HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank

Last Detected: 4/2/2006 8:52:00 PM
Found on 7 PCs.

Users with this object complained of the following:

"slow pc"
"junk startup pages on IE"
"popups"
"slow pc, freezes alot, slow internet"


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\yuxyp.dll/sp.html#53142%resultposition.net
(More Details)

O2 - BHO: Class - {F4D82940-3A2E-CD27-8A26-E7D9A6550B86} - C:\WINDOWS\system32\winpd.dll
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\hgqxw.dll/sp.html#28129%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\hgqxw.dll/sp.html#28129%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\hgqxw.dll/sp.html#28129%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\hgqxw.dll/sp.html#28129%resultposition.net
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\hgqxw.dll/sp.html#28129%resultposition.net
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
(More Details)

O2 - BHO: Class - {4572C182-18D0-C69A-F785-8040372D18DF} - C:\WINDOWS\mfchr32.dll
(More Details)

O4 - HKLM\..\Run: [ipda.exe] C:\WINDOWS\system32\ipda.exe
(More Details)

O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} (cpbrkpie Control) - http://a19.g.akamai.net/7/19/7125/4047/ftp.coupons.com/v3123/cpbrkpie.cab
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\MIEKIE~1\LOCALS~1\Temp\se.dll/space.html
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\lbfmh.dll/sp.html#10001%resultposition.net
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\MIEKIE~1\LOCALS~1\Temp\se.dll/space.html
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
(More Details)

O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Program Files\GetRight\xx2gr.dll
(More Details)

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
(More Details)

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
(More Details)

O8 - Extra context menu item: &Use webcow on this Page - C:\Documents and Settings\Freddy\Desktop\webcow.0.53.0039\wcie.iemenu.htm
(More Details)

O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\nfdzr.dll/sp.html#53142%
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\nfdzr.dll/sp.html#53142%
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
(More Details)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\nfdzr.dll/sp.html#53142%
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\nfdzr.dll/sp.html#53142%
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\nfdzr.dll/sp.html#53142%
(More Details)

O2 - BHO: (no name) - {3500DC94-C0FD-7A59-32CD-06861C388D23} - (no file)
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)