HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R3 - URLSearchHook: (no name) - - (no file)

Last Detected: 3/8/2006 4:09:00 PM
Found on 6 PCs.

Users with this object complained of the following:

"popups"
"slow"
"Very slow and lag. "
"when doing disc clean up this one will not clean( webclient/publisher tempory files) ithas 20,612 kb of space being used.how do i clean it????"
"Razeware"


PCs containing this item also contained the following spyware:

R3 - URLSearchHook: (no name) - - (no file)
(More Details)

R3 - URLSearchHook: (no name) - - (no file)
(More Details)

O2 - BHO: ADefaultSearch Class - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [oiqqsztA] C:\WINDOWS\oiqqsztA.exe
(More Details)

O20 - AppInit_DLLs: nbgkieap.dll
(More Details)

O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\oiqqszt.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.compaq.com/1Q00CDT/0413/bl8.asp
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.be
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://breedband.telenet.be/
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.compaq.com/1Q00CDT/0413/bl8.asp
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.be
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://breedband.telenet.be/
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
(More Details)

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8100
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koppelingen
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.starware.com/dp/search?x=wKX1ILEOi+Vh7AfA98Gm4Me69ZMbubcDsHkhWqtO3esty2ps7Y/qibYQVsFsRL1I7Fw6TTiKNYoIAtMUe5b0NRfYlLOvm4KAaAst5W6MISNBBjzewy+qcwQ8wGwlkq7aSbVO/9JycigVV7qVl980GYCeLvvGvgYYJ4OjlcRLqcRP5TzCFpIBYTGaKsMRdRGIqJ5peuX/nvSu/nuyIm0HeNZKUN8ifObktVgusKdCoJ2Ue4fmXGz9Oh5z7IrQ66Gfg0+ZBnxkPDREGx+pPR+j4RVLS7nVnotKBy19aYRP005VB7SRO/ZaJsjcTSyYREWzXFCGL59r9p2ds4JJjgQMYMD5jtRfL8ezGgqSkiOYRtOWMItiIx59aMAXZP6RW78hA5C6RaIs7SADlx0gOcUkBjTJTEGAmBfVYpGd6d/wzY1dP34ZImEgkUfmeUPovSBixfB2Y/2XMV8INZ5U61H1ZlmhfV8tj+Ep8+eaJTNOcjAfQ38gbfVCaYjaOsCOxk0qougao2c2bT9rg0ha1zGfK8g9a5ttCI5jBs5VZzE0kwALBTOkfYYnkaObPoN4/eWK0McnoS45Y7Zt5Ko3MTOVRgqfQ4AxmI9JpsEKCSuqSc2p2471UfHM9X3rAYB4qkwL5+8NMgOEblFTmyHwywXTHAfKheAlhY+jKtfhXxJiJmlTNTyJGDt+YbSw6IRXQsgoSvQjCFk2V/A=
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
(More Details)

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
(More Details)

O3 - Toolbar: Starware - {D49E9D35-254C-4c6a-9D17-95018D228FF5} - C:\Program Files\Starware\bin\Starware.dll
(More Details)

O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
(More Details)

O4 - Global Startup: mtdEVAShelf 300.lnk = C:\Program Files\MTD300\QSHLFMTD.EXE
(More Details)

O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZCxdm565YYUS
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.iqon.ie
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.starware.com/dp/search?x=wKX1ILEOi+Vh7AfA98Gm4Me69ZMbubcDsnJKz/X5XzpClR9JuzBKVW5lKdTUsKC0v5TcGBAGbESfqpIK7pq3AX3NgAULgi+D8TLfnD3mfn6eqsCmYWz8lEX1v02GJTAg7yUwEuqU1J7lOoOrvXHYri5d4q2NCAdzWWBlc6BHX7gw4CWZcXqYMlpizZkR9h7GA0bBhuzcU68=
(More Details)

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\4.bin\MWSSRCAS.DLL (file missing)
(More Details)

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\4.bin\MWSSRCAS.DLL (file missing)
(More Details)

O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\4.bin\MWSBAR.DLL (file missing)
(More Details)

O2 - BHO: (no name) - {CA356D79-679B-4b4c-8E49-5AF97014F4C1} - (no file)
(More Details)

O3 - Toolbar: (no name) - {D49E9D35-254C-4c6a-9D17-95018D228FF5} - (no file)
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lookfor.cc?pin=77773
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://lookfor.cc/sp.php?pin=77773
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://lookfor.cc?pin=77773
(More Details)

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://searchmiracle.com/search/search.php?acc=jesstraff&qq=Home%20Mortgages
(More Details)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
(More Details)

O2 - BHO: winapi32.MyBHO - {7A533235-A128-434B-9F8A-9300A544D191} - C:\WINDOWS\System32\winapi32.dll
(More Details)

O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
(More Details)

O4 - HKLM\..\Run: [ACSTray] C:\WINACS\ACSTRAY.EXE
(More Details)

O4 - HKLM\..\Run: [AutoTBar] S\System32\Wbem;c:\Python22;C:\Program Files\PC-Doctor for Windows\servicesAUTOTBAR.EXE
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)