UDS:DangerousObject.Multi.Generic

UDS:DangerousObject.Multi.Generic说明

UDS:DangerousObject.Multi.Generic是一种恶意软件威胁,通常在损坏的PC上的多个位置同时发现该威胁。报告次数最多的位置UDS:DangerousObject.Multi.Generic自身位于“文档和设置”,通常是C驱动器的组件。 UDS:DangerousObject.Multi.Generic很难通过许多安全应用程序从受影响的计算机中查找和卸载。 UDS:DangerousObject.Multi.Generic的检测仅可用于添加到排除项,忽略,浏览包含该项的位置或可能产生威胁描述。 PC用户要么被带到空文件夹,要么无法访问该对象。

别名: JS.Downloader.BSO [Ikarus], VBS/Dldr.Rowm.A, VBS.Siggen.7444 [DrWeb], UnclassifiedMalware [Comodo], Script.Trojan.Suspic.Pdcl, Trojan.Script.Siggen.degalj, Trojan.Script.Suspic.gen [Kaspersky], Script.Trojan.Agent.FZPT9I [GData], Win.Worm.Agent-4608 [ClamAV], JS:Downloader-BSP [Trj] [Avast], VBS/Agent.NCO, VBS.Downloader.Trojan [Symantec], Trojan.MSIL.Agent.QOJ, MSIL/Agent.QOJ!tr [Fortinet], Trojan/Win32.Agent [AhnLab-V3].

技术信息

文件系统详情

UDS:DangerousObject.Multi.Generic创建以下文件:
# 文件名 大小 MD5 检测计数
1 %PROGRAMFILES(x86)%\US Media Capital\SearchPro Tools\stoolsapp.exe\stoolsapp.exe 5,939,712 58a1c4fc8b94747135d1991164630e29 389
2 C:\Users\Julia\AppData\Roaming\zn2j38q.exe 8,305,193 efff7a5e628a31d25c6b585830019e72 134
3 %ALLUSERSPROFILE%\039057420843.exe\039057420843.exe 2,440,208 79840cef19cd3e601cc8823e60852928 55
4 a621a468ca6c4bb2436291011fcc83d6 1,334,268 a621a468ca6c4bb2436291011fcc83d6 51
5 %SYSTEMDRIVE%\users\hybr!d meyers\desktop\.crack.exe 4,519,424 6b1f4b9ac908f4b3a6b606fab6e6d952 47
6 c:\programdata\estsoft\alyac\tmparc\tmp00000367\tmp000595e0 4,638,700 dca5602098261ace23c7457abaea1eab 43
7 %ALLUSERSPROFILE%\EWYH4O7U0X.exe\EWYH4O7U0X.exe 1,890,008 44e89d1e66c6a7ce8dcb634264508bb4 26
8 C:\Users\Yiğit BOZYURT\AppData\Local\Z1RrSl.exe 2,188,288 7fc2b9b7ecc33869f630b07c99a37564 25
9 C:\Users\Toni\Downloads\4 In 1.exe 862,208 f7314648f5a262da1b2f723104b1dfb1 25
10 C:\Users\Yuriy\PowerShells.exe 485,730 47f403f9236a2a76b9fa2e6ea66815ff 21
11 %COMMONPROGRAMFILES(x86)%\uycyum.exe\uycyum.exe 3,792,896 d305114f41791f5e61606584e37a95e2 21
12 C:\ProgramData\W29P0WP6J7.exe 2,418,072 4fe7b3ba0691aa664183ab141c801ab4 17
13 C:\Users\My Documents\AppData\Roaming\WinUp\WinUp.exe 3,241,984 d1f033658fe09080434955fdf6d521cc 14
14 c:\windows\microsoft.net\framework64\v3.5\mscorsvw.exe 1,920,512 3619c5e3a7acc0761cef023631782cbd 12
15 C:\Users\RICARDO\AppData\Roaming\Plan\javac.exe 1,088,512 dbeb1f51a6c47276163742717d79e413 12
16 C:\Program Files (x86)\Scjm\thwtovkjc44.exe 816,344 0d033a274941308ccc748e7f2ed7c88c 9
17 C:\Users\killc\Desktop\ytool\LeagueTags-win32-ia32\A\PSN Gift Card Generator.exe 1,610,291 6c38a52e304efdf189170ff489f2678a 9
18 C:\Users\Portable\chromecheck\chromecheck.exe 253,440 03de5bcd44a459fdcfd353580c31f385 8
19 %SYSTEMDRIVE%\Users\User\AppData\Roaming\yutr.exe\yutr.exe 646,144 f441775e5bd37fe4455a43be6b7e323c 8
20 %SYSTEMDRIVE%\users\Дима\appdata\local\adobe\ppapi\5b48e443-ed1a-479a-9890-fe765c59ffe9\50d0ddba-e12f-411e-a964-582ef5f176b6.exe\50d0ddba-e12f-411e-a964-582ef5f176b6.exe 916,626 b8c4126d94205070b713f2cde13e1782 7
21 %SYSTEMDRIVE%\users\chrisromero\appdata\roaming\microsoft\windows\start menu\programs\startup\key.exe 3,325,067 8db75f76c2cc97fdf7c0ec348074e19d 7
22 c:\windows\serviceprofiles\networkservice\appdata\local\microsoft\windows\temporary internet files\content.ie5\nsmys5nx\jp[1].exe 130,560 f1daa519be73e1657d7797ceab6c9428 6
23 c:\users\mediarulez\downloads\setup(1).exe 4,423,168 b2ecef674118843655c54e79c1df2200 6
24 C:\Users\asus\AppData\Roaming\Strikes\ldr_bs_02022020.exe 2,535,727 1c6e5eb0b450d58e91a1f555ac17814b 5
25 C:\Windows\sbnet\ShowBehind.exe 183,296 19af3429cbcacc1e1b8f79731f2bbb30 5
26 C:\Users\Administrador\AppData\Roaming\Intel\Wireless\CrashDumps\DeviceProperties.exe 1,087,246 7debf3dd6f505c43dde7fd99f349051c 5
27 %SYSTEMDRIVE%\Users\narn7\AppData\Roaming\Strikes\ldr_bs_05_05.exe\ldr_bs_05_05.exe 2,678,590 801963ed1917cc8635867838c1f8d72f 1
28 df6fa85ee2a3a348d9b85481c11340bd 20,992 df6fa85ee2a3a348d9b85481c11340bd 0
更多文件

注册表详情

UDS:DangerousObject.Multi.Generic创建以下注册表条目:
Directory
%allusersprofile%\application data\cbnjsc
%ALLUSERSPROFILE%\Application Data\Process
%ALLUSERSPROFILE%\Application Data\subfolder
%ALLUSERSPROFILE%\Application Data\Time Manager
%ALLUSERSPROFILE%\cbnjsc
%ALLUSERSPROFILE%\chromebrowser
%ALLUSERSPROFILE%\clend
%ALLUSERSPROFILE%\CreativeAudio
%ALLUSERSPROFILE%\DataLoadUpdate
%ALLUSERSPROFILE%\dellhd
%ALLUSERSPROFILE%\ErrorResponder
%ALLUSERSPROFILE%\gpuoptimizer
%ALLUSERSPROFILE%\handlersupport
%ALLUSERSPROFILE%\ig stories downloader
%ALLUSERSPROFILE%\java runtime service
%ALLUSERSPROFILE%\javaupdate
%ALLUSERSPROFILE%\padur
%ALLUSERSPROFILE%\Process
%ALLUSERSPROFILE%\softwaredata
%ALLUSERSPROFILE%\subfolder
%ALLUSERSPROFILE%\SystemNetwork
%ALLUSERSPROFILE%\Time Manager
%ALLUSERSPROFILE%\UBlockPlugin
%ALLUSERSPROFILE%\xgrruglcri
%ALLUSERSPROFILE%\ybetnetrosh
%APPDATA%\AdobeUpdater
%appdata%\AppVPolicy
%APPDATA%\CalAdmin
%APPDATA%\chome_exe
%appdata%\Core Temp
%APPDATA%\device association helper
%APPDATA%\DRPNano
%APPDATA%\ethr32
%appdata%\GoogleHandler
%appdata%\GoogleUpp
%APPDATA%\hnext
%APPDATA%\HttpFilter
%APPDATA%\javaupdate
%APPDATA%\JavaUpdaterV118
%APPDATA%\McAfeeSecurity
%appdata%\Microsoft\Microsoft\m
%appdata%\microsoft\Windows\start menu\Programs\Startupx
%APPDATA%\Microsoft\Windows\Start Menu\Programs\WallpaperBoard
%appdata%\MSOCache
%APPDATA%\NewApp
%APPDATA%\NisS
%APPDATA%\nvid
%APPDATA%\NVIDIADriver
%APPDATA%\nvidiapl
%APPDATA%\nvidiaplugins
%APPDATA%\P4U8M5X3-N0E7-O7S5-B1Y3-J7Q6J4S0G6G5
%APPDATA%\Path
%APPDATA%\PrivacyTools
%APPDATA%\qfabgqva
%appdata%\RailSoft
%APPDATA%\RAVBg64
%APPDATA%\realtek sound blaster
%appdata%\realteknb
%APPDATA%\renard
%APPDATA%\smart clock
%appdata%\strikes
%APPDATA%\SunJavaUpdate
%appdata%\svsool
%APPDATA%\TempFolderPath
%APPDATA%\terminal
%appdata%\tspro manager
%APPDATA%\UBlockPlugin
%APPDATA%\vip72 (x86)
%APPDATA%\VP
%APPDATA%\WinBootSystem
%APPDATA%\wisinternal
%APPDATA%\yjfzjgnn
%HOMEDRIVE%\Cache\All Users\{90120000-0019-0816-0000-0000000FF1CE}-C
%HOMEDRIVE%\DocumentssandsSettings
%homedrive%\happynewborn
%HOMEDRIVE%\netflix party
%HOMEDRIVE%\nvidiareatek
%HOMEDRIVE%\Systemsolumsnformation
%HOMEDRIVE%\win
%LOCALAPPDATA%\_foldernamelocalappdata_
%LOCALAPPDATA%\AdobeUpdater
%LOCALAPPDATA%\browserupdphenix
%LOCALAPPDATA%\hili
%localappdata%\icloudpi
%LOCALAPPDATA%\intelmx
%LOCALAPPDATA%\Path
%LOCALAPPDATA%\wallpaperboard
%localappdata%\WinNetCore
%PROGRAMFILES%\aezsa
%PROGRAMFILES%\ahp
%PROGRAMFILES%\aisj
%PROGRAMFILES%\america
%PROGRAMFILES%\azds
%PROGRAMFILES%\big
%PROGRAMFILES%\bistout
%PROGRAMFILES%\bitoura
%PROGRAMFILES%\bolliw
%PROGRAMFILES%\bollow
%PROGRAMFILES%\bouma
%PROGRAMFILES%\Brek
%PROGRAMFILES%\bzsk
%PROGRAMFILES%\calm
%PROGRAMFILES%\castelle
%PROGRAMFILES%\Charkoucha
%PROGRAMFILES%\chome_exe
%PROGRAMFILES%\cleans
%PROGRAMFILES%\cnus
%PROGRAMFILES%\cole
%PROGRAMFILES%\coromiumsoftware\xml\system
%PROGRAMFILES%\cvbn
%PROGRAMFILES%\cwijz
%PROGRAMFILES%\cyclique
%PROGRAMFILES%\Cyper
%PROGRAMFILES%\decapeta
%PROGRAMFILES%\Dod
%PROGRAMFILES%\dodw
%PROGRAMFILES%\doleres
%PROGRAMFILES%\doles
%PROGRAMFILES%\fdgr
%PROGRAMFILES%\fizr
%PROGRAMFILES%\frunis
%PROGRAMFILES%\fyunzip
%PROGRAMFILES%\fzef
%PROGRAMFILES%\gatour
%PROGRAMFILES%\gdffv
%PROGRAMFILES%\ghjk
%PROGRAMFILES%\gisof
%PROGRAMFILES%\gjed
%PROGRAMFILES%\goef
%PROGRAMFILES%\goqilekd
%PROGRAMFILES%\gsdf
%programfiles%\guitt
%PROGRAMFILES%\gus
%PROGRAMFILES%\Gyunr
%PROGRAMFILES%\hadoop
%PROGRAMFILES%\hfggb
%PROGRAMFILES%\hps
%PROGRAMFILES%\htee
%PROGRAMFILES%\hyde
%PROGRAMFILES%\hzs
%ProgramFiles%\Inb\spok\bin
%PROGRAMFILES%\innovative solutions\intervpn
%PROGRAMFILES%\inter vpn
%PROGRAMFILES%\intervpn
%PROGRAMFILES%\ioio
%PROGRAMFILES%\kabbout
%PROGRAMFILES%\kattous
%PROGRAMFILES%\Kituv\read
%PROGRAMFILES%\laddenr
%PROGRAMFILES%\max
%PROGRAMFILES%\minoucha
%PROGRAMFILES%\Mirales\pack
%PROGRAMFILES%\moch
%PROGRAMFILES%\narkou
%PROGRAMFILES%\nikes
%PROGRAMFILES%\notri
%PROGRAMFILES%\oilk
%PROGRAMFILES%\opura
%PROGRAMFILES%\orchard
%PROGRAMFILES%\plets
%PROGRAMFILES%\provas
%PROGRAMFILES%\pythons
%PROGRAMFILES%\Razer\Cortex\win
%PROGRAMFILES%\reduce
%PROGRAMFILES%\rine
%PROGRAMFILES%\scurity
%PROGRAMFILES%\sdnsv
%PROGRAMFILES%\sdvsdv
%PROGRAMFILES%\sdws
%PROGRAMFILES%\shift
%programfiles%\shrfuew
%PROGRAMFILES%\slimer
%PROGRAMFILES%\smoutar
%PROGRAMFILES%\sql
%PROGRAMFILES%\stream
%PROGRAMFILES%\subtar
%PROGRAMFILES%\sup
%PROGRAMFILES%\systimizer
%PROGRAMFILES%\tanrug
%PROGRAMFILES%\taras\org
%PROGRAMFILES%\ticar
%PROGRAMFILES%\toptes
%PROGRAMFILES%\torrto
%PROGRAMFILES%\traj
%PROGRAMFILES%\trobif
%PROGRAMFILES%\truck
%PROGRAMFILES%\tspro manager
%PROGRAMFILES%\tyfhgbv
%PROGRAMFILES%\ultimatule
%PROGRAMFILES%\verses
%PROGRAMFILES%\vgaoe
%PROGRAMFILES%\vik
%PROGRAMFILES%\Vinds
%PROGRAMFILES%\vkjd
%PROGRAMFILES%\vnsk
%PROGRAMFILES%\vxids
%PROGRAMFILES%\wkv
%PROGRAMFILES%\WW
%PROGRAMFILES%\wxe
%PROGRAMFILES%\xinsuzip
%PROGRAMFILES%\zabita
%PROGRAMFILES%\zefjcj
%PROGRAMFILES%\zeglame
%PROGRAMFILES%\zok
%PROGRAMFILES%\zufj
%PROGRAMFILES(x86)%\ahp
%PROGRAMFILES(x86)%\america
%PROGRAMFILES(x86)%\aokc
%PROGRAMFILES(x86)%\azds
%PROGRAMFILES(x86)%\bistout
%PROGRAMFILES(x86)%\bitoura
%PROGRAMFILES(x86)%\bolliw
%PROGRAMFILES(x86)%\bouma
%PROGRAMFILES(x86)%\Brek
%PROGRAMFILES(x86)%\busa
%PROGRAMFILES(x86)%\bzsk
%PROGRAMFILES(x86)%\calm
%PROGRAMFILES(x86)%\castelle
%PROGRAMFILES(x86)%\Charkoucha
%PROGRAMFILES(x86)%\chome_exe
%PROGRAMFILES(x86)%\cleans
%PROGRAMFILES(x86)%\cnus
%PROGRAMFILES(x86)%\cole
%PROGRAMFILES(x86)%\coromiumsoftware\xml\system
%PROGRAMFILES(x86)%\cvbn
%PROGRAMFILES(x86)%\cyclique
%PROGRAMFILES(x86)%\Cyper
%PROGRAMFILES(x86)%\decapeta
%PROGRAMFILES(x86)%\Dod
%PROGRAMFILES(x86)%\dodw
%PROGRAMFILES(x86)%\doleres
%PROGRAMFILES(x86)%\doles
%PROGRAMFILES(x86)%\fdgr
%PROGRAMFILES(x86)%\fizr
%PROGRAMFILES(x86)%\frunis
%PROGRAMFILES(x86)%\fyunzip
%PROGRAMFILES(x86)%\gatour
%PROGRAMFILES(x86)%\gdffv
%PROGRAMFILES(x86)%\ghjk
%PROGRAMFILES(x86)%\gisof
%PROGRAMFILES(x86)%\gjed
%PROGRAMFILES(x86)%\goqilekd
%PROGRAMFILES(x86)%\gsdf
%programfiles(x86)%\guitt
%PROGRAMFILES(x86)%\gus
%PROGRAMFILES(x86)%\Gyunr
%PROGRAMFILES(x86)%\hadoop
%PROGRAMFILES(x86)%\hfggb
%PROGRAMFILES(x86)%\hps
%PROGRAMFILES(x86)%\htee
%PROGRAMFILES(x86)%\hyde
%PROGRAMFILES(x86)%\hzs
%ProgramFiles(x86)%\Inb\spok\bin
%PROGRAMFILES(x86)%\innovative solutions\intervpn
%PROGRAMFILES(x86)%\inter vpn
%PROGRAMFILES(x86)%\intervpn
%PROGRAMFILES(x86)%\ioio
%PROGRAMFILES(x86)%\kabbout
%PROGRAMFILES(x86)%\kattous
%PROGRAMFILES(x86)%\Kituv\read
%PROGRAMFILES(x86)%\laddenr
%PROGRAMFILES(x86)%\max
%PROGRAMFILES(x86)%\minoucha
%PROGRAMFILES(x86)%\Mirales\pack
%PROGRAMFILES(x86)%\moch
%PROGRAMFILES(x86)%\narkou
%PROGRAMFILES(x86)%\nikes
%PROGRAMFILES(x86)%\notri
%PROGRAMFILES(x86)%\oilk
%PROGRAMFILES(x86)%\opura
%PROGRAMFILES(x86)%\orchard
%PROGRAMFILES(x86)%\plets
%PROGRAMFILES(x86)%\provas
%PROGRAMFILES(x86)%\pythons
%PROGRAMFILES(x86)%\Razer\Cortex\win
%PROGRAMFILES(x86)%\reduce
%PROGRAMFILES(x86)%\scurity
%PROGRAMFILES(x86)%\sdnsv
%PROGRAMFILES(x86)%\sdvsdv
%PROGRAMFILES(x86)%\sdws
%PROGRAMFILES(x86)%\shift
%programfiles(x86)%\shrfuew
%PROGRAMFILES(x86)%\slimer
%PROGRAMFILES(x86)%\smoutar
%PROGRAMFILES(x86)%\sql
%PROGRAMFILES(x86)%\stream
%PROGRAMFILES(x86)%\subtar
%PROGRAMFILES(x86)%\sup
%PROGRAMFILES(x86)%\systimizer
%PROGRAMFILES(x86)%\tanrug
%PROGRAMFILES(x86)%\taras\org
%PROGRAMFILES(x86)%\ticar
%PROGRAMFILES(x86)%\toptes
%PROGRAMFILES(x86)%\torrto
%PROGRAMFILES(x86)%\traj
%PROGRAMFILES(x86)%\trobif
%PROGRAMFILES(x86)%\tspro manager
%PROGRAMFILES(x86)%\tyfhgbv
%PROGRAMFILES(x86)%\ultimatule
%PROGRAMFILES(x86)%\verses
%PROGRAMFILES(x86)%\vgaoe
%PROGRAMFILES(x86)%\Vinds
%PROGRAMFILES(x86)%\vkjd
%PROGRAMFILES(x86)%\vnsk
%PROGRAMFILES(x86)%\vxids
%PROGRAMFILES(x86)%\wkv
%PROGRAMFILES(x86)%\WW
%PROGRAMFILES(x86)%\wxe
%PROGRAMFILES(x86)%\xinsuzip
%PROGRAMFILES(x86)%\zabita
%PROGRAMFILES(x86)%\zefjcj
%PROGRAMFILES(x86)%\zeglame
%PROGRAMFILES(x86)%\zufj
%TEMP%\appventvirtualization
%Temp%\lstemp
%UserProfile%\AppData\LocalLow\xHLLMjruyIoAv
%UserProfile%\Local Settings\Application Data\_foldernamelocalappdata_
%UserProfile%\Local Settings\Application Data\browserupdphenix
%USERPROFILE%\sadsg
%USERPROFILE%\scksk
%userprofile%\scr\scr
%USERPROFILE%\subfolder
%WINDIR%\trustedlogos
Regexp file mask
%ALLUSERSPROFILE%\[RANDOM CHARACTERS].scr
%ALLUSERSPROFILE%\adobe.js
%ALLUSERSPROFILE%\analporn.dll
%ALLUSERSPROFILE%\Application Data\[RANDOM CHARACTERS].scr
%ALLUSERSPROFILE%\Application Data\adobe.js
%ALLUSERSPROFILE%\Application Data\analporn.dll
%allusersprofile%\application data\temp[RANDOM CHARACTERS].exe
%allusersprofile%\application data\windows.bat
%allusersprofile%\directxplayer\directxreplacer.exe
%allusersprofile%\images.exe
%ALLUSERSPROFILE%\load32.exe
%allusersprofile%\putty.exe
%ALLUSERSPROFILE%\reducenv.exe
%ALLUSERSPROFILE%\reductor.exe
%allusersprofile%\slidetoshutdown64.exe
%allusersprofile%\temp[RANDOM CHARACTERS].exe
%allusersprofile%\windows.bat
%appdata%\3425erf.exe
%appdata%\[RANDOM CHARACTERS].ps1
%APPDATA%\[RANDOM CHARACTERS].scr
%APPDATA%\[RANDOM CHARACTERS].vbs
%APPDATA%\Autorunner.exe
%appdata%\autostarter.exe
%APPDATA%\cbvbfxcb.exe
%appdata%\certificates\sfxsv32.exe
%APPDATA%\Certificates\sishost.exe
%appdata%\chromium caster.exe
%appdata%\cwrcdr4.exe
%appdata%\cyqdglmiqs.exe
%APPDATA%\d+.tmp.JS
%APPDATA%\DAS.exe
%APPDATA%\dgbsz.exe
%appdata%\dmcache\hidechrome.txt
%appdata%\dobi.exe
%appdata%\erfd.exe
%APPDATA%\fins.exe
%appdata%\firefox utility.exe
%appdata%\fredwd.exe
%appdata%\ghnnbgv.exe
%appdata%\ground.exe
%appdata%\gtreefcd.exe
%appdata%\hbtgvrf.exe
%appdata%\iamazon.exe
%appdata%\juirtjcfd.exe
%appdata%\launcher_091.exe
%appdata%\microsoft onedrive.exe
%appdata%\microsoft\javaupdate.exe
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\CARTA-COBRO.vbs
%AppData%\Microsoft\Windows\Start Menu\Programs\Startup\d+.tmp.JS
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\FACTUR[RANDOM CHARACTERS].VBS
%appdata%\microsoft\windows\start menu\programs\startup\intelrapid.lnk
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\Nvideo_driver.js
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\RuntimeBroker.exe
%appdata%\microsoft\windows\start menu\programs\startup\sistema operacional.exe
%appdata%\microsoft\windows\start menu\programs\startup\system[RANDOM CHARACTERS].vbs
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\Worm.vbs
%appdata%\mozillamaintenanceserviced\mozillamaintenanceserviced.exe
%appdata%\msshell32
%APPDATA%\paint.exe
%appdata%\payerss.ini
%APPDATA%\Pilot.exe
%appdata%\rewrtrbvfd.exe
%appdata%\rtbvfdcred.exe
%appdata%\rtgefwd.exe
%appdata%\rv4vrcf34g.exe
%appdata%\ry9mumh1.exe
%appdata%\search.exe
%APPDATA%\SSJK.exe
%APPDATA%\start.exe
%APPDATA%\svcs.exe
%appdata%\tbgvrfcedxs.exe
%APPDATA%\Telegram.exe
%appdata%\windiver.dll
%APPDATA%\w{3,4}.tmp.exe
%appdata%\yhgtrfed.exe
%HOMEDRIVE%\[NUMBERS].exe
%LOCALAPPDATA%\GenericTools\DocBlue.exe
%LOCALAPPDATA%\GenericTools\SiSoft.exe
%LOCALAPPDATA%\GenericTools\WebSoft.exe
%LOCALAPPDATA%\protect.exe
%LOCALAPPDATA%\schost.exe
%localappdata%\soloing.exe
%localappdata%\tempserver[NUMBERS].exe
%localappdata%\w{1,3}.exe
%programfiles%\bubas\setupx.exe
%programfiles%\copa\dowloadx.exe
%programfiles%\fkl\emsvc.exe
%programfiles%\love\setx.exe
%programfiles%\new year\setupx.exe
%programfiles%\pictures\[NUMBERS].exe
%programfiles%\xedd\setupx.exe
%programfiles(x86)%\bubas\setupx.exe
%programfiles(x86)%\copa\dowloadx.exe
%programfiles(x86)%\fkl\emsvc.exe
%programfiles(x86)%\love\setx.exe
%programfiles(x86)%\new year\setupx.exe
%programfiles(x86)%\pictures\[NUMBERS].exe
%programfiles(x86)%\xedd\setupx.exe
%PUBLIC%\[RANDOM CHARACTERS].scr
%PUBLIC%\w{3,4}.exe
%SYSTEMDRIVE%\launcher.bat
%temp%\[RANDOM CHARACTERS]explorer.exe
%temp%\fro.dfx
%temp%\giulkj.exe
%temp%\gocf.ksv
%TEMP%\seescenicelfu.exe
%TEMP%\sysqem[RANDOM CHARACTERS].exe
%USERPROFILE%\[RANDOM CHARACTERS].scr
%USERPROFILE%\AdobeUpdate.exe
%UserProfile%\Local Settings\Application Data\protect.exe
%userprofile%\local settings\application data\soloing.exe
%USERPROFILE%\winlog.exe
%windir%\d.exe
%WINDIR%\Debug\Publisher\Windows\chromes.exe
%windir%\fonts\del.ps1
%windir%\fonts\sasd.bat
%WINDIR%\Fonts\sqlup32bit.exe
%WINDIR%\pla\system\chromes.exe
%windir%\system32\appidlua.exe
%windir%\system32\aticdxxfwd.dat
%windir%\system32\drivers\etc\chromes.exe
%WINDIR%\System32\skype.lnk
%windir%\syswow64\appidlua.exe
%windir%\syswow64\aticdxxfwd.dat
%windir%\syswow64\groupsitka.exe
%WINDIR%\SysWOW64\skype.lnk
%windir%\windows api service.exe
File name without path
34efcdsax.exe
45grefcwd.exe
45rfedc.exe
4rfewgre.exe
5trevtrf.exe
[activator].exe
beleza.exe
brtvecet4re.exe
brtvr3ef.exe
Criptografado.exe
Crooked.exe
ervdetbrvyb.exe
f3eedrgvf.exe
foto sexy.vbs
h5t4grfed.exe
hygtrf4ed.exe
intervpnmix.exe
intervpnmix2.exe
intervpnpub2.exe
LifeSuck.exe
minecraft.exe.rar.vbs
n.vbs
nektflix.exe
New Folder (2).exe
nyumyumnf.exe
Oh Shit.exe
school love and friends.exe
sdruyjh.exe
seescenicelfq.exe
serivce.vbs
Serives32.vbs
takmgr.exe
Windows.Graphics.Printing.Workflow.exe
WinDriv.url
XOU Clock.scr
yfbkcxju.exe
Registry key
Software\Cryptbot Software
Software\Inter Vpn
Software\Microsoft\GcServices
SOFTWARE\MICROSOFT\GOCFK
Software\Microsoft\Windows\CurrentVersion\Run\Local Security Authority Subsystem Service
Software\Picture\rf44rfed
SOFTWARE\TrustedLogos
Uninstaller
{20A12947-909E-45F0-957B-8C23100E11A1}_is1
{5082A4DA-0AA4-4C83-803B-1768F904FDB6}_is1
{5BAD1C8A-1F21-4AF6-B1F1-A51AEC0AF2D4}_is1
{97BF2403-89E3-46B1-A06F-78737FC8EC68}_is1
{A85872A1-C7D3-48C2-8E83-8CFDE1A90A97}_is1
{B6AFEAB8-DEEA-4147-8E70-D7733B5F7548}_is1
{D6EDC6EC-5CF5-4407-9E7E-1E32326B68A0}_is1

网站免责声明

Enigmasoftware.com与本文提到的恶意软件创建者或发行者没有关联、赞助或拥有。不要以任何方式将本文与推广或认可恶意软件相关联,将其误解或混淆。我们的目的是提供信息,以指导计算机用户如何借助SpyHunter和/或本文提供的手动删除说明来检测并最终从计算机中删除恶意软件。

本文按“原样”提供,仅用于教育信息。按照本文的任何说明进行操作,即表示您同意受免责声明的约束。我们不保证本文将帮助您完全消除计算机上的恶意软件威胁。间谍软件定期更改,因此,很难通过手动方式完全清洁受感染的计算机。

发表评论

请不要将此评论系统用于支持或结算问题。 若要获取SpyHunter技术支持,请通过SpyHunter打开技术支持问题直接联系我们的技术团队。 有关结算问题,请参考“结算问题?”页面。 有关一般查询(投诉,法律,媒体,营销,版权),请访问我们的"查询和反馈"页面。