Код:
Trojan.ProxyHijacker, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}, , [573ffb3c2178270f2bbd9fdea06232ce],
Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\Adobe PDF Editor.DynamicNS, , [573ffb3c2178270f2bbd9fdea06232ce],
Trojan.ProxyHijacker, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Adobe PDF Editor.DynamicNS, , [573ffb3c2178270f2bbd9fdea06232ce],
Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\WOW6432NODE\Adobe PDF Editor.DynamicNS, , [573ffb3c2178270f2bbd9fdea06232ce],
Trojan.ProxyHijacker, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{C379EAD1-CB34-4B09-AF6B-7E587F8BCD80}, , [573ffb3c2178270f2bbd9fdea06232ce],
PUP.Optional.MediaView, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha1738, , [afe755e2564359ddfdc9912d31d2639d],
PUP.Optional.MediaWatch, HKLM\SOFTWARE\WOW6432NODE\MediaWatchV1home836, , [692df93ef7a2a0967a52526c649fda26],
PUP.Optional.MediaView, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\GDMMOCHGFBPEPKBKMIFJOGGANFBOEGPJ, , [880e49ee3a5f87afccf9794533d09c64],
PUP.Optional.MediaWatch, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\MAGOIDOMCEIAPFIGFFCNOMDNDKFMOACL, , [7521cc6b465366d03497546aeb18e917],
PUP.Optional.Sanbreel, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\{9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw64, , [26708cab108952e422b075576c9743bd],
Backdoor.DarkComet.Trace, HKU\S-1-5-21-3496481427-1351271918-597440911-1000\SOFTWARE\DC3_FEXEC, , [9ff70532e9b02c0a96bb8662d42fb848],
PUP.Optional.MediaView, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\gdmmochgfbpepkbkmifjogganfboegpj|path, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1738\ch\MediaViewV1alpha1738.crx, , [880e49ee3a5f87afccf9794533d09c64]
PUP.Optional.MediaWatch, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\magoidomceiapfigffcnomdndkfmoacl|path, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home836\ch\MediaWatchV1home836.crx, , [7521cc6b465366d03497546aeb18e917]
PUP.Optional.VideoPlayer, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|[email protected], C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta731\ff, , [c6d05bdcc6d37bbb170529b129da4eb2]
PUP.Optional.MediaView, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|[email protected], C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1738\ff, , [851151e62079cd691ea97c4217eccd33]
PUP.Optional.MediaWatch, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|[email protected], C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home836\ff, , [e0b6c5723267d3633e90a41a15ee5aa6]
Hijack.ShellA.Gen, HKU\S-1-5-21-3496481427-1351271918-597440911-1000\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON|shell, C:\Users\User\AppData\Roaming\Windows Services\conhost.exe,explorer.exe, , [ff979c9b3c5d51e57d2e725b976b23dd]
PUP.Optional.ASPackage, C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage, , [a6f03502e1b8c3732b816a35df243cc4],
PUP.Optional.OffersWizard, C:\Program Files (x86)\Common Files\Config, , [593df93e2f6a42f4fd00e4e0f90a9868],
PUP.Optional.ASPackage, C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage\Configure.lnk, , [a6f03502e1b8c3732b816a35df243cc4],
PUP.Optional.OffersWizard, C:\Program Files (x86)\Common Files\Config\ver.xml, , [593df93e2f6a42f4fd00e4e0f90a9868],