Spyware File Details O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s Last Detected: 6/26/2006 9:27:00 PM Found on 8 PCs. Users with this object complained of the following: "pc" "Miau" "someone has installed virtual components on my disk to track the information I send out of my computer on the internet. The words 'Patriot Act' come to mind." "slow pc" "popups,troojanslow pc" PCs containing this item also contained the following spyware: R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://resultsmaster.com/SmartOffers/Services/resultsmaster/ResultsMasterHomeLeftPane.htm (More Details) O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_14.dll (More Details) O2 - BHO: WhenUSearch Helper - {BA2325ED-F9EB-4830-8FCE-0BC35B16969B} - C:\Program Files\WhenUSearch\search.dll (More Details) O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto (More Details) O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,ClientStartup -s (More Details) O4 - HKLM\..\Run: [WhenUSearch] "C:\Program Files\WhenUSearch\Search.exe" (More Details) O4 - HKLM\..\Run: [WhenUSearchWHSE] "C:\Program Files\WhenUSearch\whse.exe" (More Details) O4 - HKLM\..\Run: [OSS] C:\windows\system32\rlvknlg.exe -boot (More Details) O3 - Toolbar: Zango Toolbar - {EA0D26BD-9029-431A-86E0-83152D67828A} - C:\Program Files\Zango Programs\Zango Toolbar\ZangoTB.dll (More Details) O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause (More Details) O10 - Hijacked Internet access by New.Net (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.accoona.com/search_assistant/accoona_search_assistant.jsp?&utm_id=400010&utm_content=leftnav&utm_source=efc&utm_medium=bund&utm_campaign=efc0605 (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.accoona.com (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.accoona.com/search_assistant/accoona_search_assistant.jsp?&utm_id=400010&utm_content=leftnav&utm_source=efc&utm_medium=bund&utm_campaign=efc0605 (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.accoona.com/search?q=%s (More Details) O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet6_98.dll (More Details) O2 - BHO: CM BHO - {6379A99A-9102-446C-A837-0623E1810D75} - C:\Program Files\Crystalys media\cm.dll (More Details) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (More Details) O2 - BHO: Accoona Search Assistant - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll (More Details) O3 - Toolbar: Accoona - {364B6276-C6C1-40B6-A6D7-6C48871FD707} - C:\Program Files\Accoona\atoolbar.dll (More Details) O3 - Toolbar: CM Band - {159C2E51-9823-11D2-8DDC-D84A1B4ACD4D} - C:\Program Files\Crystalys media\cm.dll (More Details) O2 - BHO: Poly HTML Filter BHO - {0140DF95-9128-4053-AE72-F43F0CFCA062} - C:\WINDOWS\system32\SiKernel.dll (More Details) O4 - HKLM\..\Run: [LanzarPlatinum2006] "C:\DOCUME~1\Owner\LOCALS~1\Temp\{01216CD3-08EB-4B92-ACF3-F607AC099756}\{EEBA9416-3207-47E0-9022-116440599DBC}\..\..\P2006tmp\Install.exe" /SETUP:"/l0x0009" (More Details) O4 - HKLM\..\Run: [Aapp] C:\windows\system32\adprot (More Details) O4 - HKLM\..\Run: [Linera Agent] C:\DOCUME~1\Owner\LOCALS~1\Temp\RarSFX0\Agent.exe (More Details) O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present (More Details) O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present (More Details) O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Toolbars\Restrictions present (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) Privacy Policy | ||||||