HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll

Last Detected: 3/23/2006 7:38:00 PM
Found on 5 PCs.

Users with this object complained of the following:

"maleware and spy ware"
"someone has installed virtual components on my disk to track the information I send out of my computer on the internet. The words 'Patriot Act' come to mind."
" I dot spywars and viruses detected on my files and sistem,please deleted"
"too many viruses such as spyware."


PCs containing this item also contained the following spyware:

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
(More Details)

F3 - REG:win.ini: run=C:\WINDOWS\inet20001\winlogon.exe
(More Details)

O2 - BHO: HomepageBHO - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\WINDOWS\system32\hpE1B5.tmp
(More Details)

O2 - BHO: (no name) - {E3215F20-3212-11D6-9F8B-00D0B743919D} - (no file)
(More Details)

O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll
(More Details)

O4 - HKLM\..\Run: [abu] abu.exe
(More Details)

O4 - HKLM\..\Run: [xp_system] C:\WINDOWS\inet20001\winlogon.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.accoona.com/search_assistant/accoona_search_assistant.jsp?&utm_id=400010&utm_content=leftnav&utm_source=efc&utm_medium=bund&utm_campaign=efc0605
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.accoona.com
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.accoona.com/search_assistant/accoona_search_assistant.jsp?&utm_id=400010&utm_content=leftnav&utm_source=efc&utm_medium=bund&utm_campaign=efc0605
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.accoona.com/search?q=%s
(More Details)

O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet6_98.dll
(More Details)

O2 - BHO: CM BHO - {6379A99A-9102-446C-A837-0623E1810D75} - C:\Program Files\Crystalys media\cm.dll
(More Details)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
(More Details)

O2 - BHO: Accoona Search Assistant - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll
(More Details)

O3 - Toolbar: Accoona - {364B6276-C6C1-40B6-A6D7-6C48871FD707} - C:\Program Files\Accoona\atoolbar.dll
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\system32\hp5543.tmp
(More Details)

O3 - Toolbar: SecurityToolbar - {736b5468-bdad-41be-92d0-22ae2ddf7bcb} - C:\Program Files\Security Toolbar\Security Toolbar.dll
(More Details)

O4 - HKLM\..\Run: [CMLoader] rundll32.exe "c:\program files\crystalys media\cm.dll",MakeInjection
(More Details)

O15 - Trusted Zone: http://*.billingnow.com
(More Details)

O15 - Trusted Zone: http://*.reliablestats.com
(More Details)

O15 - Trusted Zone: http://*.winantispyware.com
(More Details)

O15 - Trusted Zone: http://*.winantivirus.com
(More Details)

O15 - Trusted Zone: http://*.winantiviruspro.com
(More Details)

O15 - Trusted Zone: http://*.winnanny.com
(More Details)

R3 - URLSearchHook: (no name) - {8CD66091-9DC0-A82C-5DFE-E7333A107205} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\Userinit.exe
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp6037.tmp
(More Details)

O3 - Toolbar: My &Search Bar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL (file missing)
(More Details)

O3 - Toolbar: Search - {98649E5A-C37E-6AFB-C07E-59A081483314} - C:\WINDOWS\Bgfemeai.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [ujsbarmb] C:\WINDOWS\ujsbarmb.exe
(More Details)

O4 - HKLM\..\Run: [StopSignStatus] Rundll32.exe "C:\Program Files\Common Files\eAcceleration\Installer\stopsinfo.dll",VerifyStatus
(More Details)

O4 - HKLM\..\Run: [webscan] C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe -k
(More Details)

O4 - HKLM\..\Run: [eanth_system_patcher] "C:\Program Files\Acceleration Software\SystemPatcher\sys_alert.exe" /Startup
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)