Jump to content

Recommended Posts

Posted

Using Zone Alarm, I've detected three program components trying to access the internet, and two of them are regular components, urlmon.dll and shdocvw.dll, but the third one is a file called btiein.dll. Now, when I grant access to these components, my internet explorer opens in new windows a lot of adult material. When I try to delete the bad .dll file, it says cannot delete, in use by windows. When I try to go through cmd.exe it says access denied. Any idea what this btiein.dll file is, what's wrong with my computer, and how can I remedy it? 5 people work on this computer, so I don't know if anything has been installed recently. Note: when I deny access, I cannot go to any website on Internet Explorer, but I can in Mozilla.

Posted

left click MY COMPUTER , left click your C drive(windows),left click your windows folder,scrol down and find a folder called SYSTEM32,left click this folder,scroll down till you find the dll and delete it.

shy ???

Posted

No it doesnt , ill post you the link later , where it says "ad-aware does not detect all variants of the hyjacker file"

do your research Atomic Kitten , before you dismis other peoples posts.

shy :)

Posted

Shy, that's what I did, but remember that I couldn't delete it.

I have both Spybot 1.2 and adaware, and neither helped me with this particular problem.

Nyar, I shall try that soon.

Gob, yeah I found that using google, but didn't see the download part, so I'll download pest control and see if it helps.

Posted

No it doesnt , ill post you the link later , where it says "ad-aware does not detect all variants of the hyjacker file"

do your research Atomic Kitten , before you dismis other peoples posts.

shy :)

I wasn't dismissing your post ! but if your feeling touchy , that's your problem. ;)

maybe this will help : www.computing.net/security/wwwboard/forum/6049.html

www.mvps.org/inetexplorer/Darnit.htm

Posted

Hey gob, that pest patrol was cheap, it found 50 confirmed/suspected items, including btiein, and it can't delete or quarantine until I buy it.

Posted

Constantly changing. May be detected and deleted by Adaware, Spybot or BHODemon

Causes various errors, including:

IEXPLORE caused an invalid page fault in module STOOLBAR.DLL

The files used by Huntbar are changing constantly and it has a built in auto-update feature.

It may appear in Control Panel, Add/Remove Programs under various names including "Internet 404", "Tools for Internet Explorer, "MSIETS", "Search Toolbar". If removed using Control Panel ensure you clean up your system or it may reinstall.

At last site update the following files were implicated:

msiets.dll

msielink.dll

btlink.dll

msiein.dll

btiein.dll

stoolbar.dll

Removal instructions can be found at the URL below:

http://www.doxdesk.com/parasite/HuntBar.html

Hmmm. ;)

Posted

well kitten you have saved me looking for the link which says add-aware doesnt remove all variants of the highjacker file ,add-aware doesnt remove these varients BTLink, BTIn and SToolbar, read your own links next time kitten.

shy :)

p.s.im not feeling touchy kitten,i just dont like your condesending know-it-all attitude, ;)

Posted

hehe, that's the same thing as I always do. . . if it doesn't work . . buy something else that does . . ;D

So now I am stuk with a 468 at 133 mhz running Win3.11 and Netscape 2.. . not that bad really . . .

  • 3 weeks later...
Posted

Well, I was able to remove the file btiein.dll, but it still kept doing its thing. I'm still backing up, because I have a lot of homework for school, though.

Posted

If it is still doing it's thing then you didn't get rid of it !

Delete your restore points, it's obviously restarting when you re-boot.

The only way is to do it in safe mode, close down all background processers and search for the btiein.dll and delete it.

You can't delete it if it's active !

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.