Over 1 million tech questions and answers.

Need Help Removing AOL as my webbrowser - And NewDotNet

Q: Need Help Removing AOL as my webbrowser - And NewDotNet

I used to have aol as my ISP and I cancel and uninstall all the aol there was in my computer, but my web browser in the internet explorer still showing aol instead of windows any ideas of why this is happening if there is nothing else to ramove in add/remove programs. Can somebody please help is it hidden somewhere else.
Thank you very much in advance.

RELEVANCY SCORE 200
Preferred Solution: Need Help Removing AOL as my webbrowser - And NewDotNet

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link http://downloadreimage.com/download.php. (This link will automatically start a download of Reimage that you can save to your computer.)

A: Need Help Removing AOL as my webbrowser - And NewDotNet

Read other 16 answers
RELEVANCY SCORE 62.8

Hi,

This is my first post, i saw a similar question answered by someone called Chicon but i couldn't get back to that thread unfortunately. Basically i've tried several things to get rid of this new.net file but it is still there; in c\program files\newdotnet. I tried to run rundll32 {filename} newdotnetuninstall but this didn't work, then i found this great site and 'hijack this'. My hijack this logfile is below, could someone pls help, i've already spent hours on this. Thanks heaps in anticipation.

P.S. I have children who use this PC and although i tell them not to download stuff of course they do (questions about this later)

Logfile of HijackThis v1.98.2
Scan saved at 3:17:59 PM, on 4/10/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Vet\isafe.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Vet\VetMsg.exe
C:\WINDOWS\Explorer.EXE
C:\Vet\VetTray.exe
C:\Program Files\Lavasoft\Ad-aware 6\Ad-watch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MyWebSearch\bar\2.bi... Read more

A:removing newdotnet files

Read other 11 answers
RELEVANCY SCORE 62

HELP! my laptop has a very good connection yet i can't browse to any pages after removing newdotnet. whenever i ping www.yahoo.com it says its pinging www.kimo.com.tw i cant go to any pages. wat to do???

i've already done deleting the cookies and cache. installed spybot search and destroy which deleted the newdotnet adaware. the thing is i tried pinging and here are the results....

first i did ipconfig....
ip address is ok
subnet mask is ok
default gateway is ok

the i tried pinging www.yahoo.com then it says

pinging www.kimo.com.tw [207.69.188.186] with 32 bytes of data:
request timed out.
request timed out.
reply from 192.168.1.1: Destination host unreachable.
reply from 192.168.1.1: Destination host unreachable.

ping statistics for 207.69.188.186:
packets: sent =4 received =2 lost=2 (50%loss)
approximate round trip times in milli seconds
minimum =0ms maximum=0ms average=0ms

i also tried pinging google.com and the sam kimo.com.tw appears

i used hijackthis and this is my log:
Logfile of HijackThis v1.99.1
Scan saved at 12:14:54 AM, on 3/3/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files... Read more

A:connected cant browse after removing newdotnet

Welcome to TSF.

NewDotNet is generally simple to remove. When you say you have deleted newdotnet - did you remove the program via Add/Remove? If not - Try that now!

Next:

Download LSPFix http://www.greyknight17.com/spy/LSPFix.exe and run it. Check the box that says 'I know what I'm doing'. Click on any dll that says newdotnet***.dll (where *** are numbers), on the left window and then click on the arrow pointing to the right. Click Finish and follow the prompts.

Remember to delete the folder:

C:\Program Files\NewDotNet

Let me know how you get on.

Read other 5 answers
RELEVANCY SCORE 62

Hi,
My machine was infected with the NewDotNet parasite. I searched this forum and found instructions on removing it, which I did, but now either my rundll32.exe is not working properly or my tcpip stack is corrupted. My symptoms are that I cannot open the System or Network folders. Internet Explorer doesn't work. And when I shut down, none of the running tasks close, I have to force them to close. When I boot in safe mode I can open the Network and System folder. I've run hijackthis and SpySweeper and I've deleted the winsock and winsock2 registry keys and reinstalled tcpip and that didn't work. My tcpip is working in limited fashion (I can get out to the network on Mozilla and I can get to my local server) and netbios seems to be working. I am posting the most recent hijackthis log. Can anyone offer some suggestions on how to fix this? Thanks.
ogfile of HijackThis v1.99.1
Scan saved at 8:47:47 AM, on 5/24/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\ibmpmsvc.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\IBM\SQLLIB\BIN\db2jds.exe
C:\Pr... Read more

A:Unstable rundll32.exe after removing NewDotNet

Hi

Try putting your XP CD in a drive, go to START>RUN and type sfc /scannow (the space after sfc is essential) - hit Enter

Allow the file checker to run right through.

Peter

Read other 10 answers
RELEVANCY SCORE 43.2

Hey all. I'm currently using IE 6 and wanted to try out some other browsers since I heard IE has a bunch of security holes, slower, etc. What I wanted to know is, which browser do you like the best? I'm thinking about buying Opera 7 but I don't know yet. And I don't mind buying. Well, I gotta sleep and I'll check this tomorrow. Thanks in Advance.
 

A:Which WebBrowser?

Read other 10 answers
RELEVANCY SCORE 42.8

Hello

I'm running:
a)Vista 64BIT and UAC is turned off with IE8 and
b)Win XP 32 bit with IE 6

Under b) I can display a specific webpage (which includes som JS and Ajax) without any problems
Under a) I can't display the page

Are there any known security issues? Do I enable some security settings within Vista or IE8?

Thanks!

A:Webbrowser- Changes between Vista and XP

IE8 is still buggy, i would recommend that you use IE7. However, what page won't it load? What security software is installed?

Read other 4 answers
RELEVANCY SCORE 42.8

I have a computer that is infected. I have ran spybot s&d, combofix, and malwarebytes on it to no avail. When I try to do a type anything into the webaddress it takes me to uniquesearch8. I have a hijack this logfile. Please let me know if you would like me to post it. ThanksHere is the Hijack this logLogfile of Trend Micro HijackThis v2.0.2Scan saved at 10:46:22 AM, on 12/7/2009Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16915)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exec:\program files\common files\protexis\license service\psiservice_2.exeC:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exeC:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Analog Devices\Core\smax4pnp.exeC:\WINDOWS\system32\hkcmd.exeC:\WINDOWS\system32\igfxpers.exeC:\Program Files\ACT\Act for Windows\Act.Outlook.Service.exeC:\Program Files\Windows Live\Messenger\msnmsgr.... Read more

A:Hijacked webbrowser

I have corrected this problem and removed the virus im pretty sure. However now my print spooler stops responding. I have it set to restart. It appears the virus corrupt a file in relationship to my print spooler any help would be greatly appreciated. I ran a chkdsk/f but that did not fix it. thanks

Read other 3 answers
RELEVANCY SCORE 42.8

Good morning,

My internet explorer has been hijacked and all pages I try to visit result in a page not able to be displayed. I have my hijackthis log and definitely see a lot of bad things in it but I would like some expert advice on what I should fix. Here is my log - I appreciate any help you can provide. Thank you.

Logfile of HijackThis v1.96.1
Scan saved at 9:19:47 AM, on 8/30/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Intel\ASF Agent\ASFAgent.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Dell\OpenManage\Client\Iap.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINNT\System32\NMSSvc.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\System32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\rundll32.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\hkcmd.exe
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Common Files\Adaptec Shared\CreateCD\CreateCD50.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Fi... Read more

Read other answers
RELEVANCY SCORE 42.8

I use the following Code to find string in A HTMl in WebBrowser control, but
if HTML support Frame then I get the error (run-time error "438"). any idea
how to fix this error.
Thanks,
Harry
Code:

Public myfindFirst As Boolean
Public oRange

Private Sub cmdFind_Click()
Dim sSearch As String
If myfindFirst Then
Set oRange = WebBrowser1.Document.body.createTextRange
sSearch = txtFind.Text
If oRange.FindText(sSearch) Then
oRange.Select
oRange.scrollIntoView
cmdFind.Caption = "Find Next"

myfindFirst = False
Else
MsgBox ("Search string " & txtFind.Text & " not found.")
End If
Else
Call oRange.Move("character")
sSearch = txtFind.Text
If oRange.FindText(sSearch) Then
oRange.Select
oRange.scrollIntoView
Else
MsgBox ("Finished searching Document for string " &
txtFind.Text)
cmdFind.Caption = "Find"
myfindFirst = True
Exit Sub
End If
End If

End Sub

 

A:vb6 WebBrowser control

Read other 7 answers
RELEVANCY SCORE 42.8

I sometimes get an "error message" when attempting to access various websites.

The message is:

"SHdocVwCtl.WebBrowser" "Make sure the path or internet address is correct"

Does this need to be "fixed" and of so how?

Sam
 

A:SHdocVwctl.WebBrowser

I searched Google to find a cure for you but there is not much mentioned There is a reference to vb Accellerator Would this apply ?
 

Read other 1 answers
RELEVANCY SCORE 42.8

hen using Firefox or IE, clicking on search results from Google redirects to Btcar.com sometimes to other search engines also.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 5:27:12 PM, on 10/2/2007Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.20544)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Ahead\InCD\InCDsrv.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\McAfee\MSC\mcmscsvc.exec:\program files\common files\mcafee\mna\mcnasvc.exec:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exeC:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exeC:\Program Files\McAfee\MPF\MPFSrv.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\UAService7.exeC:\WINDOWS\system32\svchost.exeC:\PROGRA~1\McAfee.com\Agent\mcagent.exeC:\WI... Read more

A:Webbrowser Hijacked

Hi,* Please download FixwareOut from the following site:http://download.bleepingcomputer.com/lonny/Fixwareout.exeSave it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish.The fix will begin; follow the prompts. If your firewall gives an alert, (because this tool will download an additional file from the internet), please don't let your firewall block it, but allow it instead.Then you will be asked to reboot your computer; please do so. Your system may take longer than usual to load; this is normal.Once the desktop loads please post the text that will open (report.txt) and a new Hijackthis log.

Read other 7 answers
RELEVANCY SCORE 42.8

I have several browsers loaded into my system, the most compatable one to use with my computer is the internet explorer. There is a problem of a pornographic add informing me that I have been infected and prompting me to buy their spyware equipment, this happens each time I try to use this home site page. I have spyware protection, spyware bot, and AOL McA.,and sweep the system upon each internet return. This page still remains. I need access to run certain files that are a part of my main system, It's not the best, just needed. I keep this site blocked by default, to keep my family from prompting this site and encountering porn related strong-armed sales tatics. Does anyone have any suggestions?
 

A:webbrowser adware

Read other 7 answers
RELEVANCY SCORE 42.8

Hey, I am having trouble with some ad-ware and I can't for the life of me figure out what exactly it is or how to get rid of it.

Basically, I get this progam called NULL WebBrowser open (can be seen in attachment) and about 10 minutes later, it floods my screen with popups from adultfriendfinder. I'll close all of them including this "NULL" program, however, it will reappear in some time.

I've run Lavasoft ad-aware, Spybot and the online Trend-Micro scanner - nothing has removed this. Searching on google, I cannot seem to find information about it. Any help?

Thanks in advance
 

A:NULL WebBrowser

Still having the problem...any advice?
 

Read other 1 answers
RELEVANCY SCORE 42.8

Hi Everyone

I am trying to fix a friend's computer. He had 4 trojans on his pc that he found in January and didn't tell anyone. He is running OS: xp pro 1a.......RAM: 512......cant remember the information about his hard drive except it's an AMD.

The error message he is getting is this:

"cannot open web browser, error message "Downloading from site:res//C\WINDOWS\System32\shdolc.dll/offcancl.htm"

I have tried system restore, it will dont work for him, also tried a reinstall of windows, still no go. I tried to run hijack but it will not read from his floppy disk. I will try to save hijack to a cdrom and run it when I go there on Tuesday.

I would appreciate any suggestions that you can give me. You guys are always so helpful. Thank you.

Susi
 

A:Webbrowser Won't Load

Install avast home edition on your friends pc from a cd rom or jump drive and then run avast antivirus. Get rid of the Trojans then go to firefox and get rid of his IE or Netscape.

This worked for me, but someone else may have a better idea.
www.avast.com

www.firefox.com
 

Read other 3 answers
RELEVANCY SCORE 42.8

Hi, I hope someone can help me.

I have Norton Internet Security 2003, and use As-aware on a regular basis.

Now my browser start page has been changed to: http://topotun.com/index.htm and together with that I get a bunch of unwanted bookmarks to pornsites and a few spyware commercial pop-ups.

I have used Hijack this and get the following log (I use hijack this from a folder in my documents, not on the desktop) :

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = file://C:\DOCUME~1\Fisch\LOCALS~1\Temp\sp.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://topotun.com/index.htm
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
O2 - BHO: (no name) - {2B284CB0-9E5E-4627-A4BE-FECBD5BF9F5B} - C:\WINDOWS\System32\necodd.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: ... Read more

A:Hijacked webbrowser (yes, me too)

Read other 13 answers
RELEVANCY SCORE 42.8

Hi!!

I need some help in clearing this hijack that have been affecting my web browser and setting to some weird page everytime I on Internet explorer.

Below is the logfile created using Hijackthis. I am posting the whole logfile for a complete view on my system, however I have narrowed the problem to these 2 processes:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lastchaos.in.th/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Hacked by MOOzilla

I have tried deleting these 2 files but it will reoccurred once I on IE again, is there a way to remove them completely??

Thanks in advance for the help!!

The logfile is attached as below:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:29:21 AM, on 1/14/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\lkcitdl.exe
C:\WINDOWS\system32\lkads.exe
C:\WINDOWS\system32\lktsrv.exe
C:\Program Files\National Instruments\MAX\nimxs.exe
C:\Program Files\National Instruments\Shared\Security\nidmsrv.exe
C:\WINDOWS\system32\RTProxy.exe
C:\WINDOWS\system32\nisvcloc.exe
C:\Program Files\National Instruments\Shared\Tagger\tagsrv.exe
C:\WINDOWS\system32\nvsvc32.exe
... Read more

Read other answers
RELEVANCY SCORE 42.8

When I get to some sites I get this error message "Unable to locate 'SHDocVwCtl.WebBrowser' make sure the internet path is correct"
I cannot find the answer to this, does anyone know the problem and/or how to solve it? Thanks
 

A:SHDocVxCtl.WEbBrowser

If you use the "search" feature of this forum you will find this question has been asked before. I went to Google and typed in "SHDocVwCH" without the quote marks and I found where this happens if you are using a browser other than IE. If you use IE to access the site you are looking for it should work just fine. Are you using AOL or Netscape?
 

Read other 3 answers
RELEVANCY SCORE 42.8

When i got to some sites i get this error message "Unable to locate 'SHDocVwCtl.WebBrowser' make shure the internet path was typed in correct" something like that and i dont know how to get rid of it help would be apriciated.
 

A:'SHDocVwCtl.WebBrowser'

I have the same problem whats the fix ??
 

Read other 1 answers
RELEVANCY SCORE 42.8

This webhijacker was caused from a megaupload toolbar that I downloaded a month back. I uninstalled it because It was causing problems such as pop ups and redirects. Now every time I try and go to a web page it redirects me to http://www.megaclick.com/404. Help is appreciated. Here is my hijackthis log if it helps.

(Windows XP Home)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:55:42 PM, on 12/20/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Creative\Sound Blaster X-Fi\DVDAudio\CTDVDDET.EXE
C:\Program Files\Creative\Shared Files\Module Loader\DLLML.exe
C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanel.exe
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\CTXFIHLP.EXE
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOW... Read more

A:WebBrowser Hijack

Read other 7 answers
RELEVANCY SCORE 42.8

some one please tell me how to get my
Shdocvwctl.webbrowser working again i can not for the life of me
figure it out
it pops up on me all the time saying its not working or something
what do i do
 

Read other answers
RELEVANCY SCORE 42

Hello all,

I was recently victim to the VIRUS PROTECT scam. Thanks to the posts herein, I believe I successfully removed most of the malware. However, I still have a persistent and sporadic bug that redirects my web search links to a rogue url. Here is an example of an attempt to link to search result from "cod liver oil" :

(http://alfasort.com/search.php?q=cod%20liver%20oil )

The alfasort string is the ubiquitous prefix. I am using Microsoft's Internet Explorer. I am running Kaspersky Internet Security suite.

Can anyone here graciously offer some direction on how to eliminate this annoyance?

Thank you.

WPM

A:Webbrowser High-jack

Hello MtnGntx, welcome to the forum.Need to know exactly what you did ... so Did you do/run these? How to remove VirusProtect or Virus Protect (Removal Instructions)Next, please download RogueRemover and save to you Desktop. (compatible with Windows 2000, NT, XP, Vista)Double-click on rr-free-setup.exe to install in C:\Program Files\RogueRemover and follow the prompts.During installation an icon will automatically be created on your Desktop.If the program does not open after installation, double-click on the RogueRemover icon to launch.Select "Check for Updates" and click Download if any are found.Wait for the updates to finish downloading, then Close the update window.Select "Scan" and follow the onscreen directions to remove anything found.If nothing is found, exit RogueRemover.If RogueRemover finds something, it will present a list of detected items.Click "Remove selected", then Yes at the prompt.Wait for the removal to complete and then close RogueRemover.If using Windows Vista, be sure to Run As Administrator Download and scan with SUPERAntiSpyware, Free for Home UsersDouble-click SUPERAntiSpyware.exe and use the default settings for installation.An icon will be created on your desktop. Double-click that icon to launch the program.If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download and unzip them from HERE... Read more

Read other 6 answers
RELEVANCY SCORE 42

An error appears that contains something in regard to 'SHDocVwCtl.WebBrowser error loading'. When we click on OK, the entire system just locks up on us. What can we do to fix tis error?
 

A:SHDocVwCtl.WebBrowser error

im stumped- try running windows update maybe?
 

Read other 1 answers
RELEVANCY SCORE 42

Hi,
I have a very strange error, if you can call it that. It's mostly occurring at random AFAIK, but when it happens it keeps going for quite a while.

The problem is; when I click a link anywhere, the browser(firefox in my case) might decide to not load it. There's no error page, the spinning thingy doesn't even spinn. And it won't load unless I click the correct amount of times(usually more than 2). Too many and it resets the counter.

As this is a laptop, I've moved between school and home, this occurs at both places so I narrowed the search down to my computer.

Posting HJT log, incase you can find anything here.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:00:38, on 2008-05-07
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\PROGRA~1\BlackBox\blackbox.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\FlashGet\flashget.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.ex... Read more

Read other answers
RELEVANCY SCORE 42

I keep getting directed to thewebtimesnet, id happily kill the person who created it as its a right bugger, i had tried removing this which did cause a few problems, all of which seem to have been sorted now, . net framework removed somethign some how butits stillcontinueing tore direct me.

i read the instructions and hope i have followed them to an understandable level, your help is very kind.

Sorry if i have done this in correctly but im pretty sure its how you had wanted.

Thankyou very much for the help.

ftj

dds.txt :
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\rundll32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
C:\Acer\Empowering Technology\eNet\eNet Service.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Acer\... Read more

A:Webbrowser redirector thewebtimesnet

Hello and welcome. Please follow these guidelines while we work on your PC:Malware removal is a sometimes lengthy and tedious process. Please stick with the thread until I’ve given you the “All clear.” Absence of symptoms does not mean your machine is clean!
Please do not run any scans or install/uninstall any applications without being directed to do so.
Please note that the forum is very busy and if I don't hear from you within five days this thread will be closed.
Please subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

P2P - I see you have P2P software (BitTorrent) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to malware infections. Please see this post for more information. I recommend that you uninstall these now. You can do so via Control Panel >> Add or Remove Programs. If you choose to keep these applications, please do not use them until our fixes at TSF are complete.

Download TDSSKiller.zip and extract TDSSKiller.exe to your desktopExecute TDSSKiller.exe by doubleclicking on it.
Press Start Scan
If Malicious objects are found then ensure Cure is selected. ... Read more

Read other 16 answers
RELEVANCY SCORE 42

Hey guys,
I'm looking for a very lightweight browser that has minimal system impact while gaming + streaming.

I'm streaming a 720p/45fps stream and game performance is nice so long as I do not have my addon-heavy Firefox browser open. I suspect it's the annoying flash that has the severe system resource penalties.

I need those addons on that browser to be productive so I'll need either a Firefox lite mode which can be launched with the click of button (without hassle), or a completely different browser that supports Flash.

I only need that browser to watch the quality of my stream, and to chat with my viewers + browsing lulz pages during my downtime (1+5~tabs=).
Or can I bypass this in another way?
I currently have process priority manager where I have set flash and plugin container to 'low' priority. But this doesn't really help for that particular issue.

Flash is not generally slowing the system down from get-go, but after several minutes; while having my own stream feedback open and playing: the system slows down.
Soon as I close my browser, performance is back up.

W7 x64
GTX670M, i7 3610, Browser & Game on SSD (128gb - 90%)

edit, add:
Oh, and I'm looking for qualified experience opinions in general.

A:Lightweight webbrowser with flash

Perhaps try SlimBoat portable:

Best Web Browser for Mac, Linux and Windows. Fastest Cross-platform Internet Browser.

Configuration can be a little confusing!

Opera Portable 64bit vs Cyberfox 64bit vs SlimBoat Portable 32bit
Memory usage - all of the above with one tab open. Opera and SlimBoat both run from folders on desktop

Memory usage - Cyberfox (installed) one tab open, Opera (run from desktop) one tab open,
SlimBoat (run from folder on RAMdisk) five tabs open.

Start using flash and Memory usage roughly doubles.

Read other 8 answers
RELEVANCY SCORE 42

My browser was defaulting to msap and I can't open any applications without getting an unkown error. Any suggestions? Here is my log.......

Thanks in advance.

Logfile of HijackThis v1.99.0
Scan saved at 1:33:32 AM, on 12/20/2004
Platform: Windows 2000 SP2 (WinNT 5.00.2195)
MSIE: Internet Explorer v5.00 SP1 (5.00.2920.0000)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Network Associates\VirusScan\avsynmgr.exe
C:\WINNT\System32\svchost.exe
C:\em\opt\Tivoli\lcf\bin\w32-ix86\mrt\LCFD.EXE
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\wanmpsvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\Program Files\Network Associates\VirusScan\VsStat.exe
C:\Program Files\Network Associates\VirusScan\Vshwin32.exe
C:\Program Files\Common Files\Network Associates\McShield\mcshield.exe
C:\Program Files\Network Associates\VirusScan\Webscanx.exe
C:\Program Files\Network Associates\VirusScan\Avconsol.exe
C:\WINNT\system32\ntvdm.exe
C:\WINNT\System32\Promon.exe
C:\em\opt\Tivoli\lcf\bin\w32-ix86\mrt\lcfep.exe
C:\Program Files\ahead\InCD\InCD.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINNT\System32\msrexe.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINNT\System32\P2P Networking\P2P Networking.exe
C:\Program Files\America Online 7.0\waol.exe
C:\WINNT\explorer.exe
C:\Documents and Settings\Administrator\D... Read more

A:error with desktop and webbrowser need help

Read other 16 answers
RELEVANCY SCORE 42

Im using C# under Visual Studio .NET 2003 for Windows 2000. Im trying to use the MS WebBrowser control on my form but without much luck. Documentation is sh*t.

Im connecting to a URL which is in frames (frame one's name="one", frame two's name="two"). I need to access the first frame's HTML contents, in particular, the <form name="myForm"> area which has the element <input name="ConnectID" type=text>. I would like to alter the "ConnectID" value as well as programmtically click the form's SUBMIT button.

How do I do all of this with the WebBrowser control, or the IHTML interface.

Thanks.
 

Read other answers
RELEVANCY SCORE 42

Hello, recently my web browser. On google whenever I search for something I click the link and it would take me to a website called daytotals.com, I close that and try the link again and it would take me to another website. This has been happening for the past week or 2 and I have gotten quite sick of this.
I've tried spyware searches, malware, anti-virus scans and everything. They haven't found anything, even if they do it doesn't fix up my problem.


Quote:




Deckard's System Scanner v20071014.68
Run by JayJay Ciantar on 2008-01-05 21:39:41
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- Last 5 Restore Point(s) --
31: 2008-01-04 23:08:05 UTC - RP68 - Installed Ad-Aware 2007
30: 2008-01-04 22:46:59 UTC - RP67 - Removed AdwareAlert
29: 2008-01-04 22:43:10 UTC - RP66 - Installed AdwareAlert
28: 2008-01-04 22:18:09 UTC - RP65 - Device Driver Package Install: Lexmark Inkjet Drivers Printers
27: 2008-01-04 22:16:18 UTC - RP64 - Device Driver Package Install: Lexmark Imaging devices


-- First Restore Point --
1: 2007-12-22 12:14:26 UTC - RP34 - Windows Update


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as JayJay Ciantar.exe) --------------------------------------

Unable to find log (file not found); running clone.
-- HijackThis Clone ------------------------------------------------------------


Emulating logfile of Trend Micro Hijac... Read more

A:My webbrowser has been Hijacked by daytotals! :(

Hi, sorry for the delay.

If you still need assistance, please post a fresh main.txt log

Read other 1 answers
RELEVANCY SCORE 42

Whenever i go to apple.com and try to watch something in my browser using quicktime it crashes, looked in the log and found this in the description.Felaktigt program iexplore.exe, version 6.0.2900.2180, felaktig modul quicktimeh264.qtx, version 7.2.0.240, felaktig adress 0x00054c8a.It's in Swedish but i hope that doesn't matter. Does anyone know whats happening, i have googled it but didn't find mutch and i have reinstalled both graphics drivers and quicktime.Please give advice Edit: Moved topic to the more appropriate forum. ~ Animal

Read other answers
RELEVANCY SCORE 41.6

I'm having problems checking my email. I go onto hotmail, and when I look at my inbox, my entire webbrowser closes out. What's up with that?

The only thing I did prior to that happening, is I was creating a rule for my Outlook box to delete messages with certain texts in the subject heading. But Outlook, on my computer, does not even connect to my hotmail account.

I doubt that's what caused it, but now I can't check my email with my computer.
 

Read other answers
RELEVANCY SCORE 41.6

Hey any one got any ideas, when i start up my pc and try to open up my web browser weather its firefox or internet explorer it taking about 5 minutes or so but then when its open it works grand.

I've defraged the registery
defraged the hd
got rid of anything on my startup that does not need to be there
ran all updates with ms and antivirus software

O also this pc is nearly 5 years old with only 512 or ram, Pentium 4 so not to modern by any standards but still enough power to run web browsers and some speed.

any help would be great

thanks leon
 

A:Solved: Problems opening up Webbrowser

Read other 12 answers
RELEVANCY SCORE 41.6

Hello,
I have an application which embed IE Webbrowser to display a Rich text editor based on CKEditor (which web based editor). But, on my computer it does not work because the policy security_HKLM_only is set to 1.
I've tried to reproduce on machine which I have administrator rights, when I set the key to 1, the editor does not work anymore and when I set the value to 0, it works fine.
I displayed the user agent of webbrowser by adding to my page this script: alert(navigator.userAgent);
The output:
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.1; Win64; x64; Trident/7.0; .NET CLR 2.0.50727; SLCC2; .NET CLR 3.5.30729; .NET CLR 3.0.30729; .NET 4.0C; .NET4.0E)

And the script: alert(document.documentMode); has the following output: 5.
I tried also to set my process in HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION to 0x2AF9 (IE11) but it does not work.

When I test on IE (not embedded  browser) it works fine.
Do you have any idea why the behavior is different between the IE and embedded webbrowser? and if there are some ways to bypass this behavior?

Thank you.
Regards

Read other answers
RELEVANCY SCORE 41.6

I have started getting popups, search engine tool bars insert into my web browser, and my computer has slowed noticably. I saw a similar post by another user and I think I have a similar problem. I ran Hijackthis and removed a few references to "searchportal" (something like that). That took care of the hijacked webbrowser problem but I still have very poor performance. Also I notice that when I use alt + tab to switch between windows sometimes I notice that an icon for Java on the screen (even though I haven't opened Java). Can you help me get rid of whatever is affecting my computer?

Logfile of HijackThis v1.96.1
Scan saved at 10:17:49 PM, on 1/24/2004
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v5.50 SP1 (5.50.4522.1800)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\WINREG.EXE
C:\WINDOWS\SYSTEM\MDM.EXE
C:\WINDOWS\SYSTEM\DEVLDR16.EXE
C:\PROGRAM FILES\CREATIVE\SBLIVE\AUDIOHQ\AHQTB.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\MICROSOFT HARDWARE\MOUSE\POINT32.EXE
C:\PROGRAM FILES\DELL\RESOLUTION ASSISTANT\COMMON\BIN\RXMON9X.EXE
C:\PROGRAM FILES\ADAPTEC\DIRECTCD\DIRECTCD.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\MOTIVE\MOTMON.EXE
C:\PROGRAM FILES\DAP\DAP.EXE
C:\QUICKENW\QAGENT.EXE
C:\PROGRAM FILES\NORTON UTILITIES\NPROTECT.EXE
C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE
C:... Read more

A:hijacked webbrowser/spyware issues

Read other 11 answers
RELEVANCY SCORE 41.6

Application REQUIRES persistent cookies to be set, however cookies has to be deleted when application terminates
One way is to delete IE cookies itself 
RunDll32.exe InetCpl.cpl,ClearMyTracksByProcess 2 
Is there any API to delete cookies only with respect to specific WebBrowser Control process
If the only option is to delete IE cookies itself,is there a way to do it silently without getting IE clearing cookies dialog

Read other answers
RELEVANCY SCORE 41.6

I'm posting here on recommendation of the support engineer I've been in contact with at
[link removed]
Developer Community Visual studio. I am unable to post links with my account to it. it has an id of 642834
On some computers I can with a very simple .net application cause a silent crash of the whole application by attempting to print using the WebBrowser component. On those computers I get the same behaviour when attempting to print using Internet Explorer.
In a simple application where I've dragged out a button and a WebBrowser in the Visual Studio designer I add the following in the code behind

public partial class Form1 : Form
{
public Form1()
{
InitializeComponent();
webBrowser1.Navigate("www.google.com");
}

private void Button1_Click(object sender, EventArgs e)
{
webBrowser1.ShowPrintDialog();
}
}

with the button click event being bound to Button1_Click of course.
This causes a crash. Looking in the Event Viewer I see the following message at the same time of the crash.

Faulting application name: WindowsFormsApp1.exe, version: 1.0.0.0, time stamp: 0xaf8b1ae6
Faulting module name: MSHTML.dll, version: 11.0.17134.829, time stamp: 0x8429479d
Exception code: 0x4000001f
Fault offset: 0x00d65391
Faulting process id: 0x4c98
Faulting application start time: 0x01d5388ff4e51d42
Faulting application path: C:\Users\perhyy\source\repos\WindowsFormsApp4\WindowsFormsApp1\bin\Debug\Windows... Read more

Read other answers
RELEVANCY SCORE 41.6

Hi Everyone!I have obtained this Elitebook 8560W and itīs running Windows 10 Pro 64-bit. The laptop has dedicated quickkeys on the top right corner. I want to change the "internet" key to open Chrome instead of Edge /IE. I have changed the default app in the Windows setting to Chrome. This did not do anything to the key. I have removed both Edge and IE from windows and the key is now unresponsive. How can I modify this to open Chrome? Can anyone help me with this? //Chri11e

Read other answers
RELEVANCY SCORE 41.6

please help, please tell me how to identify and remove the adaware that hijacked my webbrowser.i am not able to identify the hijacker of my browser. at first it seemed to be websearch but then at second glance it does not appear to be websearch.below you can see the hijack log.the problem appears to be: R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web--search.comit sets my homepage to www.web--search.com, but in practice i am being directed to www.msn.com. I have tried several adaware removal programs (adware 6.0, scan spyware, BPS spyware adaware remover), but all don't seem to work.i have also tried the suggestions from http://www.boredguru.com/modules/articles/...php?storyid=130, but since it does not appear to be websearch.com, they are of no use.I have also attached a pic of my screen with the search bar. You can see that it is not the same as the one of www.websearch.com.Logfile of HijackThis v1.99.0Scan saved at 22:22:23, on 2005-1-4Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\System32 ... Read more

A:webbrowser hijacked by unidentifiable hijacker

Adaware 6.0 is an old version and no longer supported. Please download and install Adaware SE 1.05 from here.http://www.lavasoftusa.com/software/adaware/Install the program and launch it.First, in the main window, look in the bottom right corner and click on Check for updates now and download the latest reference files. Exit Adaware.Please make sure that you can view all hidden files. Instructions on how to do this can be found here:How to see hidden files in WindowsRun Hijackthis again, click scan, and Put a checkmark next to each of these. Then close all other windows--you should only see HijackThis on your Desktop--and click the Fix Checked button.R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.web--search.comR3 - URLSearchHook: StartBHO Class - {30192F8D-0958-44E6-B54D-331FD39AC959} - C:\WINDOWS\webdlg32.dllO2 - BHO: StartBHO Class - {30192F8D-0958-44E6-B54D-331FD39AC959} - C:\WINDOWS\webdlg32.dllO2 - BHO: (no name) - {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} - (no file)O3 - Toolbar: Search Bar - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\WINDOWS\webdlg32.dllO11 - Options group: [!IESearch] !IESearchO16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/Download...bridge-c284.cabO16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -O18 - Protocol: mp3 - {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} - (no file)Reboot your computer into Safe ModeR... Read more

Read other 1 answers
RELEVANCY SCORE 41.6

I just downloaded a nifty StartUp app referred to in http://forums.techguy.org/showthread.php?s=&postid=923034#post923034
app is fine
however, I found this "thing" NewdotNet in the HKLM Run section. I have never heard of it.

the readme ...
1. OVERVIEW
The primary function of NewDotNet is to enable individual computers to access the website names and email addresses that are within the domain namespace that New.net has launched.
Examples of the domain names that NewDotNet enables are:

.SHOP .XXX .CLUB .LTD
.INC .TRAVEL .TECH .SPORT
.FAMILY .LAW .MED .MP3
A full list of domain name extensions offered by New.net (and
more information about the company) is located at
http://www.new.net.

It is very odd - I did not install this & spybot did not catch it

any thoughts?
many thanks
 

A:NewDotNet - what is this?

Read other 11 answers
RELEVANCY SCORE 41.6

hey guys,

I ran spybot on my comp. and it deleted all of the stuff that needed to be deleted(wohooo!0 xcept for newdotnet.

what's this?
and how can i get rid of it?
I've tried taking it off by deleting the folder but it won't leave.

any ideas?

thnx

tomea

p.s.
how can u delete browser enha ser.... my bro has it but I can't get rid of it. I tried deleting it off add/remove program but no dice.
thnx again
 

A:newdotnet

You could try it this way
http://www.doxdesk.com/parasite/NewDotNet.html

Just make sure that you have the LSPFix download before doing anything. You'll need it if you break the internet access.

I thought SpybotSD would remove New.net ??
 

Read other 3 answers
RELEVANCY SCORE 41.6

Can anyone tell me what NewDotNet is. It is a folder in my Program Files directory, and afaik, not a program I installed.
 

A:NewDotNet?

http://cexx.org/newnet.htm
 

Read other 1 answers
RELEVANCY SCORE 41.6

Spybot has detected NewDotNet on my computer and can't eliminate it. How do things like this end up on my computer and how can I prevent it? I don't download from emails and I don't install software, except for things liek Acrobat upgrades.

My HJT logfile is below. Can anyone help me get rid of the NewDotNet infection.

Logfile of HijackThis v1.99.1
Scan saved at 828 PM, on 11/18/2005
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
C:\WINNT\System32\3Com_DMI\3CDMINIC.EXE
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\WINNT\System32\drivers\CDAC11BA.EXE
C:\DMI\bin\dmisrv.exe
C:\DMI\bin\delldmi.exe
C:\WINNT\System32\svchost.exe
C:\PROGRA~1\NORTON~1\NORTON~3\navapsvc.exe
C:\PROGRA~1\NORTON~1\NORTON~3\npssvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\wanmpsvc.exe
C:\DMI\bin\win32sl.exe
C:\WINNT\System32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\DMI\bin\nic.exe
C:\DMI\bin\coo.exe
C:\DMI\bin\dnar.exe
C:\DMI\bin\nodemngr.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe ... Read more

A:NewDotNet

Hi & welcome to TSF.

I can't see New.Net in your HJT log.

Download LSPFix.exe

Instructions for using LSPFixDouble click on LSPFix.exe to run it.
Once running, you will be required to tick the disclaimer - "I know what I'm doing".
You'll find a windows with 2 columns. In the left column which is labeled 'Keep', click once to select the entry:newdotnet***.dll (begins with newdotnet)

Then click on the arrow pointing to the right, >>.
This will move the entry to the right column labeled 'Remove'
Click the Finish button to complete the fix.

Next, go to Control Panel > Add/Remove Programs and uninstall:

New.Net

Delete the folder from:

C:\Program Files\NewDotNet

Please download Trend Micro? Anti-Spyware for the Web Utility (by clicking the "Scan and Clean your PC" button).Save it to your desktop.
Double-click the new icon on your desktop (tmas-web-scan.exe)
It will say "Loading TrendMicro definitions".
Once the definitions are loaded, the program will appear to close then re-open.
Click "Start Scan"
After it's done scanning, click "Scan Results"
Make sure all items found have a check next to them, then click "Clean Threats Now".
Click Exit.
Reboot your computer. In place of the TrendMicro icon will be a text file called "Antispyware.log", please double-click that log and copy the entire contents and paste them in your next post.

Perform an online scan in Internet Expl... Read more

Read other 3 answers
RELEVANCY SCORE 41.6

I really need some help with this please. Recently I downloaded spy bot search and destroy and it detected NewDotNet, well my horror begins....I have tried to remove this every possible way & it absoultely will not let me. I am running windows xp every thing is current. I am using Mcaffee internet security ...again current. I will tell you what I have done so far to no avail Ok i ran spy bot it detected it , i selected fix selected and it gave me a pop up that it was not able to remove would i like to run spy bot to remove it the next time i booted. I said yes. < did that like a billion times> so I did a web search and I found a page telling me how to remove it from control panel.....nope not there. I believe i got this through an old kazza download ....oddly enough that wont uninstall completely either. I then following more advice went into the registry to try and delete it from there. No luck. not happening wont let me touch it. SO i download another spy ware program Lavasoft Adware 6 ......before that I installed a program called spyware blaster. it was unable to remove it as well. I have then re downloaded kazza to see if it would over write the exixting files and give me the uninstall......nope says i do not have the authorization to remove it and some file is missing. SO from there i re run Lavasoft, quarantine everything it picks up, try to delete this again and again it says that it was unable yada yada. Please Please Please someone help me get this misera... Read more

A:newdotnet

Hiya and welcome, SMK04.

I've split you off into a new thread, as you may get more responses this way

eddie
 

Read other 2 answers
RELEVANCY SCORE 41.6

I found that I have NewdotNet and it will not delete from my program files. How do I get rid of this. Here is a copy of hjt log. Please help. Thanks so much.
Logfile of HijackThis v1.98.2
Scan saved at 11:58:02 PM, on 11/19/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\SAVScan.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\windows\system\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\PhotoSmart\Photo Imaging\Hpi_Monitor.exe
C:\Program Files\Common ... Read more

A:NewdotNet How to get rid off.

GO TO Control Panel add/remove You should find it therre and remove it

Go here http://forums.techguy.org/t110854.html

Download SpyBot Search and Destroy and Ad-Aware Se Setup Update and do a scan with both getting rid of all they find

Do a scan with Housecall and Panda

After doing th eabove post another log here please
 

Read other 3 answers
RELEVANCY SCORE 41.6

Logfile of HijackThis v1.99.1Scan saved at 12:51:33 PM, on 7/16/2006Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\LEXBCES.EXEC:\WINDOWS\system32\LEXPPS.EXEC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exeC:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exeC:\Program Files\Common Files\Symantec Shared\ccSetMgr.exeC:\Program Files\Norton AntiVirus\navapsvc.exeC:\Program Files\Norton AntiVirus\SAVScan.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\wanmpsvc.exeC:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exeC:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exeC:\WINDOWS\Explorer.EXEC:\Program Files\Viewpoint\Viewpoint Toolbar V35\FotomatDeviceConnect.exeC:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exeC:\Program Files\Java\j2re1.4.2_05\bin\jusched.exeC:\PROGRA~1\STOMPS~1\SPYWAR~1... Read more

A:Newdotnet

Sorry for the delay. If you are still having problems please post a brand new HijackThis log as a reply to this topic. Before posting the log, please make sure you follow all the steps found in this topic:Preparation Guide For Use Before Posting A Hijackthis Log

Read other 1 answers
RELEVANCY SCORE 41.6

//Mod edit: Log split away from thread here.okay heres my log could someone help me now pleaseLogfile of HijackThis v1.99.1Scan saved at 10:55:02 AM, on 8/13/2006Platform: Windows 2000 SP4 (WinNT 5.00.2195)MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000)Running processes:C:\WINNT\System32\smss.exeC:\WINNT\system32\winlogon.exeC:\WINNT\system32\services.exeC:\WINNT\system32\lsass.exeC:\WINNT\system32\svchost.exeC:\WINNT\system32\spoolsv.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\WINNT\System32\svchost.exeC:\Program Files\ewido anti-spyware 4.0\guard.exeC:\WINNT\system32\regsvc.exeC:\WINNT\system32\MSTask.exeC:\WINNT\system32\stisvc.exeC:\WINNT\System32\WBEM\WinMgmt.exeC:\WINNT\system32\svchost.exeC:\WINNT\Explorer.EXEC:\WINNT\system32\wuauclt.exeC:\Program Files\Java\jre1.5.0_06\bin\jusched.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exeC:\WINNT\system32\wuauclt.exeC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\HijackThis\HijackThis.exeC:\WINNT\SoftwareDistribution\Download\ebee5e32dd451a4bf98a6e3df0b8a7bf\update\update.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.htmlR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.comR1 - HKLM\Sof... Read more

A:Newdotnet

i posted this somewhere else and i dont think i was suppost to so if i did this wrong im sorry i know there is something wrong with my system i just dont know what it is so heres my log please help meLogfile of HijackThis v1.99.1Scan saved at 1:16:02 PM, on 8/13/2006Platform: Windows 2000 SP4 (WinNT 5.00.2195)MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000)Running processes:C:\WINNT\System32\smss.exeC:\WINNT\system32\winlogon.exeC:\WINNT\system32\services.exeC:\WINNT\system32\lsass.exeC:\WINNT\system32\svchost.exeC:\WINNT\system32\spoolsv.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\WINNT\System32\svchost.exeC:\Program Files\ewido anti-spyware 4.0\guard.exeC:\WINNT\system32\regsvc.exeC:\WINNT\system32\MSTask.exeC:\WINNT\system32\stisvc.exeC:\WINNT\System32\WBEM\WinMgmt.exeC:\WINNT\Explorer.EXEC:\WINNT\system32\svchost.exeC:\Program Files\Java\jre1.5.0_06\bin\jusched.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exeC:\WINNT\System32\svchost.exeC:\Program Files\Internet Explorer\IEXPLORE.EXEC:\Program Files\HijackThis\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Searc... Read more

Read other 2 answers
RELEVANCY SCORE 41.6

hello. I was running anti-viruses and anti-spyware programs when I found something that I couldn't delete. I found several entries for NewDotNet in Spybot S&D and I couldn't delete it even after a restart. Could someone please help me get rid of it? Also, if there is anything that I don't need and can delete, could you please tell me? Thanks in advance!

Here's the Hijackthis log:

Logfile of HijackThis v1.99.1
Scan saved at 12:45:42 PM, on 1/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\BRMFRSMG.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
C:\PROGRA~1\VERIZO~1\SMARTB~1\MotiveSB.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Fi... Read more

A:NewDotNet

Hi....

First you will need to remove NEW.NET. Please open Add/Remove programs and uninstall New.Net , NewDotNet, New.net Application, or New.net Domains from there if listed. If it is not listed, follow these instructions:

From a computer that has Internet access, click on the following link:
http://www.new.net/support/uninstall6_90.exe.
? Download and save uninstall6_90.exe to the Desktop.
? Go to the Desktop and double-click on uninstall6_90.exe
? Click on the OK button.
? After removal, you may be prompted to reboot. Please reboot even if not prompted.


Have "Hijack This" fix all the following items in the list below by placing a check in the appropriate boxes.Confirm that you have only the listed ones checked, then press <Fix checked> and Close HJT.

R3 - URLSearchHook: (no name) - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - (no file)
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_48.dll
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

Open Windows Explorer and delete the following red folder/s

C:\Program Files\ NewDotNet

Reboot an post a new HJT log..

Read other 1 answers