Spyware File Details O16 - DPF: Win32 Classes - Last Detected: 5/6/2006 4:05:00 PM Found on 3 PCs. Users with this object complained of the following: "slow, browser control" "have spyware issues constant pop ups error messages at start up such as csrss.new.exe very slow computer also get a error message about my sub system being dos not sure what it is" PCs containing this item also contained the following spyware: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ycomp/defaults/sp/*http://www.yahoo.com (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = + (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\System\blank.htm (More Details) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 67.99.5.145:80 (More Details) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1 (More Details) O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file) (More Details) O16 - DPF: Win32 Classes - (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.yahoo.com/search?p=%s (More Details) R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file) (More Details) F3 - REG:win.ini: load=C:\WINDOWS\System32\lufajlvb\csrss.new.exe (More Details) F3 - REG:win.ini: run=C:\WINDOWS\System32\lufajlvb\csrss.new.exe (More Details) O1 - Hosts: 64.233.167.104 www.symantec.com (More Details) O1 - Hosts: 64.233.167.104 www.sophos.com (More Details) O1 - Hosts: 64.233.167.104 www.mcafee.com (More Details) O1 - Hosts: 64.233.167.104 www.viruslist.com (More Details) O1 - Hosts: 64.233.167.104 www.f-secure.com (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = (More Details) R3 - URLSearchHook: (no name) - {830F5D95-4127-5707-E820-AFE3DF5695F1} - C:\WINDOWS\Wxakqubi.dll (file missing) (More Details) F2 - REG:system.ini: UserInit=userinit.exe (More Details) O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (More Details) O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (More Details) O2 - BHO: Yvakt Class - {2335EA94-74D6-46B4-BA93-8567DAC6CC9B} - C:\WINDOWS\system32\fpdrnznx.dll (file missing) (More Details) O2 - BHO: BMG3.LongTooth - {8110581C-FEA4-47AC-ADBC-DE958DD0F354} - blank (file missing) (More Details) O2 - BHO: (no name) - {91902D24-5C26-FF6D-1279-259272FD1C10} - C:\WINDOWS\Wxakqubi.dll (file missing) (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||