cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

KillAll::

Rootkit::
c:\windows\system32\tdssserv.sys

RenV::
C:\SwSetup\SP34746\WCAMC\FW_210_Silence Install .exe

Driver::
VideoAcceleratorService
I804thdmhqpr
TDSSuiop

NetSvc::
rdiopxc
yuiocus

Registry::
[-HKEY_CLASSES_ROOT\clsid]{e7f88e02-0c78-48a1-86d2-82d8865de2df}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{3017FB3E-9A77-4396-88C5-0EC9548FB42F}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{389943B0-C3A2-4E69-82CB-8596A84CB3DC}]
[-HKEY_CLASSES_ROOT\clsid\{ebfcd017-bcad-42c3-9ed5-89dbdfc59171}]
[-HKEY_CLASSES_ROOT\SPEEDBIT1.SPEEDBIT1.3]
[-HKEY_CLASSES_ROOT\TypeLib\{EC4085F2-8DB3-45a6-AD0B-CA289F3C5D7E}]
[-HKEY_CLASSES_ROOT\SPEEDBIT1.SPEEDBIT1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Bendping"=-

SecCenter::
{B6898459-9G65-6E98-55DC-78DESDF8956F}

DDS::
uStart Page = hxxp://www.ask.com
uInternet Settings,ProxyServer = hxxp://127.0.0.1:8080

Firefox::
FF - component: c:\program files\Mozilla Firefox\extensions\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}\components\DealioToolbarFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll

ATJob::

Folder::
c:\program files\SpeedBit Toolbar
c:\documents and settings\All Users\Application Data\pile egg bold
c:\program files\SpeedBit Video Downloader
C:\progra~1\SPEEDB~2
c:\progra~1\speedo~1
c:\program files\Mozilla Firefox\extensions\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}
c:\program files\Mozilla Firefox\extensions\search@searchsettings.com
c:\program files\Uniblue

File::
c:\windows\yuiogl.exe
c:\windows\system32\TDSSblat.dat
c:\windows\system32\TDSSqoaa.log
c:\windows\system32\scvhost.exe
c:\windows\Tasks\{5D6942FD-23C6-69D8-45SQ-2XD456920C89}.job
c:\windows\Tasks\SpeedOptimizer Startup.job

DequarantineB::
c:\borderlands\borderlands config editor v2.1.4.exe

Quit::

Publicité


Signaler le contenu de ce document

Publicité