Spyware File Details O4 - Global Startup: palstart.exe Last Detected: 10/29/2006 10:30:00 AM Found on 5 PCs. Users with this object complained of the following: "trojan viirus and spyware destroyer" "trojan viirus and spyware destroyer" "slow pc" "slow pc" PCs containing this item also contained the following spyware: O2 - BHO: HomepageBHO - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\WINDOWS\System32\hp3C8C.tmp (More Details) O3 - Toolbar: My Search Bar - {014DA6C9-189F-421a-88CD-07CFE51CFF10} - C:\Program Files\MySearch\bar\2.bin\S4BAR.DLL (file missing) (More Details) O4 - HKLM\..\Run: [SpywareStrike] C:\Program Files\SpywareStrike\SpywareStrike.exe /h (More Details) O4 - HKCU\..\Run: [ErrorFixer] "C:\Program Files\Error Fixer\ErrorFixer.Exe" /boot (More Details) O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe" (More Details) O4 - Global Startup: palstart.exe (More Details) O4 - Global Startup: Startup.exe (More Details) O4 - HKLM\..\Run: [XpDis0Conf] C:\PROGRA~1\Belkin\BELKIN~1\Tool\WinXPDisableZeroConfigation.exe VEN_14E4&DEV_4320&SUBSYS_70111799 /d (More Details) O4 - HKLM\..\Run: [BTUSRBDG] BtUsrBdg.exe (More Details) O4 - HKLM\..\Run: [BTSETBOOTKEY] BTSetBootKey.exe (More Details) O2 - BHO: My Search BHO - {014DA6C1-189F-421a-88CD-07CFE51CFF10} - C:\Program Files\MySearch\bar\1.bin\S4BAR.DLL (More Details) O2 - BHO: QuickSearch SearchBar - {82315A18-6CFB-44a7-BDFD-90E36537C252} - C:\Program Files\QuickSearch\QuickSearchBar3_28.dll (More Details) O2 - BHO: posHelp Class - {CDEEC43D-3572-4E95-A2A5-F519D29F00C0} - blank (file missing) (More Details) O3 - Toolbar: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - blank (file missing) (More Details) O3 - Toolbar: QuickSearch SearchBar - {82315A18-6CFB-44a7-BDFD-90E36537C252} - C:\Program Files\QuickSearch\QuickSearchBar3_28.dll (More Details) O3 - Toolbar: My Search Bar - {014DA6C9-189F-421a-88CD-07CFE51CFF10} - C:\Program Files\MySearch\bar\1.bin\S4BAR.DLL (More Details) O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZS (More Details) O9 - Extra button: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - blank (file missing) (More Details) O9 - Extra 'Tools' menuitem: Advanced Searchbar - {43F02779-6D88-4958-8AD3-83C12D86ADC7} - blank (file missing) (More Details) O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k (More Details) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.co.uk/ (More Details) R3 - URLSearchHook: (no name) - {2D18BEAD-5761-70EB-1C11-5BC79906B2B3} - (no file) (More Details) R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) (More Details) O2 - BHO: (no name) - {1DAEFCB9-06C8-47c6-8F20-3FB54B244DAA} - C:\WINDOWS\system32\uuvujxrd.dll (file missing) (More Details) O2 - BHO: (no name) - {371A7B8F-7A06-7FBE-2A51-0170E4EC5EA9} - C:\WINDOWS\system32\evijkh.dll (file missing) (More Details) O2 - BHO: (no name) - {59B243E9-5266-DB85-0E29-022F84B17B30} - C:\WINDOWS\system32\wtzuatd.dll (file missing) (More Details) O2 - BHO: (no name) - {8EEFB635-896A-4E15-964D-3893D7CF8379} - C:\WINDOWS\system32\awtqr.dll (file missing) (More Details) O2 - BHO: (no name) - {a86b5d2d-537a-493c-abf6-da25c612e39c} - C:\WINDOWS\system32\Eqnddv.dll (file missing) (More Details) O4 - HKLM\..\Run: [SpyQuake2.com] C:\Program Files\SpyQuake2.com\Spy-Quake2.exe /h (More Details) O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,NewDotNetStartup -s (More Details) O4 - HKLM\..\Run: [asipnjj.dll] C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\asipnjj.dll,kzjjfdd (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) Privacy Policy | ||||||