HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKLM\..\Run: [webscan] C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe -k

Last Detected: 5/6/2006 4:06:00 PM
Found on 3 PCs.

Users with this object complained of the following:

"too many viruses such as spyware."


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl...ar=msnhome
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.microsoft.com/search/search.asp
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{sub_rfc1766}/srchasst/srchasst.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl...r=iesearch
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl...ar=msnhome
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl...ar=msnhome
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.microsoft.com/search/search.asp
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.microsoft.com/search/lobby/search.asp
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl...r=iesearch
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl...ar=msnhome
(More Details)

R3 - URLSearchHook: (no name) - {8CD66091-9DC0-A82C-5DFE-E7333A107205} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp6037.tmp
(More Details)

O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL (file missing)
(More Details)

O3 - Toolbar: Search - {98649E5A-C37E-6AFB-C07E-59A081483314} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll
(More Details)

O4 - HKLM\..\Run: [ujsbarmb] C:\WINDOWS\ujsbarmb.exe
(More Details)

O4 - HKLM\..\Run: [StopSignStatus] Rundll32.exe "C:\Program Files\Common Files\eAcceleration\Installer\stopsinfo.dll",VerifyStatus
(More Details)

O4 - HKLM\..\Run: [webscan] C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe -k
(More Details)

O4 - HKLM\..\Run: [eanth_system_patcher] "C:\Program Files\Acceleration Software\SystemPatcher\sys_alert.exe" /Startup
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://minisearch.startnow.com/
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

O1 - Hosts: localhost 127.0.0.1
(More Details)

O4 - HKLM\..\Run: [StopSignSsTsMon] Rundll32.exe C:\Program Files\Acceleration Software\Anti-Virus\sstsmon.dll,VerifyStatus
(More Details)

O4 - HKLM\..\Run: [eanth_critical_update_alert] C:\PROGRA~1\ACCELE~1\ANTI-V~1\EANTH_~1.EXE /Startup
(More Details)

O4 - HKCU\..\Run: [CyberDefender AntiSpyware] C:\Program Files\CyberDefender\AntiSpyware\cdas2.exe
(More Details)

O17 - HKLM\System\CCS\Services\Tcpip\..\{7305EE1B-F0F7-4008-99E2-0526E057F49F}: NameServer = 85.255.115.158,85.255.112.107
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)