|
Sfonditalia: Sfonditalia
Sfonditalia Sfonditalia !
Sfonditalia . Sfonditalia. , . Sfonditalia.
:
1) . . Sfonditalia.
2) .
|
: Sfonditalia |
| : sgru.exe |
| : Spyware/trojan |
| : Win32 (Windows 9x, Windows XP, Windows Vista, Windows Seven) |
Sfonditalia
Sfonditalia () . sgru.exe. Sfonditalia sgru.exe. sgru.exe Sfonditalia.
Sfonditalia, , .
» Sfonditalia
, , - Sfonditalia.
Sfonditalia Sfonditalia Sfonditalia.
, Sfonditalia Sfonditalia . Sfonditalia Sfonditalia. , Sfonditalia. Sfonditalia !
» Sfonditalia
Sfonditalia
, Sfonditalia, - DLL . , DLL Sfonditalia.
Sfonditalia, :
1. :
no information
: , , . . Sfonditalia .
2. :
• %appdata%\tisemabana\
• %profile%\local settings\temporary internet files\content.ie5\21uh2s6z\
• %profile%\local settings\temporary internet files\content.ie5\khohyfen\
• %desktop%\new folder (2)\
• %appdata%\faretoraci\
• %desktop%\tai\
• %desktop%\adulti[1]\
• %desktop%\bl4ck\
• %appdata%\semanatiba\
3. \ :
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Type
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\TTunim
Value: TTunim
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform
Value: snprtz|dialno
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Flags
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Count
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Time
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Blocked
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Time
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Count
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Time
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Blocked
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Count
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Time
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Blocked
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFFF0003-0001-101A-A3C9-08002B2F49FB}\iexplore
Value: Flags
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.realarea.biz/?18
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.otherchance.com/?rid=239
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\hastalavista.it\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\archiviosex.net\www
Value: * Data: 0x2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.hastalavista.it/?rid=340
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sgrunt.biz\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\redfunny.com\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\otherchance.com\www
Value: * Data: 0x2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.otherchance.com/?rid=220
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\happyfile.net\http://www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\otherchance.com\http://www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\archiviosex.net\http://www
Value: * Data: 0x2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.extremeaccess.info/?rid=2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: îÝìæ×ÒÒÆÄÆÈØæ¡—×ÔÕžn±ÛÍ¡o¯
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\extremeaccess.info\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\contentdiscount.info\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\Ýìæ×ÒÒÆÄÆÈØæ¡—×ÔÕËÓîîô
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ÒÝâÙÓâØÍÜÖÒäã⢗×ÔÕËÓîîô
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\whatsnew.name\www
Value: * Data: 0x2
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\nodialup.name\www
Value: * Data: 0x2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: îÝìæ×ÒÒÆÄÆÈØæ¡—×ÔÕžn±ÛÍ¡q±
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.extremeaccess.info/?rid=4
- Key: Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\strafalcioni.com\www
Value: * Data: 0x2
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.otherchance.com/?rid=1
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.otherchance.com/?rid=149
- Key: SOFTWARE\Microsoft\Internet Explorer\main
Value: start page Data: www.otherchance.com/?rid=149
- Key: Software\Microsoft\Internet Explorer\Main
Value: Start Page Data: www.otherchance.com/?rid=340
: , . Sfonditalia .
Related pest: smitfraud c
Sfonditalia sgru.exe »
«
|
|
|
| | | | | |
© 2003-2012 Security Stronghold. .
|