Spyware File Details R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Lnkar Last Detected: 1/7/2006 8:06:00 AM Found on 2 PCs. Users with this object complained of the following: "popups, slow pc" "trojan" PCs containing this item also contained the following spyware: R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Lnkar (More Details) R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program\MyWebSearch\SrchAstt\4.bin\MWSSRCAS.DLL (More Details) O3 - Toolbar: @msdxmLC.dll,-1@1033,&Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx (More Details) O3 - Toolbar: ALTAVISTA - {4E7BD74F-2B8D-469E-92EA-EC65A294AE31} - C:\WINNT\DOWNLO~1\ALTAVI~1.DLL (More Details) O4 - HKLM\..\Run: [adtech2005] C:\windows\adtech2005.exe (More Details) O4 - HKLM\..\Run: [ntdll.dll] C:\windows\timessquare.exe (More Details) O4 - HKCU\..\Run: [internat.exe] internat.exe (More Details) O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\Program\MYWEBS~1\bar\4.bin\mwsoemon.exe (More Details) O4 - HKCU\..\Run: [Free Download Manager] C:\Program\Free Download Manager\fdm.exe -autorun (More Details) O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program\MyWebSearch\bar\4.bin\MWSOEMON.EXE (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.startsidan.telia.se/ (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\OOBE\BLANK.HTM (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = (More Details) O2 - BHO: (no name) - {7B55BB05-0B4D-44fd-81A6-B136188F5DEB} - (no file) (More Details) O3 - Toolbar: Privata Affarer - {4E7BD74F-2B8D-469E-C0FF-FD6DA4D5FA7D} - C:\WINDOWS\DOWNLO~1\PABAR.DLL (More Details) O4 - Startup: Reboot.exe (More Details) O16 - DPF: {127698E4-E730-4E5C-A2B1-21490A70C8A1} (CEnroll Class) - https://www.skandiabanken.se/CertControl/X86/xenroll.dll (More Details) O16 - DPF: {82202BE7-C56A-487E-9E55-D84BDC1A5776} - http://install.anark.com/client/version1/windows-ie/en/AMClient.cab (More Details) O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (sys Class) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||