Spyware File Details O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 Last Detected: 11/18/2007 12:02:00 PM Found on 5 PCs. Users with this object complained of the following: "greerwewwd" "genuine" PCs containing this item also contained the following spyware: F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\System32\svcvhost.exe (More Details) F3 - REG:win.ini: load=C:\WINDOWS\System32\svcvhost.exe (More Details) F3 - REG:win.ini: run=C:\WINDOWS\System32\svcvhost.exe (More Details) O4 - HKLM\..\Run: [Generic Host Process] C:\WINDOWS\System32\svcvhost.exe (More Details) O4 - HKLM\..\RunServices: [Generic Host Process] C:\WINDOWS\System32\svcvhost.exe (More Details) O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about: (More Details) O3 - Toolbar: (no name) - {84938242-5C5B-4A55-B6B9-A1507543B418} - (no file) (More Details) O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h (More Details) O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) (More Details) O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) (More Details) O16 - DPF: {07C9CFC7-DE33-4A0C-9FFB-CDFBA843B157} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1063_XP.cab (More Details) O16 - DPF: {0D1011B3-89C8-4F8E-8693-BB970E2E81E0} - http://scripts.downloadv3.com/binaries/EGDAccess/EGDACCESS_1069_ASPIV4_XP.cab (More Details) O16 - DPF: {1604DF98-D1A5-44FE-844A-98D6FD0518D0} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1060_XP.cab (More Details) O4 - Startup: PowerReg Scheduler V3.exe (More Details) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) (More Details) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{8ECB72A3-BFD2-4448-B87E-ED6CE1E4F160}: NameServer = 213.244.255.2 (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||