kakoo odstraniti begin2search?
sem odstranil vendar v registru še vedno nekja najde kaj storiti, in pa pojavil se je še en enak problem kot ga je opisal Boby:
“Imam težavo ker ko stisnem v browserju ctr+enter mi res doda http://www.in com ampak se ne odprem ampak zadeva izgleda nadalje nekako takole.
npr. za stran mobisux.
http://search.msn.com/results.asp?Connect=Type_mismatch&RS=CHECKED&FORM=MSNH&v=1&q=mobisux
“
klemenxx obstaja kakšna rešitev tega???
100% ne bom trdil, da pomaga tudi na 98, ker mi je zgradba registra v 98 že malo ušla iz glave.
No škodit načeloma ne more, prav tako kot ne more škodit to, da si prej narediš varnostno kopijo registra.
Tolko da ne bom potem kriv za plazove v visokogorju, sicer pa je mumble jumble o tem že velikokrat napisal tudi klemenxx, ki bo menda naslednjič v kamna prinesel restore cdja o vročih švedinjah 🙂
reg ne pomaga, zato prilagam tale log, SPREMENIL SEM SAMO DOLOČENE VRSTICE -SAJ RAZUMEŠ, AMPAK TO VERJETNO NIMA VPLIVA.
Logfile of HijackThis v1.97.7
Scan saved at 12:23:01, on 01.10.2004
Platform: Windows 98 SE (Win9x 4.10.2222A)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\NOVELL\CLIENT32\NWRECMSG.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\NOVELL\CLIENT32\WM95.EXE
C:\WINDOWS\SYSTEM\SCARDSVR.EXE
C:\PROGRAM FILES\COMMON FILES\ACTIVCARD\ACAUTOREG.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\TEMP\ICSUPP95.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\INTERNAT.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\PROMON.EXE
C:\PROGRAM FILES\SOPHOS SWEEP\ICMON.EXE
C:\PROGRAM FILES\ACTIVCARD\ACTIVCARD GOLD\AGQUICKP.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\HOSTEXPLORER.95\HOSTEX32.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\UNZIPPED\HJT\HIJACKTHIS.EXE
R0 – HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://SEM SPREMENIL
R1 – HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = SEM SPREMENIL
R1 – HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = SEM SPREMENIL;
R0 – HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 – HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Povezave
O2 – BHO: (no name) – {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} – C:\PROGRAM FILES\ADOBE\ACROBAT 6.0\READER\ACTIVEX\ACROIEHELPER.DLL
O2 – BHO: (no name) – {08227B4B-54FE-4C4D-809F-BCA46292FC5B} – C:\WINDOWS\SYSTEM\AANTX.DLL
O3 – Toolbar: @msdxmLC.dll,-1@1060,&Radio – {8E718888-423F-11D2-876E-00A0C9082467} – C:\WINDOWS\SYSTEM\MSDXM.OCX
O4 – HKLM\..\Run: [internat.exe] internat.exe
O4 – HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 – HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 – HKLM\..\Run: [SystemTray] SysTray.Exe
O4 – HKLM\..\Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 – HKLM\..\Run: [Promon.exe] Promon.exe
O4 – HKLM\..\Run: [InterCheckMonitor] “C:\PROGRAM FILES\SOPHOS SWEEP\ICMON.EXE” -minimised
O4 – HKLM\..\Run: [QuickPassword] C:\Program Files\ActivCard\ActivCard Gold\agquickp.exe
O4 – HKLM\..\Run: [Sweep95] “C:\Program Files\Sophos SWEEP\SETUP.EXE”
O4 – HKLM\..\RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme
O4 – HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 – HKLM\..\RunServices: [Workstation Scheduler] C:\novell\client32\wm95.exe
O4 – HKLM\..\RunServices: [SCardSvr] C:\WINDOWS\SYSTEM\SCardSvr.exe
O4 – HKLM\..\RunServices: [AutoRegister] C:\Program Files\Common Files\ActivCard\acautoreg.exe -start
O4 – HKLM\..\RunServices: [Sweep95] C:\Program Files\Sophos SWEEP\ICLOAD95.EXE
O9 – Extra button: Related (HKLM)
O9 – Extra ‘Tools’ menuitem: Show &Related Links (HKLM)
O16 – DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) – http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O16 – DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) – http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 – DPF: {a2001dd0-c7bd-11d4-a3e1-00c04fa32518} –
O16 – DPF: {5E2A3510-4371-11D6-B64C-00C04FAEDB18} – http://SEM SPREMENIL
O16 – DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) –
O16 – DPF: {C4847596-972C-11D0-9567-00A0C9273C2A} (Crystal Report Viewer Control) – SEM SPREMENIL
O16 – DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} (Update Class) – http://v4.windowsupdate.microsoft.com/CAB/x86/ansi/iuctl.CAB?37907.2178819444
O17 – HKLM\System\CCS\Services\VxD\MSTCP: Domain = SEM SPREMENIL
O17 – HKLM\System\CCS\Services\VxD\MSTCP: NameServer = SEM SPREMENIL
En nasvet:
Da se izognete takšnim in drugačnim težavam bri brskanju po netu tudi v bodoče, samodejnim instalacijam spywarea in podobne navlake, pojdite na spletni naslvo http://www.mozilla.org/ s katere si brezplačno prenesete, vsaj kar se mene in miljonov drugih uporabnikov tiče, najboljši spletni brskljalnik pod soncem, in Sicer Mozilla Firefox…
lp
Forum je zaprt za komentiranje.