HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file)

Last Detected: 2/17/2006 12:20:00 AM
Found on 3 PCs.

Users with this object complained of the following:

"have spyware issues constant pop ups error messages at start up such as csrss.new.exe very slow computer also get a error message about my sub system being dos not sure what it is"
"pop ups all the time computer is slow and crashes a lot and when i run a spywaqre program it says i have 106 viruses ????? please help"


PCs containing this item also contained the following spyware:

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.yahoo.com/search?p=%s
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\System\blank.htm
(More Details)

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - (no file)
(More Details)

F3 - REG:win.ini: load=C:\WINDOWS\System32\lufajlvb\csrss.new.exe
(More Details)

F3 - REG:win.ini: run=C:\WINDOWS\System32\lufajlvb\csrss.new.exe
(More Details)

O1 - Hosts: 64.233.167.104 www.symantec.com
(More Details)

O1 - Hosts: 64.233.167.104 www.sophos.com
(More Details)

O1 - Hosts: 64.233.167.104 www.mcafee.com
(More Details)

O1 - Hosts: 64.233.167.104 www.viruslist.com
(More Details)

O1 - Hosts: 64.233.167.104 www.f-secure.com
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer - Westnet Internet Services
(More Details)

O2 - BHO: (no name) - {D9E386F7-8E03-AC7D-88A0-6A89782BAC9B} -
(More Details)

O4 - HKLM\..\Run: [block buster] C:\Documents and Settings\Harvey\Local Settings\Temporary Internet Files\Content.IE5\0DINCT6Z\funwithmsn-blockbuster-v-4[1]
(More Details)

O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.h...xuk101YYUS
(More Details)

O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/fu...0.0.15.cab
(More Details)

O16 - DPF: {3A7FE611-1994-4EF1-A09F-99456752289D} (WildTangent Active Launcher) - http://install.wildtangent.com/ActiveLa...uncher.cab
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)