Version 5.0.65
2009 02 22
Infection Goldun:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\i975gl
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mjva
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mjva.sys
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mjva.sys
Files:
system32\a9k.bin
system32\i975gl.dll
system32\mjva.sys
system32\z98.bin
Infection Goldun:
Detection updated for the variants that are using the orphaned service registrykeys
Use haxfix to remove this infection.
Removalinstructions for this infection, you can find here or here.
How to remove Security Suite
2 jaar geleden
Geen opmerkingen:
Een reactie posten