HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file)

Last Detected: 9/25/2006 3:39:00 PM
Found on 10 PCs.

Users with this object complained of the following:

"Spyware, Pop-Ups, Adware, Scumware."


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.BadStartingPage.com
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
(More Details)

R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file)
(More Details)

O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [winsync] C:\WINNT\system32\iopyiy.exe reg_run
(More Details)

O4 - Global Startup: hqop.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer,SearchAssistant = http://www.search-1.net/search.html
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer,CustomizeSearch = http://www.search-1.net/search.html
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.searchdot.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.searchdot.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchdot.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.searchdot.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.searchv.com/1/
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchv.com/1/search.html
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.searchv.com/1/
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchv.com/1/search.php?qq=%s
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id=
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q=
(More Details)

R3 - URLSearchHook: (no name) - _{00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file)
(More Details)

O4 - Startup: PowerReg SchedulerV2.
(More Details)

O20 - Winlogon Notify: ShellCompatibility - C:\WINDOWS\system32\ig50_qcx.dll
(More Details)

O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)
(More Details)

O2 - BHO: bitlocker - {01EB5130-FC0C-4d75-B9CE-4801B1B854F5} - C:\WINDOWS\System32\nsq198.dll
(More Details)

O2 - BHO: (no name) - {1EF1ADD1-9B9D-30BA-ED65-6D58622346EA} - C:\WINDOWS\System32\bospfbxv.dll (file missing)
(More Details)

O2 - BHO: Trecker Class - {39C78B50-7E98-4aa0-B007-D83114EA6E0F} - C:\PROGRA~1\Jalmp\jalmp.dll
(More Details)

O2 - BHO: (no name) - {49622AF6-BD52-BF89-822F-5745361F1FF1} -
(More Details)

O2 - BHO: (no name) - {A8DFC7D1-FBBB-2877-54FC-A3F3733D0ADB} - C:\WINDOWS\System32\hsqygcgp.dll (file missing)
(More Details)

O2 - BHO: (no name) - {EE99696D-2040-977E-1217-34C63FB79816} - C:\WINDOWS\System32\tcyrkljj.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [NS4 = (document.layers) ? true : fa] c:\WINDOWS\System32\NS4 = (document.layers) ? true : false;
(More Details)

O4 - HKLM\..\Run: [] c:\WINDOWS\System32\}
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)