<<Tillbaka
Förändringar v2.422 -> v2.423
- [-HKEY_CURRENT_USER\Software\ColdWare]
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "WinProtect"=-
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "winupdate.exe"=-
- "ColdWare"=-
- %SYSTEM%\AVR09.exe
- %SYSTEM%\msa.exe
Förändringar v2.414 -> v2.416
- O2 - BHO: (no name) - {3B7AAEB1-9F3D-4491-9C06-C7165CA8D058} - C:\Program Files\Applications\iebt.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}]
- %SYSTEM%\SYS32DLL.exe
- %PROGRAMFILES%\PCenter\
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "SYS32DLL"=-
- "agent.exe"=-
Förändringar v2.411 -> v2.412
- %HOMEDRIVE%\asasa.exe
- %HOMEDRIVE%\syst.exe
- %PROGRAMFILES%\Microsoft Security Adviser\
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "msctrl.exe"=-
- "msavsc.exe"=-
- "msscan.exe"=-
- "msiemon.exe"=-
- "msfw.exe"=-
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "msctrl.exe"=-
- "msavsc.exe"=-
- "msscan.exe"=-
- "msiemon.exe"=-
- "msfw.exe"=-
- %ALLUSERS%\ApplicationData\Tally software LTD\
- %STARTMENU%\Programs\Extra Antivirus\
- [-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\uninstall\Extra Antivirus 3.0]
- [-HKEY_CURRENT_USER\Software\Tally software LTD]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "Extra Antivirus"=-
Förändringar v2.409 -> v2.411
- %STARTMENU%\Programs\AV AntiSpyware\
- %ALLUSERS%\ApplicationData\LastSun Ltd\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AV AntiSpyware 1.8]
- [-HKEY_CURRENT_USER\Software\LastSun Ltd]
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "AV AntiSpyware"=-
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{36DBC179-A19F-48F2-B16A-6A3E19B42A87}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{36DBC179-A19F-48F2-B16A-6A3E19B42A87}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\load1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\browser helper objects\{36DBC179-A19F-48F2-B16A-6A3E19B42A87}]
- %SYSTEM%\ipv6monl.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\WiniBlueSoft]
- [-HKEY_CURRENT_USER\Software\WiniBlueSoft]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WiniBlueSoft]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "WiniBlueSoft"=-
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "setup2.exe"=-
- %SYSTEM%\setup2.exe
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\WiniBlueSoft.lnk
- %ALLUSERSTARTMENU%\Programs\WiniBlueSoft\
- %ALLUSERDESKTOP%\WiniBlueSoft.lnk
- %PROGRAMFILES%\WiniBlueSoft Software\
Förändringar v2.408 -> v2.409
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\homeantivirus2009.lnk
- %STARTMENU%\Programs\homeantivirus2009\
- %DESKTOP%\homeantivirus2009.lnk
- %PROGRAMFILES%\homeantivirus2009\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HomeAntivirus2009]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "HomeAntivirus 2009"=-
Förändringar v2.404 -> v2.405
- %WINDIR%\ieocx.dll
- [-HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEocxApp.IEocx]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEocxApp.IEocx.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}] (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A54DC52D-7AAD-4D40-A126-337211631EDC}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}]
- %DESKTOP%\WinPC Defender.lnk
- %STARTMENU%\WinPC Defender.lnk
- [-HKEY_CURRENT_USER\Software\WinPC Defender]
- %SYSTEM%\rs32net.exe
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "rs32net"=-
- %HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
- "rs32net"=-
- [-HKEY_CURRENT_USER\Software\renus2008]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "renus2008.exe"=-
Förändringar v2.403 -> v2.404
- %USERPROFILE%\Application Data\sysrc32.exe
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "Win32load"=-
Förändringar v2.402 -> v2.403
- %ProgramFiles%\AntiSpyware Pro
- %PROGRAMFILES%\RegistryFox\
- %ALLUSERDESKTOP%\RegistryFox.lnk
- %USERPROFILE%\Application Data\RegistryFox\
- %ALLUSERSTARTMENU%\Programmes\RegistryFox\
- [-HKEY_CURRENT_USER\SOFTWARE\RegistryFox]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\6B4F6929EB6FE0E458263EBA6AF2EB30]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\6B4F6929EB6FE0E458263EBA6AF2EB30]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\RegistryFox]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9296F4B6-F6BE-4E0E-8562-E3ABA62FBE03}]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "RegistryFox"=-
Förändringar v2.401 -> v2.402
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
- "Shell"="Explorer.exe svchostw.exe"
- %SYSTEM%\svchostw.exe
Förändringar v2.400 -> v2.401
- %WINDOWS%\ld01.exe
- %WINDOWS%\ld02.exe
- %WINDOWS%\pp2.exe
- %SYSTEM%\dll32.exe
- %SYSTEM%\dll32.dll
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "dll"=-
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "sysldtray"=-
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "pp"=-
- %STARTMENU%\Programs\Malware Defender 2009\
- %DESKTOP%\Malware Defender 2009.lnk
- %PROGRAMFILES%\Malware Defender 2009\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malware Defender 2009]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Malware Defender 2009]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "malwaredef"=-
- %STARTMENU%\Programs\System Guard 2009\
- %DESKTOP%\System Guard 2009.lnk
- %PROGRAMFILES%\System Guard 2009\
- %ALLUSERSPROFILE%\Application Data\Microsoft\Network\DLLs\iemodule.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Guard 2009]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\System Guard 2009]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "systemguard"=-
Förändringar v2.394 -> v2.395
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "systeminit.exe"=-
Förändringar v2.393 -> v2.394
- %PROGRAMFILES%\freshplay\
- %STARTMENU%\Programs\freshplay
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\freshplay]
- [-HKEY_CURRENT_USER\SOFTWARE\freshplay]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\freshplay]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
- "NoFolderOptions"=-
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
- "NoFolderOptions"=-
- %ALLUSERPROFILE%\Application Data\CrucialSoft Ltd\
- [-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\uninstall\MS AntiSpyware 2009 5.7]
- [-HKEY_CURRENT_USER\Software\CrucialSoft Ltd]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "MS AntiSpyware 2009"=-
Förändringar v2.392 -> v2.393
- %WINDOWS%\sysguard.exe
- %SYSTEM%\iehelper.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9C42510-9B21-41c1-9DCD-8382A2D07C61}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C9C42510-9B21-41c1-9DCD-8382A2D07C61}]
- [-HKEY_CURRENT_USER\Software\AvScan]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "sysguard"=-
Förändringar v2.388 -> v2.391
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\CMVideo.DLL]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{36B94DC8-FA3B-45DF-8F6B-215A2A469BCC}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D23EE44-2319-4B6C-93D2-A572E0F5B0E0}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B87FA0EF-26D7-4B2A-B7EE-38C7271C4843}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2EB32B07-6A19-4D18-9A19-4DE49F18A1FB}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{638E0063-BA00-487C-BAFF-423E356F52F6}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AC4A66D0-BB91-45E5-BB00-E0F091F630B8}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.CMVideoPlugin]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.CMVideoPlugin.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.XMLDOMDocumentEventsSink]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.XMLDOMDocumentEventsSink.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0D23EE44-2319-4B6C-93D2-A572E0F5B0E0}]
- [-HKEY_CURRENT_USER\Software\CMVideoPlugin]
- %SYSTEM%\CMVideo.dll
- %PROGRAMFILES%\totalvid\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Online Alert Manager]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Toolbar]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "msiexec.exe"=-
Förändringar v2.387 -> v2.388
- %STARTMENU%\Programs\videosoft\
- %PROGRAMFILES%\videosoft\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\videosoft]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\videosoft]
- [-HKEY_CURRENT_USER\Software\videosoft]
- %PROGRAMFILES%\Total Protect 2009\
- %ALLUSERPROFILE%\StartMenu\Programs\Total Protect 2009\
- %ALLUSERPROFILE%\Desktop\Run Total Protect 2009.lnk
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\totalprotect]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\totalprotect]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Total Protect 2009]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus Software]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "Total Protect 2009"=-
Förändringar v2.383 -> v2.385
- Added: Agent.OMZ.Fix.exe tool to remove Zlob hidden folder.
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus 360.lnk
- %STARTMENU%\Antivirus 360\
- %DESKTOP%\Antivirus 360.lnk
- %PROGRAMFILES%\A360\
Förändringar v2.376 -> v2.378
- %PROGRAMFILES%\WMVideoPlugin\
- %SYSTEM%\mws31209.dll
- %SYSTEM%\ws31209.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CC3081A6-AC0C-331D-860E-AEF4790E6B5B}]
- [-HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{C77BD12E-4A3C-33E3-858C-F2D04591C6B5}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0BB62EE8-3528-39F7-9070-F9F0C09329D5}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC3081A6-AC0C-331D-860E-AEF4790E6B5B}]
- %PROGRAMFILES%\AvirTrsoftware\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3A267370-076E-4af4-B986-77626B8E89DF}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{764BC8B4-1159-4736-8AF1-F124A7C8C3A8}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF3F06C6-D443-48A8-BDF2-4E31F0554EBF}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3ED86073-2FA7-4CF4-810B-28B030671678}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AvirTrWarning.WarningBHO]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AvirTrWarning.WarningBHO.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AvirTrsoft]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A267370-076E-4af4-B986-77626B8E89DF}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AvirTrsoft]
- [-HKEY_CURRENT_USER\Software\AvirTrsoft]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\AvirTrsoftware\AvirTr.exe"=-
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\AvirTrsoftware\AvirTr.exe"=-
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "AvirTr"=-
Förändringar v2.375 -> v2.376
- %PROGRAMFILES%\msvideoplugin\
- %PROGRAMFILES%\homeview\
- %STARTMENU%\Programs\homeview\
-
-
- %SYSTEM%\mws55681.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F6733C78-821F-3BBF-ADE6-3DB71CAD887A}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F6733C78-821F-3BBF-ADE6-3DB71CAD887A}]
-
-
- %SYSTEM%\msiconf.exe
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "msiexec.exe"=-
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\antivirustrigger 2.1.lnk
- %STARTMENU%\antivirustrigger 2.1.lnk
- %STARTMENU%\Programs\antivirustrigger 2.1\
- %DESKTOP%\antivirustrigger 2.1.lnk
- %PROGRAMFILES%\virtrigger\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0088C75C-6361-4dfb-B2CF-576CACFA3C55}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{22C447D3-73A8-E1C7-C391-21BE4338CEBC}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VirTriggerWarning.WarningBHO]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VirTriggerWarning.WarningBHO.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirTrigger]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0088C75C-6361-4dfb-B2CF-576CACFA3C55}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VirTrigger]
- [-HKEY_CURRENT_USER\Software\VirTrigger]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\VirTrigger\VirTrigger.exe"=-
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\VirTrigger\VirTrigger.exe"=-
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "VirTrigger"=-
Förändringar v2.373 -> v2.374
- %PROGRAMFILES%\Google\googletoolbar1.dll
- %PROGRAMFILES%\Google\setupcom.dat
- %PROGRAMFILES%\Google\setupext.dat
- %SYSTEM%\crypts.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt]
- O2 - BHO: (no name) - {8710DF42-3171-4A3B-9079-3F7D7101552B} - C:\Program Files\Applications\iebt.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8710DF42-3171-4A3B-9079-3F7D7101552B}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8710DF42-3171-4A3B-9079-3F7D7101552B}]
- O3 - Toolbar: Internet Service - {E43B6656-814B-4839-8FF8-AFFDE0DA9A3F} - C:\Program Files\Applications\iebr.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E43B6656-814B-4839-8FF8-AFFDE0DA9A3F}]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
- "{E43B6656-814B-4839-8FF8-AFFDE0DA9A3F}"=-
Förändringar v2.366 -> v2.367
- %SYSTEM%\ntload.dll
- %SYSTEM%\sex1.ico.tmp
- %SYSTEM%\sex2.ico.tmp
- %SYSTEM%\update32.exe.tmp
- %SYSTEM%\winupdate.exe
- %SYSTEM%\wscmp.dll.tmp
- %DESKTOP%\Uncensored porn.url
- %DESKTOP%\BDSM galleries.url
- %SYSTEM%\winupdate.exe
- [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
- "run"=-
Förändringar v2.365 -> v2.366
- %WINDIR%\woprdagt.exe
- %PROGRAMFILES%\TS-2009
Förändringar v2.361 -> v2.363
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VirusRemover2008]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\VirusRemover2008]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\{5222008A-DD62-49c7-A735-7BD18ECC7350}]
- [-HKEY_CURRENT_USER\Software\VirusRemover2008]
- [-HKEY_CURRENT_USER\{5222008A-DD62-49c7-A735-7BD18ECC7350}]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "VirusRemover2008"=-
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\virusremover2008.lnk
- %USERPROFILE%\Application Data\virusremover2008\
- %STARTMENU%\Programs\virusremover2008\
- %DESKTOP%\virusremover2008.lnk
- %PROGRAMFILES%\virusremover2008\
- %ALLUSERSTARTMENU%\Programs\PC Protection Center 2008\
- %ALLUSERDESKTOP%\PC Protection Center 2008.lnk
- %PROGRAMFILES%\PC Protection Center 2008\
- %SYSTEM%\vbzlib2.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC Protection Center 2008]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus Software]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "PC Protection Center"=-
- %WINDOWS%\ieguard.dll
- %WINDOWS%\sysguard\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D032570A-5F63-4812-A094-87D007C23012}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ieguard.TIEAdvBHO]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D032570A-5F63-4812-A094-87D007C23012}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\sysguard]
- [-HKEY_CURRENT_USER\Software\sysguard]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
- "Shell"=-
Förändringar v2.360 -> v2.361
- %SYSTEM%\msxml71.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{500BCA15-57A7-4eaf-8143-8C619470B13D}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9233C3C0-1472-4091-A505-5580A23BB4AC}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XML.XML]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XML.XML.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{500BCA15-57A7-4eaf-8143-8C619470B13D}]
- [-HKEY_CURRENT_USER\Software\XML]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\MSFox]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "MSFox"=-
Förändringar v2.359 -> v2.360
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\VirusResponse Lab 2009 2.1.lnk (Already removed)
- %STARTMENU%\VirusResponse Lab 2009 2.1.lnk (Already removed)
- %STARTMENU%\Programs\VirusResponse Lab 2009 2.1\ (Already removed)
- %DESKTOP%\VirusResponse Lab 2009 2.1.lnk (Already removed)
- %PROGRAMFILES%\virrl2009\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A81EBFD7-0FA3-41ec-B60D-6DAE78B4D31A}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5734812-E6A1-8833-ECA9-949B5B8A88BF}] (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}] (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}] (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A8954909-1F0F-41A5-A7FA-3B376D69E226}] (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VirRLWarning.WarningBHO]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VirRLWarning.WarningBHO.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirRL2009]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A81EBFD7-0FA3-41ec-B60D-6DAE78B4D31A}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VirRL2009]
- [-HKEY_CURRENT_USER\Software\VirRL2009]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\VirRL2009\VirRL2009.exe"=-
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\VirRL2009\VirRL2009.exe"=-
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "VirRL2009"=-
Förändringar v2.358 -> v2.359
- %WINDIR%\karna.dat
- %SYSTEM%\brastk.exe
- %SYSTEM%\karna.dat
- O20 - AppInit_DLLs: C:\WINDOWS\System32\karna.dat
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "brastk"=-
Förändringar v2.357 -> v2.358
- %WINDIR%\karna.dat
- %SYSTEM%\brastk.exe
- %SYSTEM%\karna.dat
- O20 - AppInit_DLLs: C:\WINDOWS\System32\karna.dat
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "brastk"=-
Förändringar v2.352 -> v2.354
- %SYSTEM%\fbxrqtwn.exe
- %SYSTEM%\MicroAV.cpl
- %DESKTOP%\Micro Antivirus 2009.lnk
- %PROGRAMFILES%\MicroAV\
- [-HKEY_CURRENT_USER\Software\AntiVirus]
- [-HKEY_CURRENT_USER\Software\uav]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "Antivirus"=-
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "Antivirus"=-
- %PROGRAMFILES%\uav\
- %DESKTOP%\Ultimate Antivirus 2008.lnk
- %SYSTEM%\uav.cpl
Förändringar v2.351 -> v2.352
- %SYSTEM%\users64.dat
- %SYSTEM%\sysppu?.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectShow\pr]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectShow]
- "10"=-
- "di"=-
- "u1"=-
- "lk1"=-
Förändringar v2.345 -> v2.346
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\Smart Antivirus-2009.lnk
- %USERPROFILE%\Start Menu\Programs\Smart Antivirus 2009\
- %DESKTOP%\Smart Antivirus-2009.lnk
- %PROGRAMFILES%\Smart Antivirus 2009\
- [-HKEY_CURRENT_USER\Software\Smart Antivirus 2009]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "Smart Antivirus-2009.exe"=-
Förändringar v2.339 -> v2.343
- %ProgramFiles%\aspch\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E1FAB6BD-4A34-47ce-82AF-50B16A6BE77E}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ThreatWarning.WarningBHO]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ThreatWarning.WarningBHO.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\aspch]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E1FAB6BD-4A34-47ce-82AF-50B16A6BE77E}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\aspch]
- [HKEY_CURRENT_USER\Software\aspch]
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\aspch\ASpCh.exe"=-
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
- "C:\Program Files\aspch\ASpCh.exe"=-
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "aspch"=-
- %DESKTOP%\Total Secure 2009.lnk
- %USERPROFILE%\Start Menu\Programs\Total Secure 2009.lnk
- %ProgramFiles%\TotalSecure2009\
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Total Secure 2009]
- [-HKEY_CURRENT_USER\Software\TotalSecure2009]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "TotalSecure2009"=-
- %ProgramFiles%\Power-Antivirus-2009\
- %USERPROFILE%\Application Data\Power-Antivirus-2009\
- %USERPROFILE%\Start Menu\Programs\Power-Antivirus-2009\
- %desktop%\Power-Antivirus-2009.lnk
- [-HKEY_CURRENT_USER\Software\Power-Antivirus-2009]
- %ProgramFiles%\RichVideoCodec\ (Already removed)
- %SYSTEM%\RichVideoCodec.dll (Already removed)
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\CodecBHO.DLL]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{e12b39a5-df4a-4f04-a85b-4ecf048e359f}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a37b3779-e4f3-424c-a495-a60ea8063476}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b65c5ebd-0989-40b5-a2a0-84642539bf82}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E46194A9-C4B1-4C0F-A75E-E9C5BDED7874}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E7309FD6-0FD0-459D-A5E8-27D7A23215F1}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B648A7F7-DD8F-4535-AFAD-CE5BA0E8320E}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CodecBHO.CodecPlugin]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CodecBHO.CodecPlugin.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CodecBHO.XMLDOMDocumentEventsSink]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CodecBHO.XMLDOMDocumentEventsSink.1]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a37b3779-e4f3-424c-a495-a60ea8063476}]
- [-HKEY_CURRENT_USER\Software\RichVideoCodec] (Already removed)
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "\VIE2.exe"=-
- "\VIE3.exe"=-
- "\VIE4.exe"=-
- "\VIE5.exe"=-
- "\VIEA.exe"=-
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "\VIE2.exe"=-
- "\VIE3.exe"=-
- "\VIE4.exe"=-
- "\VIE5.exe"=-
- "\VIEA.exe"=-
- %DESKTOP%\EXTREME FUCK.url
- %DESKTOP%\TITS AND ASS.url
- %SYSTEM%\1.ico
- %SYSTEM%\2.ico
- %SYSTEM%\VIEA.exe
- %SYSTEM%\VIE5.exe
- %SYSTEM%\VIE4.exe
- %SYSTEM%\VIE3.exe
- %SYSTEM%\VIE2.exe
- %WINDOWS%\rvoelbxt.exe
- O2 - BHO: (no name) - {0BD44AB1-76A7-4E05-92F4-4B065FE72BD6} - C:\Program Files\Applications\iebt.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}]
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}]
- O3 - Toolbar: Internet Service - {3BEBF2FE-7248-40E2-9752-8163EB6C4038} - C:\Program Files\Applications\iebr.dll
- [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3BEBF2FE-7248-40E2-9752-8163EB6C4038}]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
- "{3BEBF2FE-7248-40E2-9752-8163EB6C4038}"=-
Förändringar v2.338 -> v2.339
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "buritos"=-
- %ALLUSERPROFILE%\Start Menu\Programs\Antivirus XP 2008\
- %ALLUSERPROFILE%\Start Menu\Programs\Antivirus XP 2008.lnk
- %AllUserDesktop%\Antivirus XP 2008.lnk
- %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus XP 2008.lnk
<<Tillbaka
|