Код:
Registry Keys: 9
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [8e13049c81fa3600986ad0c5c14149b7],
PUP.Optional.BrowseFox.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}, , [8e13049c81fa3600986ad0c5c14149b7],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [049d8719611a33030e1f1302a2621ce4],
PUP.Optional.SweetPage.A, HKLM\SOFTWARE\WOW6432NODE\sweet-pageSoftware, , [a3fe68389ae1c17563b144da4bb9ee12],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, , [9a07e5bb7dfee0562c017d98e321649c],
PUP.Optional.BrowseMark.A, HKU\S-1-5-21-2630088265-666293794-904998807-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BrowseMark, , [bce54957502b270f5968c422748e1ee2],
PUP.Optional.BlockAndSurf.A, HKU\S-1-5-21-2630088265-666293794-904998807-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\BlockAndSurf, , [dbc6178978037bbb07944088a260649c],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2630088265-666293794-904998807-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [6f32465ae8933df925444ea539c957a9],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2630088265-666293794-904998807-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [267b9a06ee8df343502edf2a857f58a8],
Registry Values: 1
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2630088265-666293794-904998807-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0I2Z1H1E2V1R0O1O, , [267b9a06ee8df343502edf2a857f58a8]
Registry Data: 4
PUP.Optional.SweetPage.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.sweet-page.com/web/?type=ds&ts=1397228247&from=cor&uid=WDCXWD15EARS-00S8B1_WD-WCAVY439733397333&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1397228247&from=cor&uid=WDCXWD15EARS-00S8B1_WD-WCAVY439733397333&q={searchTerms}),,[acf56b35b3c8979fa4694e67f70d9769]
PUP.Optional.SweetPage.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.sweet-page.com/web/?type=ds&ts=1397228247&from=cor&uid=WDCXWD15EARS-00S8B1_WD-WCAVY439733397333&q={searchTerms}, Good: (www.google.com), Bad: (http://www.sweet-page.com/web/?type=ds&ts=1397228247&from=cor&uid=WDCXWD15EARS-00S8B1_WD-WCAVY439733397333&q={searchTerms}),,[d8c9920e1f5c2d097972d5d42ed6d828]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[7f22fea2522985b104a2f3c1b94bcb35]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Good: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Bad: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),,[732e1b854e2dcb6b9e08d7dd50b4946c]
Folders: 4
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService, , [dac7950b84f7f046cb1cbdedd42e6997],
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update, , [dac7950b84f7f046cb1cbdedd42e6997],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab, , [643d950bc8b395a1a6fbbd09d131d42c],
PUP.Optional.SupTab.A, C:\Users\DIMA\AppData\Roaming\SupTab, , [b8e9e4bc037888aeeeb47353ce349868],
Files: 25
Worm.AutoRun, D:\?????? ??????N????µ??N?N?\??N?????N??°????N??????°?????µ\????N?N?N?N? (??N?N???N????¶????!!!)\????N?N?N? 070409.rar, , [6a37d7c993e89f97469cc72e05fc11ef],
PUP.Optional.Superfish.A, C:\Users\DIMA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, , [8d14722edf9c88ae9cbf26b5ef13d52b],
PUP.Optional.Superfish.A, C:\Users\DIMA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, , [663bb7e996e571c5ec6f3c9fff03c43c],
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update\conf, , [dac7950b84f7f046cb1cbdedd42e6997],
PUP.Optional.SweetPage.A, C:\Users\DIMA\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: ( "startup_urls": [ "http://www.google.com/", "http://www.sweet-page.com/?type=hp&ts=1397228247&from=cor&uid=WDCXWD15EARS-00S8B1_WD-WCAVY439733397333" ],), ,[821ffca48cef89ad1880c421bd47db25]