Spyware File Details R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about: Last Detected: 4/23/2007 5:44:00 AM Found on 4 PCs. Users with this object complained of the following: "greerwewwd" "meny spayware" "popups, slow pc" "popups, slow pc" PCs containing this item also contained the following spyware: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about: (More Details) O3 - Toolbar: (no name) - {84938242-5C5B-4A55-B6B9-A1507543B418} - (no file) (More Details) O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h (More Details) O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) (More Details) O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) (More Details) O16 - DPF: {07C9CFC7-DE33-4A0C-9FFB-CDFBA843B157} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1063_XP.cab (More Details) O16 - DPF: {0D1011B3-89C8-4F8E-8693-BB970E2E81E0} - http://scripts.downloadv3.com/binaries/EGDAccess/EGDACCESS_1069_ASPIV4_XP.cab (More Details) O16 - DPF: {1604DF98-D1A5-44FE-844A-98D6FD0518D0} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1060_XP.cab (More Details) O2 - BHO: (no name) - {1ca5a2e2-1dd2-11b2-b244-865eeb8aff5a} - C:\WINDOWS\system32\msalx2rm.dll (file missing) (More Details) O2 - BHO: (no name) - {A6ACAE64-F798-4930-AD86-BD3FB32038DB} - C:\Program Files\Video Access ActiveX Object\isadd.dll (file missing) (More Details) O3 - Toolbar: Protection Bar - {84938242-5C5B-4A55-B6B9-A1507543B418} - C:\Program Files\Video Access ActiveX Object\iesplugin.dll (file missing) (More Details) O4 - HKLM\..\Run: [vopyngbe.exe] C:\WINDOWS\system32\vopyngbe.exe (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{07D691F8-AF9B-468C-9C11-1585C60B4F94}: NameServer = 85.255.116.146 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{3EEBF40C-8847-42C2-B9B7-1B3764861045}: NameServer = 85.255.116.146 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{D23BCF06-B870-4774-A24C-4E881C830922}: NameServer = 85.255.116.146 (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{FC7B1725-CF5F-4D20-981D-EE6A71EB21F7}: NameServer = 85.255.116.146 (More Details) O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.116.146 85.255.112.225 (More Details) O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx (More Details) O3 - Toolbar: Zango Toolbar - {EA0D26BD-9029-431A-86E0-83152D67828A} - (no file) (More Details) O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (More Details) O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll (More Details) O16 - DPF: {8FCDF9D9-A28B-480F-8C3D-581F119A8AB8} (MediaGatewayX) - http://static.zangocash.com/cab/Zango/ie/bridge-c18.cab (More Details) O3 - Toolbar: Protection Bar - {F0993251-2512-4710-AF6E-0A13EA199D02} - C:\Program Files\Video AX Object\splug.dll (More Details) O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{2740B4C1-4585-4D79-90AA-A8911F4A098B}: NameServer = 80.74.160.12 80.74.160.38 (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||