HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h

Last Detected: 4/20/2007 11:43:00 AM
Found on 3 PCs.

Users with this object complained of the following:

"popups"
"greerwewwd"
"popups, slow pc"


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Yahoo!
(More Details)

O1 - Hosts: comments (such as these) may be inserted on individual
(More Details)

O2 - BHO: TChkBHO Class - {D06722B2-58E4-400E-8930-8BAD18F1297C} - C:\WINDOWS\SYSTEM32\foliez.dll (file missing)
(More Details)

O2 - BHO: (no name) - {D4C871E8-B0C3-4088-B605-26BE8E62AFD3} - C:\WINDOWS\System32\d3dnim.dll (file missing)
(More Details)

O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
(More Details)

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
(More Details)

O4 - HKLM\..\Run: [HREOBM] C:\WINDOWS\HREOBM.exe
(More Details)

O4 - HKLM\..\Run: [Openwares LiveUpdate] C:\Program Files\LiveUpdate\LiveUpdate.exe
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:
(More Details)

O3 - Toolbar: (no name) - {84938242-5C5B-4A55-B6B9-A1507543B418} - (no file)
(More Details)

O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h
(More Details)

O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
(More Details)

O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
(More Details)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
(More Details)

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
(More Details)

O16 - DPF: {07C9CFC7-DE33-4A0C-9FFB-CDFBA843B157} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1063_XP.cab
(More Details)

O16 - DPF: {0D1011B3-89C8-4F8E-8693-BB970E2E81E0} - http://scripts.downloadv3.com/binaries/EGDAccess/EGDACCESS_1069_ASPIV4_XP.cab
(More Details)

O16 - DPF: {1604DF98-D1A5-44FE-844A-98D6FD0518D0} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1060_XP.cab
(More Details)

O3 - Toolbar: Protection Bar - {F0993251-2512-4710-AF6E-0A13EA199D02} - C:\Program Files\Video AX Object\splug.dll
(More Details)

O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
(More Details)

O17 - HKLM\System\CCS\Services\Tcpip\..\{2740B4C1-4585-4D79-90AA-A8911F4A098B}: NameServer = 80.74.160.12 80.74.160.38
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)