Hello
I am a new user of this forum, so apologies in advance if I miss anything
!
Well, I have recently found that my IE has started randomly redirecting to odd pages. I have looked for new processes running and found that I had a variant of "jov" (32jov.exe) running, along with an unidentified dll in my System32 folder (bqckrgz.dll), which according to spybot has a value of "qknhnmlo". By the way, I have googled the bqckrgz.dll and it is not even recognised yet, as I am getting NO hits!
The former I THINK I may have removed from the system, as I am no longer finding it on a system search. With the latter though I have not had any luck, as whatever I may have done to remove it, it simply keeps re-installing itself, even when I tried stopping it and then run HijackThis asking to delete it at the next boot! It appears to be loading as a module of explore.exe?
Unfortunately I disabled my Tea-Timer a few days back to install some software and then forgot to reactivate it...:sad:...! So I am paying the price now!
Any ideas anyone of how to go round this?
Thanks
Harry
I am a new user of this forum, so apologies in advance if I miss anything

Well, I have recently found that my IE has started randomly redirecting to odd pages. I have looked for new processes running and found that I had a variant of "jov" (32jov.exe) running, along with an unidentified dll in my System32 folder (bqckrgz.dll), which according to spybot has a value of "qknhnmlo". By the way, I have googled the bqckrgz.dll and it is not even recognised yet, as I am getting NO hits!
The former I THINK I may have removed from the system, as I am no longer finding it on a system search. With the latter though I have not had any luck, as whatever I may have done to remove it, it simply keeps re-installing itself, even when I tried stopping it and then run HijackThis asking to delete it at the next boot! It appears to be loading as a module of explore.exe?
Unfortunately I disabled my Tea-Timer a few days back to install some software and then forgot to reactivate it...:sad:...! So I am paying the price now!
Any ideas anyone of how to go round this?
Thanks
Harry