HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKLM\..\Run: [CMLoader] rundll32.exe "c:\program files\crystalys media\cm.dll",MakeInjection

Last Detected: 4/2/2006 8:43:00 PM
Found on 3 PCs.

Users with this object complained of the following:

" I dot spywars and viruses detected on my files and sistem,please deleted"
"too many viruses such as spyware."
"still getting spywareaxe comming up on my desktop. Cant log on to web sites that I use to be able to log on, like my online banking."


PCs containing this item also contained the following spyware:

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\system32\hp5543.tmp
(More Details)

O3 - Toolbar: SecurityToolbar - {736b5468-bdad-41be-92d0-22ae2ddf7bcb} - C:\Program Files\Security Toolbar\Security Toolbar.dll
(More Details)

O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll
(More Details)

O4 - HKLM\..\Run: [CMLoader] rundll32.exe "c:\program files\crystalys media\cm.dll",MakeInjection
(More Details)

O15 - Trusted Zone: http://*.billingnow.com
(More Details)

O15 - Trusted Zone: http://*.reliablestats.com
(More Details)

O15 - Trusted Zone: http://*.winantispyware.com
(More Details)

O15 - Trusted Zone: http://*.winantivirus.com
(More Details)

O15 - Trusted Zone: http://*.winantiviruspro.com
(More Details)

O15 - Trusted Zone: http://*.winnanny.com
(More Details)

R3 - URLSearchHook: (no name) - {8CD66091-9DC0-A82C-5DFE-E7333A107205} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp6037.tmp
(More Details)

O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL (file missing)
(More Details)

O3 - Toolbar: Search - {98649E5A-C37E-6AFB-C07E-59A081483314} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [ujsbarmb] C:\WINDOWS\ujsbarmb.exe
(More Details)

O4 - HKLM\..\Run: [StopSignStatus] Rundll32.exe "C:\Program Files\Common Files\eAcceleration\Installer\stopsinfo.dll",VerifyStatus
(More Details)

O4 - HKLM\..\Run: [webscan] C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe -k
(More Details)

O4 - HKLM\..\Run: [eanth_system_patcher] "C:\Program Files\Acceleration Software\SystemPatcher\sys_alert.exe" /Startup
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

O2 - BHO: (no name) - {E3215F20-3212-11D6-9F8B-00D0B743919D} - (no file)
(More Details)

O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
(More Details)

O4 - HKLM\..\Run: [SpyAxe] C:\Program Files\SpyAxe\spyaxe.exe /h
(More Details)

O4 - HKLM\..\Run: [SpywareStrike] C:\Program Files\SpywareStrike\SpywareStrike.exe /h
(More Details)

O4 - HKLM\..\Run: [WindowsUpdateNT] C:\WINDOWS\System\svwhost.exe /s
(More Details)

O4 - HKLM\..\Run: [winsync] C:\WINDOWS\system32\nirdnr.exe reg_run
(More Details)

O4 - HKLM\..\Run: [zango] c:\program files\zango\zango.exe
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)