Spyware File Details O4 - HKLM\..\Run: [ShowWnd] ShowWnd.exe Last Detected: 5/6/2006 4:06:00 PM Found on 3 PCs. Users with this object complained of the following: "Llots of pop-ups, occ. programs freezing, etc. Norton Antivirus says that one file - Windows\system32\rk.bin is a spyware, but gives me no info on how to remove it. Any help would be greatly appreciated. thanx" "random glitches. right now things are pretty good, but would like to check this thing out." PCs containing this item also contained the following spyware: O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) (More Details) O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file) (More Details) O3 - Toolbar: 180search Toolbar - {93CECBB2-6B1B-448D-91B9-72604EF70105} - C:\Program Files\180search Assistant Programs\180search Toolbar\180ST.dll (More Details) O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe (More Details) O4 - HKLM\..\Run: [ShowWnd] ShowWnd.exe (More Details) O4 - HKLM\..\Run: [MediaGateway] C:\Program Files\MediaGateway\MediaGateway.exe (More Details) O20 - Winlogon Notify: jkkjh - C:\WINDOWS\system32\jkkjh.dll (file missing) (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=2.0&bm=bz_search (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.emachines.com (More Details) R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.emachines.com/ (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online (More Details) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1 (More Details) O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll (More Details) O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = prosearching.com (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.2020search.com/search/9884/search.html (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = prosearching.com (More Details) R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://boards.gamefaqs.com/gfaqs/gentopic.php?board=915410 (More Details) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = prosearching.com (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.2020search.com/search/9884/search.html (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = prosearching.com (More Details) R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = prosearching.com (More Details) R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com (More Details) Back to Spyware List |
||||||
| About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us | ||||||
| HijackRemote ©2005 (Terms of Service) | ||||||