HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

Last Detected: 11/18/2007 12:02:00 PM
Found on 41 PCs.

Users with this object complained of the following:

"Spyware"
"can not get sound on my pc even though every thing is plugged in. everytime I tri to use quicktime I get an activex error"
"slow pc, freezes alot, slow internet"
"alot of popups "
"upon windows boot up a program fax is trying to install along with another windows installer program. Alsounable to get rid of installed program called freddie fish child games it will not let me take the game out of the uninstall and unable to find it in the directory"


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.tele2internet.at/?1134104865
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = ftp=proxy.newsclub.at:8080;http=proxy.newsclub.at:8080;
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.newsclub.at;commerce.newsclub.at
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/wdgt3/*http://www.yahoo.com/ext/search/search.html
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

O4 - HKCU\..\Run: [warez] "C:\Program Files\Warez P2P Client\warez.exe" -h
(More Details)

O10 - Broken Internet access because of LSP provider 'connwsp.dll' missing
(More Details)

O16 - DPF: {72C9EA8F-8965-40C2-ABAD-D460A5815F86} (hostCntrlIE Class) - http://host.oddcast.com/hostClientIE.cab
(More Details)

O16 - DPF: {886DDE35-E585-11D0-A707-000000521958} - http://69.56.176.76/webplugin.cab
(More Details)

O16 - DPF: {A7ECD556-D6F6-4F41-8C6B-14AB246801A0} (Secure Delivery) - http://kdx.kontiki.com/kdx/Client403/kdx.cab
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
(More Details)

O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Program Files\GetRight\xx2gr.dll
(More Details)

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
(More Details)

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
(More Details)

O8 - Extra context menu item: &Use webcow on this Page - C:\Documents and Settings\Freddy\Desktop\webcow.0.53.0039\wcie.iemenu.htm
(More Details)

O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.gwwrsjszpaghpwzoffagxpcq.com/1LDwTjr_HtJs_fqr6V8Yo_6gPN2zZCgwq3j3UhhQQnmOUVvS8Ys1wQKUqQnl2LFO.html
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://213.159.117.134/index.php
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://minisearch.startnow.com/
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://minisearch.startnow.com/
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Mr.Nokia Explorer
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9202
(More Details)

O2 - BHO: IEWatchObj Class - {9527D42F-D666-11D3-B8DD-00600838CD5F} - C:\WINNT\system32\IETie.dll (file missing)
(More Details)

O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\WINNT\System32\shdocvw.dll (HKCU)
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)