HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O15 - Trusted Zone: http://*.winfixer.com

Last Detected: 3/30/2006 11:12:00 PM
Found on 5 PCs.

Users with this object complained of the following:

"fast"
"slow pc"
"ttttt"
"VIRUS, TROJANS"
"pop ups"


PCs containing this item also contained the following spyware:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Balantlar
(More Details)

O2 - BHO: HomepageBHO - {27150f81-0877-42e9-af13-55e5a3439a26} - C:\WINDOWS\system32\hpA22B.tmp
(More Details)

O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
(More Details)

O4 - HKLM\..\Run: [ugxazfrm] c:\windows\system32\ugxazfrm.exe ugxazfrm
(More Details)

O4 - HKCU\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
(More Details)

O15 - Trusted Zone: http://*.billingnow.com
(More Details)

O15 - Trusted Zone: http://*.reliablestats.com
(More Details)

O15 - Trusted Zone: http://*.winantispyware.com
(More Details)

O15 - Trusted Zone: http://*.winantivirus.com
(More Details)

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
(More Details)

O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - C:\Program Files\SideFind\sfbho.dll
(More Details)

O4 - HKLM\..\Run: [LoadQM] loadqm.exe
(More Details)

O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
(More Details)

O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
(More Details)

O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot
(More Details)

O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
(More Details)

O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp3D65.tmp
(More Details)

O15 - Trusted Zone: http://*.winantiviruspro.com
(More Details)

O15 - Trusted Zone: *.winfixer.com
(More Details)

O15 - Trusted Zone: http://*.winfixer.com
(More Details)

O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
(More Details)

O4 - HKLM\..\Run: [Microsoft Windows Logon Process] C:\windows\winlogon.exe
(More Details)

O4 - HKCU\..\Run: [CTFMON.EXE] C:\windows\system32\ctfmon.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qus8.hpwis.com/
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qus8.hpwis.com/
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qus8.hpwis.com/
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
(More Details)

O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\System32\hp3B5E.tmp
(More Details)

O3 - Toolbar: (no name) - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - (no file)
(More Details)

O4 - HKLM\..\Run: [WinHound] C:\Program Files\WinHound\WinHound.exe
(More Details)

O4 - HKLM\..\Run: [SpyFalcon] C:\Program Files\SpyFalcon\SpyFalcon.exe /h
(More Details)

O4 - HKLM\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.Exe -boot
(More Details)

O4 - Global Startup: hp psc 1000 series.lnk = ?
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)