Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 2
Registry Data Items Infected: 5
Folders Infected: 0
Files Infected: 11
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_CLASSES_ROOT\.exe\shell\open\command\(default) (Hijack.ExeFile) -> Value: (default) -> No action taken.
HKEY_CLASSES_ROOT\pezfile\shell\open\command\(default) (Rogue.MultipleAV) -> Value: (default) -> No action taken.
Registry Data Items Infected:
HKEY_CLASSES_ROOT\.exe\(default) (Hijacked.exeFile) -> Bad: (pezfile) Good: (exefile) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{25B4EF13-F7A3-47A5-8B29-EE862150BE66}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{39A69A42-31A8-4256-BF7F-64607B3E4741}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{AD0C62B4-8EBF-4331-99D6-C4041B957D3D}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
c:\Users\Keith\AppData\Roaming\microsoft\svchost.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Roaming\microsoft\Windows\shell.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Local\Temp\1187.7056201924984.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Roaming\microsoft\stor.cfg (Malware.Trace) -> No action taken.
c:\Users\karnjanarat\Desktop\internet security suite.lnk (Rogue.Link) -> No action taken.
c:\explorer.exe (Worm.AutoRun) -> No action taken.
c:\Users\Keith\AppData\Local\Temp\svchost.exe (Trojan.Agent) -> No action taken.
c:\Users\Keith\local settings\application data\opRSK (Malware.Trace) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\internet explorer\quick launch\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\Windows\start menu\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\Windows\start menu\Programs\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.