Spyware File Details O20 - Winlogon Notify: Mixer - sndmixex.dl (file missing) Last Detected: 2/17/2006 12:38:00 AM Found on 3 PCs. Users with this object complained of the following: "popups and a couple of running processes that i can not control " "wefswef" PCs containing this item also contained the following spyware: F3 - REG:win.ini: run=C:\WINDOWS\inet20003\services.exe (More Details) O2 - BHO: Lexico Toolbar - {11359F4A-B191-42d7-905A-594F8CF0387B} - C:\WINDOWS\Downloaded Program Files\lexbar.dll (More Details) O2 - BHO: Internet Explorer Web Content Guard - {1B77D30A-81C9-497A-8647-142F7511B1FB} - C:\DOCUME~1\JD\LOCALS~1\Temp\mediax.dll (More Details) O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\pipcpa.exe reg_run (More Details) O4 - Global Startup: ohoj.exe (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{21F2A0EB-50CC-4510-9C82-EAA14F907E5D}: NameServer = 216.167.161.35,216.167.161.36 (More Details) O17 - HKLM\System\CS1\Services\Tcpip\..\{21F2A0EB-50CC-4510-9C82-EAA14F907E5D}: NameServer = 216.167.161.35,216.167.161.36 (More Details) O17 - HKLM\System\CS2\Services\Tcpip\..\{21F2A0EB-50CC-4510-9C82-EAA14F907E5D}: NameServer = 216.167.161.35,216.167.161.36 (More Details) O20 - Winlogon Notify: Mixer - sndmixex.dl (file missing) (More Details) O20 - Winlogon Notify: msctl32.dll - C:\WINDOWS\ (More Details) O16 - DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} (Dldrv2 Control) - http://download.gigabyte.com.tw/object/Dldrv.ocx (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{8D3BDFFD-4E82-41A7-A168-43C1CBD6AE35}: NameServer = 213.241.3.174,192.168.0.1 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{C27D98B2-09CB-4929-83D1-70D4CAC72F99}: NameServer = 194.204.159.1,194.204.152.34,192.168.0.1 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{E9AE7DC8-9295-4E28-88F9-3B13E85BDC74}: NameServer = 194.204.152.34,213.241.3.174 (More Details) O20 - Winlogon Notify: Shell Extensions - C:\WINDOWS\system32\lv2609fse.dll (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) Privacy Policy | ||||||