Posts Tagged ‘HKCU’

Connection

Created: MAY 2000
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

Clix0r

Created: JAN 2004
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

Clandestine

Created: JUN 2001
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

CIH

Aliases: “The CIH or Chernobyl Virus”, CIH.Spacefiller, PE_CIH, PE_CIH.1049, Univ.B, Univ.EH, W32.CIH.1003.A, W32.CIH.1019.C, W32.CIH.1026, W32.CIH.1035, W32.CIH.1040, W32.CIH.1042, W32.CIH.1103, W32.CIH.1230, W32.Spybot.IBS, W32/CIH.1230.intended, W95.CIH.1003, W95.CIH.1049, Win32.CIH, Win32.CIH!remnants, Win32.Rbot.CIH, Win32.Silly.Dl, Win32.SillyDl.CIH, Win95.CIH, Win95.CIH.973, Win95.CIH.1003, Win95.CIH.1003.A,, Win95.CIH.1003.B, Win95.CIH.1003.D, Win95.CIH.1010, Win95.CIH.1019, Win95.CIH.1019.B, Win95.CIH.1024, Win95.CIH.1026, Win95.CIH.1035, Win95.CIH.1040, Win95.CIH.1042, Win95.CIH.1049, Win95.CIH.1122, Win95.CIH.1129, Win95.CIH.1230, Win95.CIH.1262, Win95.CIH.1297, Win95.CIH.1363, Win95.CIH.1674, Win95.CIH.1674.int, Win95.CIH.Int5.1230, Win95.CIH.Src, Win95.CIH.family, Win95.CIH.intended, Win95.CIH.remnants, Win95.FCIH, Win95.FCIH.1230, Win95.TNNCIH
Size: 91kb
Author: Chen Ing-hau
Created: JUN 1998
OS: Windows
Location: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Sys Personal Firewall\
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Sys Personal Firewall\
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\Sys Personal Firewall\
Infection: -902795538.bat.com, 6d8dd835b17a955a3508577522b67ead.exe, 1163782084.exe, PBRUSH.exe, a647cef07f186833b396dcaa4f5e1359.exe, alibaba-check.exe, avichop.exe, b2b4362dd920491d9002902fc7026950.exe, cih_13.exe, claveaccess.exe, click20122.jpg, click20209.jpg, click20235.jpg, cnote.exe, cock4.jpg, cock31.jpg, damn_acid3_kg.exe, damn_soundforge50b_kg.exe, dansbig3741.jpg, dbanner7.gif, eia-pmacalc.v1.2-keygenerator.exe, exploit-mime.gen.b_3.exe, ezcd creator plat5.rar, false.scr.exe, keygen.exe, mk4train.exe, scan.exe, self extracting divx kit.exe, sendgraphicsms[2].htm, sendsms[2].htm, seroxat.exe, setup.exe, thunder v3.0 – killer attack.exe, tnn.cih.exe, trainer.exe, trojan horses.exe, win95.cih.973.exe, win95.cih.1003.b.exe, win95.cih.1019.c.exe, win95.cih.1026.exe, win95.cih.1042.exe, win95.cih.1129.exe, win95.cih.1230.exe, win95.cih.1262.exe, win95.cih.exe, win95.cih.src.exe, windowguard32.exe

VN:F [1.8.3_1051]
Rating: 0.0/10 (0 votes cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)

CIA

Created: DEC 2002
OS: Windows
Location: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA855-CC51-11CF-AAFA-00AA00B6017B}\
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ HKCU\Software\Microsoft\Windows\CurrentVersion\RunServices\

VN:F [1.8.3_1051]
Rating: 6.0/10 (1 vote cast)
VN:F [1.8.3_1051]
Rating: 0 (from 0 votes)