Share via

My browser is hijacked by thaitingshospica.com how to remove?

H isri 5 Reputation points
2025-11-05T18:07:25.6466667+00:00

I have this hijacker

https:// thaitingshospica DOT com/nt?tha=QUMyZGV5dwVcUndzAlFTc3QGUV1wegYYVHB0BlBUdD8DU1NzcgJQVnZ1TiEkCCJ7NQojAFopLDkmAAoUEXRmDyQMFWUPPCUAYFYBeTsEIiAABmslNgACdwMuLCZtIDoDNHc%3D&source=hj

Microsoft Edge | Browser extensions | Windows 11

Locked Question. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments
{count} vote
Answer recommended by moderator
  1. EmilyS726 212.1K Reputation points Independent Advisor
    2025-11-05T18:42:58.5133333+00:00

    Hello,

    What do you mean by hijacking? Are you saying the web browser always redirects to this site?

    If so, do a web browser reset. Go to Edge Settings > Reset settings, click on Restore settings to their default values.

3 additional answers

Sort by: Most helpful
  1. M Holm 0 Reputation points
    2025-11-22T02:28:09.1666667+00:00

    I got rid of the ad site which originates from Yahoo.

    Go to Google > settings > on left side chose SEARCH ENGINE > click Manage search engines and site search > under site search look for Yahoo > click and you will see thaitingshospica web site. REMOVE Yahoo link.

  2. Luca Guida 0 Reputation points
    2025-11-13T17:40:57.61+00:00

    I suggest running a malware scan.

    I cleaned a PC with the same problem by quarantining the files(browser start page, default search engine, .exe files running as a service, ... ).
    I used Malwarebytes, but there are others that work well (as long as they're trustworthy).

    Finally, to reset the browser settings, I went to "Settings" and "Restore settings to their default values" (it works for both Chrome and Edge).

    0 comments No comments
  3. PC 0 Reputation points
    2025-11-09T09:24:05.4633333+00:00

    Had same problem.

    Some Boot put this website adress as a page to automatically display when starting Chrome.
    Just go to the parameters /when starting (starters ? "au demarage" in frech) and remove the Https adress from the list.

    Worked well for me :-D