HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customi...su/ymsgr6/*http://www.yahoo.com

Last Detected: 7/7/2006 1:23:00 PM
Found on 5 PCs.

Users with this object complained of the following:



PCs containing this item also contained the following spyware:

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customi...su/ymsgr6/*http://www.yahoo.com
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi...sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
(More Details)

O2 - BHO: (no name) - {17414e34-a2e1-483c-bdc5-b65f4cbc3efb} - C:\WINDOWS\system32\qrdjiksa.dll
(More Details)

O2 - BHO: (no name) - {4f98924b-ebe8-4d7d-92d6-e16652d0e067} - C:\WINDOWS\system32\tvqhxcyi.dll
(More Details)

O2 - BHO: (no name) - {b2fdb6bb-39a7-476b-8c6b-024054ec8c7b} - C:\WINDOWS\system32\tvqhxcyi.dll
(More Details)

O2 - BHO: (no name) - {c47cbb99-0476-47d5-9d57-5d745fbf8aeb} - C:\WINDOWS\system32\tvqhxcyi.dll
(More Details)

O2 - BHO: (no name) - {EBF4E835-207A-4144-ADDF-42A4F4BF9D0c} - C:\WINDOWS\system32\tvqhxcyi.dll
(More Details)

O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customi...sp/ymsgr6/*http://www.yahoo.com
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi...su/ymsgr6/*http://www.yahoo.com
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
(More Details)

O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone
(More Details)

O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone
(More Details)

O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone
(More Details)

O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customi...faults/su/*http://www.yahoo.com
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
(More Details)

R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - (no file)
(More Details)

F2 - REG:system.ini: Shell=Explorer.exe, C:\WINDOWS\system32\bkbsr.exe
(More Details)

F2 - REG:system.ini: UserInit=userinit.exe,lfhwdiw.exe
(More Details)

O2 - BHO: Yvakt Class - {DAAC59E5-093D-4D24-A105-55BFE4ACDE14} - C:\WINDOWS\system32\w9seq.dll
(More Details)

O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
(More Details)

O4 - HKLM\..\Run: [q8lg] C:\WINDOWS\system32\slk8x2peu.exe
(More Details)

O4 - HKLM\..\Run: [TheMonitor] C:\WINDOWS\SYSC00.exe
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)