Keyword: au
104672 Total Search   |   Showing Results : 501 - 520
ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" This report is generated via an automated analysis system. Worm:Win32/Vobfus.gen!P (Microsoft);
ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" Other Details This Trojan connects to the following possibly malicious URL: http://howdy.{BLOCKED
\WindowsUpdate\ AU NoAutoUpdate = "1" Other Details This Trojan connects to the following possibly malicious URL: http://howdy.{BLOCKED}n.com:60077/a.php This report is generated via an automated analysis system.
ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" This report is generated via an automated analysis system. Worm:Win32/Vobfus.EH (Microsoft);
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "6/4/2012" HKEY_CURRENT_USER\clsid\
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "6/4/2012" HKEY_CURRENT_USER\clsid\
entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\clsid\
following registry entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU
\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\ InprocServer32 ThreadingModel = "Both" Dropping Routine This Trojan drops the following files: @ n L Other
entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1
entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1
"0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1" HKEY_CURRENT_USER\Software\VB and VBA Program Settings\ x\z k = "06-08-2012" HKEY_CURRENT_USER\clsid\
entries: HKEY_CURRENT_USER\Software\Microsoft\ Windows\CurrentVersion\Explorer\ Advanced ShowSuperHidden = "0" HKEY_LOCAL_MACHINE\SOFTWARE\Policies\ Microsoft\Windows\WindowsUpdate\ AU NoAutoUpdate = "1