Spyware File Details O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h Last Detected: 4/20/2007 11:43:00 AM Found on 3 PCs. Users with this object complained of the following: "popups" "greerwewwd" "popups, slow pc" PCs containing this item also contained the following spyware: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Yahoo! (More Details) O1 - Hosts: comments (such as these) may be inserted on individual (More Details) O2 - BHO: TChkBHO Class - {D06722B2-58E4-400E-8930-8BAD18F1297C} - C:\WINDOWS\SYSTEM32\foliez.dll (file missing) (More Details) O2 - BHO: (no name) - {D4C871E8-B0C3-4088-B605-26BE8E62AFD3} - C:\WINDOWS\System32\d3dnim.dll (file missing) (More Details) O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A (More Details) O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot (More Details) O4 - HKLM\..\Run: [HREOBM] C:\WINDOWS\HREOBM.exe (More Details) O4 - HKLM\..\Run: [Openwares LiveUpdate] C:\Program Files\LiveUpdate\LiveUpdate.exe (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about: (More Details) O3 - Toolbar: (no name) - {84938242-5C5B-4A55-B6B9-A1507543B418} - (no file) (More Details) O4 - HKLM\..\Run: [SWN2] C:\Program Files\Spyware Nuker\swnxt.exe /h (More Details) O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 (More Details) O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) (More Details) O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file) (More Details) O16 - DPF: {07C9CFC7-DE33-4A0C-9FFB-CDFBA843B157} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1063_XP.cab (More Details) O16 - DPF: {0D1011B3-89C8-4F8E-8693-BB970E2E81E0} - http://scripts.downloadv3.com/binaries/EGDAccess/EGDACCESS_1069_ASPIV4_XP.cab (More Details) O16 - DPF: {1604DF98-D1A5-44FE-844A-98D6FD0518D0} - http://akamai.downloadv3.com/binaries/EGDAccess/EGDACCESS_1060_XP.cab (More Details) O3 - Toolbar: Protection Bar - {F0993251-2512-4710-AF6E-0A13EA199D02} - C:\Program Files\Video AX Object\splug.dll (More Details) O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ? (More Details) O17 - HKLM\System\CCS\Services\Tcpip\..\{2740B4C1-4585-4D79-90AA-A8911F4A098B}: NameServer = 80.74.160.12 80.74.160.38 (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||