..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%WIN.SYS32%\msctupd.exe"\"%WIN.SYS32%\msctupd.exe:*:Enabled:X:\WINDOWS\System32\msctupd.exe" |
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplore.exe\(Default) |
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Windows Media SP.2.7.7"\"%WIN.SYS32%\TROJAN-PSW.WIN32.LMIR.CJ.exe" |
..\Software\Microsoft\Windows\CurrentVersion\Run\\"wininet"\"%WIN.SYS32%\wininet.exe" |
..\Software\Microsoft\Windows\CurrentVersion\Run\\"artcom"\"%WIN.SYS32%\msctupd.exe" |
..\Software\Microsoft\Windows\CurrentVersion\Explorer\shellexecutehooks\"{081FE200-A103-11D7-A46D-C770E4459F2F}" |
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IPV6 NETWORK SUPPORT"\"%DAS.AU.LS%\TEMP\SVCHOST.EXE" |
..\Software\Microsoft\Windows\CurrentVersion\Run\\"SVCHOST GENERIC APPLICATION"\"%DAS.AU.LS%\TEMP\SVCHOST.EXE" |
..\Software\Microsoft\MSERV\(Default) |
..\Software\Classes\Clsid\{081FE200-A103-11D7-A46D-C770E4459F2F}\(Default) |