HijackRemote Anti-Spyware P2P Service

 

     
 
 Clean This with HijackRemote


Spyware File Details

O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot

Last Detected: 1/17/2006 7:33:00 PM
Found on 9 PCs.

Users with this object complained of the following:

"My computer has a message on the taskbar that says dangerous malware infection was detected on my PC. The system will download and int stall most efficient antimalware program to prevent data loss and your pvt information theft, click here to protect your computer from the biggest malware threats. If i click anywhere it opens spyware page wanting me to pay for this download. I have scanned with adaware, spybot and ran a virus scan. Cleaned up with add/remove programes yet this message still comes up. What is your advice please. Can u please help me. Thank you"
"Internet Explorer home page is redirecting to a spyware download site."
"slow pc"
"spyware"


PCs containing this item also contained the following spyware:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ninemsn.com.au/
(More Details)

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
(More Details)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.ninemsn.com.au/
(More Details)

O2 - BHO: HomepageBHO - {e0103cd4-d1ce-411a-b75b-4fec072867f4} - C:\C\WINDOWS\system32\hp6543.tmp
(More Details)

O3 - Toolbar: (no name) - {54C44E5F-AEA9-458E-B33B-7936F2CB57F1} - (no file)
(More Details)

O4 - HKLM\..\Run: [WINDOWSflashbrg] C:\C\WINDOWS\sqldata1.exe
(More Details)

O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot
(More Details)

O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
(More Details)

O16 - DPF: 6th Street Omaha Poker by pogo - http://game1.pogo.com/applet-6.4.3.36/omaha/omaha-ob-assets.cab
(More Details)

O16 - DPF: Aces Up! by pogo - http://game1.pogo.com/applet-6.4.1.46/aces/aces-ob-assets.cab
(More Details)

O2 - BHO: HomepageBHO - {27150f81-0877-42e9-af13-55e5a3439a26} - C:\WINDOWS\system32\hp71E9.tmp
(More Details)

O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll
(More Details)

O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll
(More Details)

O4 - HKLM\..\Run: [AdwareAlert] C:\Program Files\AdwareAlert\AdwareAlert.Exe -boot
(More Details)

O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
(More Details)

O16 - DPF: {10000000-1000-0000-1000-000000000000} - file://C:\Program Files\Internet Explorer\mmysiwbp.exe
(More Details)

R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL
(More Details)

O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
(More Details)

O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - C:\Program Files\SideFind\sfbho.dll
(More Details)

O4 - HKLM\..\Run: [LoadQM] loadqm.exe
(More Details)

O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
(More Details)

O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
(More Details)

O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
(More Details)

O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
(More Details)

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
(More Details)

R3 - URLSearchHook: (no name) - {4D3311A9-441D-1689-6244-93A0DCFAAE0D} - ___.dll (file missing)
(More Details)

O2 - BHO: SearchToolbar - {08BEC6AA-49FC-4379-3587-4B21E286C19E} - C:\WINDOWS\system32\tbtsh.dll
(More Details)

O3 - Toolbar: SearchToolbar - {08BEC6AA-49FC-4379-3587-4B21E286C19E} - C:\WINDOWS\system32\tbtsh.dll
(More Details)

O4 - HKLM\..\Run: [zxc] 321102.exe
(More Details)

O4 - HKLM\..\Run: [_ctcp] DCC_send.exe
(More Details)

O4 - HKLM\..\Run: [hgqhp.exe] C:\WINDOWS\system32\hgqhp.exe
(More Details)

O4 - HKCU\..\Run: [desktop] C:\WINDOWS\system32\idemlog.exe
(More Details)

O4 - HKCU\..\Run: [EXE32EXE] _ctcp.exe
(More Details)

O4 - HKCU\..\Run: [LOPTCON] keybdll.exe
(More Details)


Back to Spyware List

 
     
 About HijackRemote | Recently Slayed Spyware | Message Board | Contact Us
 HijackRemote ©2005 (Terms of Service)