Keyword: vb
3275 Total Search   |   Showing Results : 261 - 280
System Modifications This Backdoor adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Tgvf233\ku0dcvhDqz2BYQGxTgb1GoEkUv50cU222 u1ZNSXWMC33sKoa8XcwQKn38 =
System Modifications This Trojan adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ WARMFIKSTI\Affor1 EXCID = "Opkrve" This report is generated via an automated
" Other System Modifications This Trojan Spy adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ HAVRESU\UNAMENABLESTABEJSE MINATORYIMPERIUMCHRISTADELPHIANTWELVEMON
\Software\VB and VBA Program Settings\ shake-it\x It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ shake-it\x x = "x" Dropping Routine This worm drops the
\Software\VB and VBA Program Settings\ RTR\TR It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ RTR\TR RT = "{random characters}" HKEY_LOCAL_MACHINE\SYSTEM
\SOFTWARE\Classes\ winfiles\Shell\Open\ Command HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft Soft Debuger\Settings It adds the following registry entries: HKEY_CURRENT_USER\Software
Windows Server 2012.) It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ cdDef\Run It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA
\SOFTWARE\Classes\ winfiles\Shell\Open\ Command HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft Soft Debuger\Settings It adds the following registry entries: HKEY_CURRENT_USER\Software
\appsvc.exe:Zone.Identifier (Note: %System% is the Windows system folder, which is usually C:\Windows\System32.) It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft
" Other System Modifications This Trojan Spy adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ ede44130f6b10cf0b542c3825d8f5d81f65c5e29\Options Show Tips at
Other System Modifications This file infector adds the following registry entries as part of its installation routine: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Explorer\Process LO = "1
Windows system folder, which is usually C:\Windows\System32.) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ untukmu\version
is the Windows system folder, which is usually C:\Windows\System32.) Other System Modifications This Trojan adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings
Windows system folder, which is usually C:\Windows\System32.) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ untukmu\version
Windows system folder, which is usually C:\Windows\System32.) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ untukmu\version
Windows system folder, which is usually C:\Windows\System32.) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ untukmu\version
Server 2003, or C:\Users\{user name} on Windows Vista and 7.) It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft\Sysinternals It adds the following
following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ GUID\GUID It adds the following registry entries: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ Security Center UACDisableNotify = "0
deletes the following files: {malware path and file name}:zone.identifier It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft\Sysinternals It adds the
installation routine: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Explorer\Process LO = "1" HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\ Services\Schedule AtTaskMaxHours = "48" It adds the following