Keyword: vb
3275 Total Search   |   Showing Results : 161 - 180
\system32\userinit.exe, .) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microzoft\9ACCBD2F0B4F90F865BFCBDC6AD81C78BAECA887
\ Windows\CurrentVersion\Explorer\ ControlPanel\NameSpace\{00020D75-0000-0000-C000-0000000000AA} HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ FullHouse\01 It adds the following registry entries:
\Users\{user name} on Windows Vista and 7.) It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Microsoft\SysProgs It adds the following registry entries:
Components\{BE407CEC-DCE1-6A93-B49F-2C0ACC5CFE38} HKEY_CURRENT_USER\SOFTWARE\Microsoft\ Active Setup\Installed Components\{BE407CEC-DCE1-6A93-B49F-2C0ACC5CFE38} HKEY_CURRENT_USER\Software\VB and VBA Program
\Profiles\{user name} on Windows NT, and C:\Documents and Settings\{user name} on Windows 2000, XP, and Server 2003.) It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program
Update.exe" Other System Modifications This worm deletes the following files: {malware path and file name}:zone.identifier It adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program
\Software\VB and VBA Program Settings\ Windowss\system32 It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Windowss\system32 Start = "%System Root%\{malware file
\Software\VB and VBA Program Settings\ tob\x It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ tob\x x = "x" Dropping Routine This Trojan drops the following
7.) Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Win_Sys_Fix_2010\Data It adds the following registry entries:
following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ X-Power Technologies\MyTimeCode It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings
\Software\VB and VBA Program Settings\ tob\x It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ tob\x x = "x" Dropping Routine This Trojan drops the following
\Software\VB and VBA Program Settings\ Windowss\system32 It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ Windowss\system32 Start = "%System Root%\{malware file
HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ tob\x It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ tob\x x = "x" Dropping Routine This worm drops the
\Software\VB and VBA Program Settings\ SrvID\ID It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ SrvID\ID 3JP270M17P = "Ddos" HKEY_LOCAL_MACHINE\SYSTEM
\Software\VB and VBA Program Settings\ Windowss\system32 HKEY_CURRENT_USER\Software\Microsoft\ Visual Basic\6.0 It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings
\Software\VB and VBA Program Settings\ Windowss\system32 HKEY_CURRENT_USER\Software\Microsoft\ Visual Basic\6.0 It adds the following registry entries: HKEY_CURRENT_USER\Software\VB and VBA Program Settings
entry is Explorer.exe .) Other System Modifications This Trojan adds the following registry keys: HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ myapp\Setting It adds the following registry
HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ ml\pip HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ ml\cx HKEY_CLASSES_ROOT\Plugin.FlashPlayer\Clsid HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ Windows
dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Other System Modifications This worm adds the following registry keys: HKEY_CURRENT_USER\Software\VB and
Root% is the root folder, which is usually C:\. It is also where the operating system is located.) Other System Modifications This Trojan adds the following registry keys: HKEY_CURRENT_USER\Software\VB