Whenever I load the Internet Explorer 6, it keeps loading to a home page that I dont want
called
www.searchv.com/w/search.html . I tried changing it by going to the Tools/Internet Options... but everytime i reboot my computer it keeps loading that page.
I scanned with the AVG program and it says I do not have any virus and I tried scanning with Spybot but it stops for some reason half-way through the scan.
I read other people's questions like mine and so I was wondering if you could help me:
Logfile of HijackThis v1.97.3
Scan saved at 1:38:42 PM, on 10/11/2003
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.e
xe
C:\WINDOWS\system32\winlog
on.exe
C:\WINDOWS\system32\servic
es.exe
C:\WINDOWS\system32\lsass.
exe
C:\WINDOWS\system32\svchos
t.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\system32\spools
v.exe
C:\PROGRA~1\Grisoft\AVG6\a
vgserv.exe
C:\WINDOWS\System32\svchos
t.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\reals
ched.exe
C:\Program Files\2Wire\Gateway\2Porta
lMon.exe
C:\PROGRA~1\Grisoft\AVG6\a
vgcc32.exe
C:\PROGRA~1\YAHOO!\MESSEN~
1\ymsgr_tr
ay.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Real\Update_OB\rnath
chk.exe
C:\PROGRA~1\DAP\DAP.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\All Users\Desktop\hijackthis\H
ijackThis.
exe
R1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Bar =
http:/www.searchv.com/w/search.htmlR1 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Search Page =
http://www.searchv.com/w/search.htmlR0 - HKCU\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKCU\Software\Microsoft\In
ternet Explorer\Search,SearchAssi
stant =
http://www.searchv.com/w/search.htmlR1 - HKCU\Software\Microsoft\In
ternet Explorer\Search,CustomizeS
earch =
http://www.searchv.com/w/search.htmlR0 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Start Page =
http://www.searchv.com/R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Search Page =
http://www.searchv.com/w/search.htmlR1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Page
_URL =
http://www.searchv.com/w/R1 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Default_Sear
ch_URL =
http://www.searchv.com/w/search.htmlR0 - HKLM\Software\Microsoft\In
ternet Explorer\Search,CustomizeS
earch =
http://www.searchv.com/w/search.htmlR0 - HKLM\Software\Microsoft\In
ternet Explorer\Search,SearchAssi
stant =
http://www.searchv.com/w/search.htmlR1 - HKCU\Software\Microsoft\In
ternet Explorer\SearchURL,(Defaul
t) =
http://www.searchv.com/w/R0 - HKLM\Software\Microsoft\In
ternet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.ht
m
O2 - BHO: (no name) - {0096CC0A-623C-4829-AD9C-1
9AF0DC9D8F
E} - C:\PROGRAM FILES\DAP\DAPIEBAR.DLL
O2 - BHO: Yahoo! Companion BHO - {13F537F0-AF09-11d6-9029-0
002B31F9E5
9} - C:\Program Files\Yahoo!\Common\ycomp5
,0,8,0.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-2
06D7942484
F} - C:\PROGRA~1\SPYBOT~1\SDHel
per.dll
O2 - BHO: WinShow module - {6CC1C918-AE8B-4373-A5B4-2
8BA1851E39
A} - C:\Documents and Settings\david\Application
Data\winshow\winshow.dll
O3 - Toolbar: DAP Bar - {62999427-33FC-4baf-9C9C-B
CE6BD127F0
8} - C:\PROGRAM FILES\DAP\DAPIEBAR.DLL
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-0
0A0C908246
7} - C:\WINDOWS\System32\msdxm.
ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0
090271D4F8
8} - C:\Program Files\Yahoo!\Common\ycomp5
,0,8,0.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [internat.exe] internat.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\reals
ched.exe" -osboot
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2Porta
lMon.exe
O4 - HKLM\..\Run: [drvupd] rundll32 setupapi,InstallHinfSectio
n infupd4 128 C:\WINDOWS\drvupd.inf
O4 - HKLM\..\Run: [AVG_CC] C:\PROGRA~1\Grisoft\AVG6\a
vgcc32.exe
/STARTUP
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] C:\PROGRA~1\YAHOO!\MESSEN~
1\ypager.e
xe -quiet
O4 - Startup: PowerReg Scheduler.exe
O4 - Global Startup: RealDownload.lnk = C:\Program Files\Real\RealDownload\RE
ALDOWNLOAD
.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: MSupdater.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.h
tm
O9 - Extra button: Yahoo! Login (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Login (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Yahoo! Messenger (HKLM)
O9 - Extra button: Run DAP (HKLM)
O9 - Extra button: AIM (HKLM)
O9 - Extra button: Related (HKLM)
O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Messenger (HKLM)
O16 - DPF: Yahoo! GoStop -
http://download.games.yahoo.com/games/clients/y/gst1_x.cabO16 - DPF: {869F3BBC-A812-4D13-A93B-7
B3FC816DCD
5} (McAfee.com Updater) -
http://download.mcafee.com/molbin/clinic/virusscan/mcasupd.cabO16 - DPF: {A17E30C4-A9BA-11D4-8673-6
0DB54C1000
0} (YahooYMailTo Class) -
http://download.yahoo.com/dl/installs/ymail/ymmapi.dllO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-4
4455354000
0} (Shockwave Flash Object) -
http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cabStart Free Trial