I am looking for information and code samples regarding the browser hijacker I affectionately know as about:blank. There are several causes (read variants) of this hijacker. The one I am most interested in drops a file called se.dll into the following run key
HKLM/SOFTWARE/MICROSOFT/WINDOWS/CURRENT VERSION/RUN
as
Rundll32 [path]se.dll, dllinstall
and
HKLM/SOFTWARE/MICROSOFT/INTERNET EXPLORER/MAIN
as
res://[path...ex. c:documents and settings... emp]se.dll/sp.html....
Anyone who has identified this on a machine will need a lot of help and prayers manually removing the trojan. There are two other files usually accompanying this file. I can help you remove it if you will give me the file for inspection and analysis.
I need these files to build an idea of where they are originating and how to stop them.
****************************************
Excellence Breeds! Go Hard or Go Home.
Let Penguins rule the earth.
Break some windows today.