View MDO database (R1)
Showing entries 651 to 675 of 1011.
Go directly to page: 1 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 41
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.bestwebslinks.com/search.php?qq=%1 Smitfraud family of trojans Fix / Info: See removal instructions at the link below. http://spywareinfoforum.com/index.php?act=ST&f=6&t=52193 Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.blazefind.com Related to ISTbar adaware. Fix / Info: HijackThis, delete file, Malware removal tool. http://www.doxdesk.com/parasite/ISTbar.html Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.cherche.us/keyword/%s Set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.forumswatcher.com/search.htm set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.forumswatcher.com/search.htm set by user Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.internet-search.info/keyword%s CoolWebSearch Infection Fix / Info: HijackThis - CWShredder http://www.mvps.org/winhelp2002/hosts.htm Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.oneclicksearches.com/search.php?qq=%1 Indicates the "Smitfraud" infection. Fix / Info: See removal instruction at the link below. http://spywareinfoforum.com/index.php?act=ST&f=6&t=45833&st=30 Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.qfind.net/search.php?qq=%s Unknown virus/trojan. Reported by HJTHelper as CWS infection. All logs reviewed on google are deleting this item with success. One reference in the link below. Fix / Info: HJT, CWShredder tool. http://spywareinfoforum.com/index.php?act=ST&f=6&t=46996&hl=qfind.net/ Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.quicknavigate.com/search.php?qq=%1 Smitfraud family of trojans Fix / Info: Fix if you have access: http://spywareinfoforum.com/index.php?act=ST&f=6&t=45833&st=15 http://www.sophos.com/virusinfo/analyses/trojpupere.html Windows ALL; discovered by Nasdaq |
(U) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchgateway.net/search/%s set by user Windows ALL; discovered by Angoid |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchmaid.com/search.php?qq=%s earchmaid hijacker Fix / Info: HijackThis Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.searchmaid.com/search.php?qq=%s Searchmaid hijacker Fix / Info: HijackThis, delete file, Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.security2k.net/search.php?qq=%1 Blocked by the HOSTS file. See URL Fix / Info: HijackThis http://www.mvps.org/winhelp2002/hosts.htm Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.startsearches.net/search.php?qq=%1 Related to Secretmaker tool. Fix / Info: Removal see Topic below http://spywareinfoforum.com/index.php?act=ST&f=6&t=45833&st=15 Windows ALL; discovered by Nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.updatesearches.com/search.php?qq=%1 Smitfraud family of trojans Fix / Info: Fix if you have access: http://spywareinfoforum.com/index.php?act=ST&f=6&t=45833&st=15 http://www.sophos.com/virusinfo/analyses/trojpupere.html Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.drsnsrch.com/q.cgi?q= Related to Spyware ShopNav as reported in this host file http://www.mvps.org/winhelp2002/hosts.htm Fix / Info: HijackThis http://www.doxdesk.com/parasite/ShopNav.html Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = websearch.shopnav.com/q.cgi?q= ShopNav Malware. Fix / Info: HijackThis, AwAware tool http://www.doxdesk.com/parasite/ShopNav.html Windows ALL; discovered by Nasdaq |
(U) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = www.dogpile.com Set by user Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = www.searchant.com/r=6&s=%s Blocked by the HOSTS file. See URL Fix / Info: HijackThis http://www.mvps.org/winhelp2002/hosts.htm Windows ALL; discovered by nasdaq |
(X) R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,SearchURL = http://s-redirect.com/?a=2&b=n-glx-2 CoolWebSearch variant Fix / Info: Cwshredder tool http://xblock.com/product_show.php?id=930 Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\nternet Explorer\Main,Search Bar = res://C:Program FilesCopernic AgentCopernicAgentExt.dll/INTEGRATION_BAND_SEARCHBAR_HTML Set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\WindowsCurrentVersion\Internet Settings,AutoConfigURL = file://C:/program files/neopets/HSClient/proxy.pac Set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\WindowsCurrentVersion\Internet Settings,ProxyOverride = local;localhost Set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\WindowsCurrentVersion\Internet Settings,ProxyOverride = localhost Set by user Windows ALL; discovered by nasdaq |
(U) R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = file://D:/My DownloadsC/Streamy4_0/workspace/.metadata/.plugins/com.migniot.streamy.Browser/proxy.pac Set by user http://www.migniot.com/matrix/projects/streamy/ Windows ALL; discovered by nasdaq |
This is a list of items that is designed to help with the analysis of HijackThis, DDS, OTL and FRST logs.
It is by no means exhaustive (in fact it is being added to all the time), and is intended
to complement other legitimate online lists.