SpywareRemove HomeHome Registry Key DatabaseRegistry Key Database Remove REGKEYSRemove REGKEYS


DEBUG: SQLSTRING = SELECT a.EntryName as EntryName FROM SpywareRemove.Spyware_defs_New as a, SpywareRemove.Spyware_New as b WHERE a.ParasiteName = b.Original_Name and b.LIVE = '1' and a.DefSection = 'REGKEYS' GROUP BY a.EntryName LIMIT 0,99

REGKEYS Description:

Regkey is simply an abbreviation for "registry key." Registry keys are the building blocks that make up your computer's registry. Your computer's registry is a database of settings for your system: it keeps track of your hardware, software, security, users, and preferences. Often, your registry can get clogged with unnecessary data and shortcuts from old applications. If your computer is running slowly and applications are showing error messages, your registry may need repairs. It's possible to edit your Windows registry by running regedit.exe in the Windows directory. However, editing your registry can cause irreversible damage. It's not recommended that you attempt to manually edit your registry unless you know exactly what you're doing. Instead, you should use a scanner to clean up your registry.

List of REGKEYS Registry Keys:

List of Registry Keys:

Total Records:  26928 Page Number:  1 Total Pages:  272
  >



* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TTGrfwruUws.exe
8522F9B3-38C5-4AA4-AE40-7401F1BBC851
HKEY_CURRENT_USER\Software\Antivirus
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D2D31EA-93B8-4EEA-9C88-B8347A33621F}\TypeLib
"%ProgramFiles%\LinkSafeness Software\LinkSafeness\LinkSafeness.exe -min"
"" = %AppData%\.exe
"carbinyl"="{8d8c2387-7f80-4022-9be6-43630a969558}"
"DisplayString"="New.netNameSpaceProvider"
"Enabled"="1"
"LibraryPath"="C:\ProgramFiles\NewDotNet\newdotnet6_38.dll"
"PestTrap"="C:\ProgramFiles\PestTrap\PestTrap.exe"
"ProviderId"="60-80-5F-3B-E1-1A-D4-11-96-6F-00-E0-18-98-1B-9E"
"Shell"=Explorer.exeC:\WINNT\System32\kernels32.exe
"StoresServiceClassInfo"="0"
"SupportedNameSpace"="12"
"System"=C:\WINNT\System32\sysprint.exe
"Version"="393254"
"{634be415-da12-496b-b89e-329b73c4807f}"="cam"
"{8d8c2387-7f80-4022-9be6-43630a969558}"="carbinyl" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8d8c2387-7f80-4022-9be6-43630a969558}
"{aed6f6a3-183c-488d-9f90-23db99f56e7f}"="apathies"
#HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
%Profiles%\Default User\Local Settings\Application Data\QQPlug
%Profiles%\Default User\Local Settings\Application Data\QQPlug\Img
%Profiles%\Default User\Local Settings\Application Data\QQPlug\Img\Mini
%Profiles%\Default User\Local Settings\Application Data\QQPlug\Img\PopMsg
%Profiles%\Default User\Local Settings\Application Data\QQPlug\Img\SysMsg
%ProgramFiles%=\ProgramFiles
%ProgramFiles%\WinSpywareProtect\unins000.dat
%ProgramFiles%\WinSpywareProtect\unins000.exe
%ProgramFiles%\WinSpywareProtect\WSPLauncher.exe
%System%dllcnfg.exe
%System%iexplore.exe
%System%svchost.exe:*:Enabled:svchost
%SystemDir%=\WINDOWS\SYSTEM32(Windows9x/ME/XP)
%Temp%\1.tmp
%UserProfile%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "WiniFighter"
%UserProfile%\Application Data\Adsl Software Limited\WinSpywareProtect\BASE\vbase.dat
%UserProfile%\Application Data\Adsl Software Limited\WinSpywareProtect\LOG\[TIMESTAMP].log
%UserProfile%\Application Data\Adsl Software Limited\WinSpywareProtect\program.ini
%UserProfile%\Application Data\Adsl Software Limited\WinSpywareProtect\WinSpywareProtect.exe
%UserProfile%\Application Data\SpyGuarder\base.dat
%UserProfile%\Application Data\SpyGuarder\base2.dat
%UserProfile%\Application Data\SpyGuarder\Desc.dat
%UserProfile%\Application Data\SpyGuarder\spline.dat
%UserProfile%\Application Data\SpyGuarder\SpyGuarder.ini
%UserProfile%\Desktop\Alpha Antivirus.lnk
%WinDir%=\WINDOWS(Windows9x/ME/XP)
%Windir%iprotect.exe
%Windows%services.exe
'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
(aa5e63f4-5df2-4b48-9c53-01f37d0174c3)
(Default) = "%System%\SoundPC32.dll"
(Default) = "%Windir%\system32"
(Default) = "0"
(Default) = "1.0"
(Default) = "BrowserHelper"
(Default) = "BrowserHelper.CBrowserHelper"
(Default) = "CBrowserHelper"
(Default) = "{00020424-0000-0000-C000-000000000046}"
(Default) = "{3AC4BF88-8BEB-4B87-AFBC-D090AB40B812}"
(Default) = "{A6E321E0-D1CC-4D57-8486-D9672D068B67}"
(HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon)
* "Name of Legit App" and "Legit App File Path" refers to an existing, legitimate application on your PC that the worm has chosen at random.
*\shellex\ContextMenuHandlers\CryptDrive
*\shellex\ContextMenuHandlers\Deus Cleaner
*\shellex\ContextMenuHandlers\ExplorerUPAS
*\shellex\ContextMenuHandlers\ExplorerWAS
*\shellex\ContextMenuHandlers\PrivacyShellExt
*\shellex\ContextMenuHandlers\ReliveHookDLL
*\shellex\ContextMenuHandlers\secure_del
*\shellex\ContextMenuHandlers\SFSShellExtension
*\shellex\ContextMenuHandlers\System Protector
*\shellex\ContextMenuHandlers\unvirex_contextscan
*\shellex\ContextMenuHandlers\VRShlExt
*\shellex\ContextMenuHandlers\WinZixManager
.2PARTY
.b3d
.b3dini
.b3ds
.CNTY2
.defaultsoftwareflyswat
.DEFAULTSoftwareMicrosoftWindowsCurrentVersion
.DefaultSOFTWAREMicroSoftWindowsCurrentVersionRunwinprot.exe
.DefaultSoftwareMirabilisICQAgentAppsICQAccel
.defaultsoftwareweb3000.com
.default\software\flyswat\\
.DEFAULT\Software\Microsoft\Internet Explorer\Explorer Bars\8023A3E7-AB95-4C23-8313-0BE9842CC70E\\
.DEFAULT\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\645FD3BC-C314-4F7A-9D2E-64D62A0FDD78\
.default\software\microsoft\internet explorer\toolbar\webbrowser\c107f7a0-b489-11d2-b2fe-005004055bfb\
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\COM Service
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\autoload
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\jkdfj94kgdftdf
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\ntuser
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\Plook
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\run\systemtr.exe\
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\_mzu_stonedrv8
.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run\_mzu_stonedrv8



Total Records:  26928 Page Number:  1 Total Pages:  272
  >

Search by Letter:
0  1  2  3  4  5  6  7  8  9  A  B  C  D  E  F  G  H  I  J  K  L  M  N  O  P  Q  R  S  T  U  V  W  X  Y  Z  All 


Search for Parasites: