Spyware File Details R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file) Last Detected: 9/25/2006 3:39:00 PM Found on 10 PCs. Users with this object complained of the following: "Spyware, Pop-Ups, Adware, Scumware." PCs containing this item also contained the following spyware: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.BadStartingPage.com (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank (More Details) R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file) (More Details) O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll (file missing) (More Details) O4 - HKLM\..\Run: [winsync] C:\WINNT\system32\iopyiy.exe reg_run (More Details) O4 - Global Startup: hqop.exe (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer,SearchAssistant = http://www.search-1.net/search.html (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer,CustomizeSearch = http://www.search-1.net/search.html (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.searchdot.net (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.searchdot.net (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchdot.net (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.searchdot.net (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.searchv.com/1/ (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.searchv.com/1/search.html (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://www.searchv.com/1/ (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchv.com/1/search.php?qq=%s (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://websearch.drsnsrch.com/sidesearch.cgi?id= (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q= (More Details) R3 - URLSearchHook: (no name) - _{00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file) (More Details) O4 - Startup: PowerReg SchedulerV2. (More Details) O20 - Winlogon Notify: ShellCompatibility - C:\WINDOWS\system32\ig50_qcx.dll (More Details) O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing) (More Details) O2 - BHO: bitlocker - {01EB5130-FC0C-4d75-B9CE-4801B1B854F5} - C:\WINDOWS\System32\nsq198.dll (More Details) O2 - BHO: (no name) - {1EF1ADD1-9B9D-30BA-ED65-6D58622346EA} - C:\WINDOWS\System32\bospfbxv.dll (file missing) (More Details) O2 - BHO: Trecker Class - {39C78B50-7E98-4aa0-B007-D83114EA6E0F} - C:\PROGRA~1\Jalmp\jalmp.dll (More Details) O2 - BHO: (no name) - {49622AF6-BD52-BF89-822F-5745361F1FF1} - (More Details) O2 - BHO: (no name) - {A8DFC7D1-FBBB-2877-54FC-A3F3733D0ADB} - C:\WINDOWS\System32\hsqygcgp.dll (file missing) (More Details) O2 - BHO: (no name) - {EE99696D-2040-977E-1217-34C63FB79816} - C:\WINDOWS\System32\tcyrkljj.dll (file missing) (More Details) O4 - HKLM\..\Run: [NS4 = (document.layers) ? true : fa] c:\WINDOWS\System32\NS4 = (document.layers) ? true : false; (More Details) O4 - HKLM\..\Run: [] c:\WINDOWS\System32\} (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||