Home > Security > Spyware
Search:
Dubolom.com or My-Find.com Homepage Hijacker Removal Instructions and Help
Hits:23
What is Dubolom.com?
 
Dubolom.com is a website search engine with lots of search results for things like debt consolidation, refinancing, casinos, and more related searches generally seen in spam emails. Most searches appear to be affiliate links that make the owner of the site money through clickthroughs. It has a "search the web" option that doesnt appear to care what you type in the box, it simply shows another page of results from keywords that the site has in a database. It takes over as your start page and appears to be a variant of the CoolWebSearch homepage hijacker as well.
These instructions pertain to the my-find.com web site as well.
 
 
How do I Remove Dubolom.com? 
 
Since Dubolom.com appears to be a variant of CoolWebSearch, the easiest way to regain control of your system would be to download and run a program called CWShredder, created by Merijn of Spywareinfo.com. Merijn has an entire page devoted to CoolWebSearch and its many variants.
 
 You can download CWShredder by clicking on this link.
 
 The Dubolom.com website has an uninstall program as well in the support section. If you would rather do this.
 
 1. Download and save file Uninstall.exe (in ZIP archive Uninstall.zip)
 2. Run Uninstall.exe (unpack before if downloaded in ZIP archive Uninstall.zip)
 3. You can change your start page to any other.
 4. You can delete any bookmarks in your Favorite folder of Internet Explorer.
 
 The website also offers manual removal instructions.
 

 1) Click on Start, Run and and type REGEDIT and press OK
 
 2) Navigate to the following registry key: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
 
 3) Delete the following items in the RUN section (if they exist)
 
 svchost.exe
 olehelp.exe
 4) Reboot, click on Start, Find (or Search), Files and Folders, and Search for the following files to delete (if theyexist)
 
 svchost.exe (in the windows directory NOT the system32 directory)
 olehelp.exe (in windows directory)
 5) Reboot Windows in Safe Mode (press F8 before Windows starts)
 
 6) Delete the file "winlogon.exe" in the directory (if it exists)
 
 C:\Documents and Settings\All Users\Start Menu\Programs\Startup
 
 7) Change start page to other address.
 
 How Do I Avoid this Hijacker in the Future?
 
Most of these Homepage Hijackers exploit a known problem with the Java Virtual Machine on your Windows computer. You can read more about this exploit by clicking on the link below.
 
 Flaw in the Microsoft VM Could Enable System Compromise (MS03-011)
 http://support.microsoft.com/default.aspx?scid=kb;en-us;816093
 
 Because of this exploit, you should visit the Microsoft Windows Update web site and download all the Critical Updates for your system
 
Home | About Us | Privacy Policy
Copyright 2007-2017 RegistryWinner.com. All rights reserved.