HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKLM\..\Run: [ugescw] "C:\PROGRA~1\BUGSDE~1\ugescw.exe" -start

Last Detected: 8/22/2007 10:42:00 AM
Found on 3 PCs.

Users with this object complained of the following:

"trojan "
"slow, viruses,..."


PCs containing this item also contained the following spyware:

O2 - BHO: (no name) - {34E6F97C-34E0-4CE5-B92B-F83634BEDC01} - C:\Program Files\Video ActiveX Access\iesplg.dll
(More Details)

O3 - Toolbar: Protection Bar - {29C5A3B6-9A8D-4FA0-B5AD-3E20F4AA5C00} - C:\Program Files\Video ActiveX Access\iesbpl.dll
(More Details)

O4 - HKLM\..\Run: [vwdajqbe] C:\WINDOWS\system32\pjbucohu.exe
(More Details)

O4 - HKLM\..\Run: [rtasks] C:\Program Files\TrustedProtection\rtasks.exe
(More Details)

O4 - HKLM\..\Run: [ugescw] "C:\PROGRA~1\BUGSDE~1\ugescw.exe" -start
(More Details)

O4 - HKLM\..\RunOnce: [SpybotDeletingA4015] command /c del "C:\Program Files\Video ActiveX Access\imsmain.exe_tobedeleted_old"
(More Details)

O4 - HKLM\..\RunOnce: [SpybotDeletingC6399] cmd /c del "C:\Program Files\Video ActiveX Access\imsmain.exe_tobedeleted_old"
(More Details)

O4 - HKCU\..\RunOnce: [SpybotDeletingB2475] command /c del "C:\Program Files\Video ActiveX Access\imsmain.exe_tobedeleted_old"
(More Details)

O4 - HKCU\..\RunOnce: [SpybotDeletingD8579] cmd /c del "C:\Program Files\Video ActiveX Access\imsmain.exe_tobedeleted_old"
(More Details)

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
(More Details)

O2 - BHO: (no name) - {B8C5186E-EC37-4889-9C2E-F73649FFB7BB} - C:\Program Files\Video ActiveX Access\iesplg.dll
(More Details)

O3 - Toolbar: Protection Bar - {31615D5C-5126-448A-818A-A7CDFEE85A9B} - C:\Program Files\Video ActiveX Access\iesbpl.dll
(More Details)

O4 - HKLM\..\Run: [Salestart] "C:\Program Files\Common Files\DriveCleaner Free\dcsm.exe"
(More Details)

O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
(More Details)

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
(More Details)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)