - {EFFF58D0-CF24-4B4C-960D-5ECCBAAFCCBA} - C:\WINDOWS\system32\gheg.dll
>
>
> - Run LSPFix, check the "I know what I'm doing" box, and mark these files for
>removal:
- Written in response to:
- re: About Blank (Falcon: Sunday, February 13, 2005 at 4:16 pm)
There are presently no replies to this message.
|
|
All messages in this thread [show all]
 |  |  |  |  | re: About Blank (Jimho: Mon, Mar 14, 2005, 1:00 pm) |
| |
| |
Return to the Windows XP Discussion Forum
|
|