Otra Infeccion a traves de Internet Explorer
Publicado: Mié Jul 14, 2010 12:11 pm
Registry Keys Infected:
HKEY_CURRENT_USER\Software\avsoft (Trojan.Fraudpack) ->
HKEY_CURRENT_USER\Software\avsuite (Rogue.AntivirusSuite) ->
HKEY_LOCAL_MACHINE\SOFTWARE\avsoft (Trojan.Fraudpack) ->
HKEY_LOCAL_MACHINE\SOFTWARE\avsuite (Rogue.AntivirusSuite) ->
Registry Values Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tcatydua (Trojan.Downloader) ->
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Windows\System32\config\systemprofile\AppData\Local\qtxabqtui\bytxowvtssd.exe (Trojan.Downloader) ->
C:\Users\usuario\AppData\Local\Temp\OwAQoBJDEf.exe (Trojan.Hiloti) ->
C:\Users\usuario\AppData\Local\Temp\qPSgprjGCR.exe (Trojan.Agent.Gen) ->
C:\Windows\exe.exe (Trojan.Downloader) ->
C:\Users\usuario\AppData\Local\Temp\0.8787937183689969.exe (Trojan.Dropper) ->
HKEY_CURRENT_USER\Software\avsoft (Trojan.Fraudpack) ->
HKEY_CURRENT_USER\Software\avsuite (Rogue.AntivirusSuite) ->
HKEY_LOCAL_MACHINE\SOFTWARE\avsoft (Trojan.Fraudpack) ->
HKEY_LOCAL_MACHINE\SOFTWARE\avsuite (Rogue.AntivirusSuite) ->
Registry Values Infected:
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\tcatydua (Trojan.Downloader) ->
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Windows\System32\config\systemprofile\AppData\Local\qtxabqtui\bytxowvtssd.exe (Trojan.Downloader) ->
C:\Users\usuario\AppData\Local\Temp\OwAQoBJDEf.exe (Trojan.Hiloti) ->
C:\Users\usuario\AppData\Local\Temp\qPSgprjGCR.exe (Trojan.Agent.Gen) ->
C:\Windows\exe.exe (Trojan.Downloader) ->
C:\Users\usuario\AppData\Local\Temp\0.8787937183689969.exe (Trojan.Dropper) ->