Spyware File Details R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi...sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html Last Detected: 2/20/2006 5:03:00 PM Found on 10 PCs. Users with this object complained of the following: PCs containing this item also contained the following spyware: R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customi...su/ymsgr6/*http://www.yahoo.com (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customi...sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank (More Details) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost (More Details) O2 - BHO: (no name) - {17414e34-a2e1-483c-bdc5-b65f4cbc3efb} - C:\WINDOWS\system32\qrdjiksa.dll (More Details) O2 - BHO: (no name) - {4f98924b-ebe8-4d7d-92d6-e16652d0e067} - C:\WINDOWS\system32\tvqhxcyi.dll (More Details) O2 - BHO: (no name) - {b2fdb6bb-39a7-476b-8c6b-024054ec8c7b} - C:\WINDOWS\system32\tvqhxcyi.dll (More Details) O2 - BHO: (no name) - {c47cbb99-0476-47d5-9d57-5d745fbf8aeb} - C:\WINDOWS\system32\tvqhxcyi.dll (More Details) O2 - BHO: (no name) - {EBF4E835-207A-4144-ADDF-42A4F4BF9D0c} - C:\WINDOWS\system32\tvqhxcyi.dll (More Details) O4 - HKCU\..\Run: [LDM] \Program\BackWeb-8876480.exe (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://server224.smartbotpro.net/7search/?new-hkcu (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://out.true-counter.com/c/?101 (obfuscated) (More Details) O2 - BHO: (no name) - {E0C6A9FD-381C-1F59-AF8B-D95ACFA0A8FF} - C:\windows\system\gqrznutc.dll (file missing) (More Details) O2 - BHO: (no name) - {DD28DD8B-0DF4-4F49-BDE6-B09FB3BEB8EB} - (no file) (More Details) O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\PROGRAM FILES\MYWEBSEARCH\BAR\1.BIN\MWSBAR.DLL (file missing) (More Details) O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\PROGRAM FILES\MYWEBSEARCH\SRCHASTT\1.BIN\MWSSRCAS.DLL (file missing) (More Details) O2 - BHO: URLLink Class - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet6_38.dll (file missing) (More Details) O2 - BHO: (no name) - {8DA5457F-A8AA-4CCF-A842-70E6FD274094} - C:\PROGRA~1\COMMON~1\WINTOOLS\WTOOLST.DLL (file missing) (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{6B6468AD-DF4F-44BC-9151-505D34BF6AD4}: NameServer = 85.255.116.29 85.255.112.182 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{D6741E22-DEB0-44E6-B170-A9114067B2B0}: NameServer = 85.255.116.29,85.255.112.182 (More Details) O17 - HKLM\System\CS1\Services\Tcpip\..\{6B6468AD-DF4F-44BC-9151-505D34BF6AD4}: NameServer = 85.255.116.29 85.255.112.182 (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||