cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

KillAll::

RenV::
C:\SwSetup\SP34746\WCAMC\FW_210_Silence Install .exe

Driver::
I804thdmhqpr
TDSSuiop

Rootkit::
c:\windows\system32\tdssserv.sys

NetSvc::
rdiopxc
yuiocus

Registry::
[-HKEY_CLASSES_ROOT\clsid]{e7f88e02-0c78-48a1-86d2-82d8865de2df}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3017FB3E-9A77-4396-88C5-0EC9548FB42F}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{389943B0-C3A2-4E69-82CB-8596A84CB3DC}]
[-HKEY_CLASSES_ROOT\clsid\{ebfcd017-bcad-42c3-9ed5-89dbdfc59171}]
[-HKEY_CLASSES_ROOT\SPEEDBIT1.SPEEDBIT1.3]
[HKEY_CLASSES_ROOT\TypeLib\{EC4085F2-8DB3-45a6-AD0B-CA289F3C5D7E}]
[-HKEY_CLASSES_ROOT\SPEEDBIT1.SPEEDBIT1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Bendping"=-

RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

DDS::
uStart Page = hxxp://www.ask.com

Firefox::
FF - component: c:\program files\Mozilla Firefox\extensions\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}\components\DealioToolbarFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll

ATJob::

Folder::
c:\documents and settings\All Users\Application Data\pile egg bold
c:\program files\SpeedBit Video Downloader
c:\progra~1\speedo~1

File::
c:\windows\yuiogl.exe
c:\windows\system32\TDSSblat.dat
c:\windows\system32\TDSSqoaa.log
c:\windows\Tasks\{5D6942FD-23C6-69D8-45SQ-2XD456920C89}.job
c:\windows\Tasks\SpeedOptimizer Startup.job

Publicité


Signaler le contenu de ce document

Publicité