HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20001\winlogon.exe

Last Detected: 1/20/2006 1:22:00 AM
Found on 4 PCs.

Users with this object complained of the following:

"Poppups all over the place, can't see where they're coming from. PC is slow."
"maleware and spy ware"
"Can't get rid of "Vcodec" using spybot. Still have "SypwareStrike 2.5" on my machine and can't get rid of it too. My windows firewall keeps getting shut off. TIA"
"Can't get rid of the following programs using uninstall- Spy Axe or Spyware Strike. They keep re-installing themselfs. WANT THEM GONE. PLEASE HELP. TIA"


PCs containing this item also contained the following spyware:

F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\system32\kernels64.exe
(More Details)

F3 - REG:win.ini: run=C:\WINDOWS\inet20001\winlogon.exe
(More Details)

O2 - BHO: HBO Class - {5321E378-FFAD-4999-8C62-03CA8155F0B3} - C:\WINDOWS\inet20001\3.00.13.dll
(More Details)

O2 - BHO: (no name) - {B75F75B8-93F3-429D-FF34-660B206D897A} - C:\WINDOWS\system32\zolker011.dll
(More Details)

O2 - BHO: ZToolbar Activator Class - {FFF5092F-7172-4018-827B-FA5868FB0478} - C:\WINDOWS\system32\ztoolb011.dll
(More Details)

O3 - Toolbar: ZToolbar - {A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} - C:\WINDOWS\system32\ztoolb011.dll
(More Details)

O4 - HKLM\..\Run: [System] C:\WINDOWS\system32\kernels64.exe
(More Details)

O4 - HKLM\..\Run: [SystemLoader] C:\WINDOWS\sysldr32.exe
(More Details)

O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20001\winlogon.exe
(More Details)

O4 - HKLM\..\Run: [ControlPanel] C:\WINDOWS\system32\priva.exe internat.dll,LoadMouseCarpetProfile
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
(More Details)

O2 - BHO: HomepageBHO - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\WINDOWS\system32\hpE1B5.tmp
(More Details)

O2 - BHO: (no name) - {E3215F20-3212-11D6-9F8B-00D0B743919D} - (no file)
(More Details)

O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll
(More Details)

O4 - HKLM\..\Run: [abu] abu.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
(More Details)

O2 - BHO: HomepageBHO - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\WINDOWS\system32\hp8FB9.tmp
(More Details)

O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
(More Details)

O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
(More Details)

O4 - HKLM\..\Run: [WindowsUpdateNT] C:\WINDOWS\System\svwhost.exe /s
(More Details)

O2 - BHO: International - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\WINDOWS\system32\hpE6A6.tmp
(More Details)

O4 - HKLM\..\Run: [Optimum Online] C:\Program Files\Optimum Online\Netsurf.exe -tray
(More Details)

O4 - HKLM\..\Run: [SpywareStrike] C:\Program Files\SpywareStrike\SpywareStrike.exe /h
(More Details)

O4 - HKLM\..\Run: [SpyAxe] C:\Program Files\SpyAxe\spyaxe.exe /h
(More Details)

O4 - HKCU\..\Run: [xp_system] C:\WINDOWS\inet20001\winlogon.exe
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)