Keyword: usoj_bho.bb
5067 Total Search   |   Showing Results : 1 - 20
   Next  
This worm arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It disables Task Manager, Registry Editor, and Folder
This Adware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Arrival Details This Adware arrives on a system as a
%Start Menu%\Programs\wxDfast Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every time Internet Explorer is used by adding the following registry keys:
name}\Start Menu on Windows 2000, XP, and Server 2003.) Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every time Internet Explorer is used by adding the
and ME, C:\WINNT\Profiles\{user name} on Windows NT, and C:\Documents and Settings\{user name} on Windows 2000, XP, and Server 2003.) Autostart Technique This Trojan registers itself as a BHO to ensure
file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Installation This Trojan creates the following folders: %Program Files%\BHO Plugin (Note:
and Server 2003.) Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every time Internet Explorer is used by adding the following registry keys:
This adware arrives on a system as a file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. It arrives as a component bundled with malware/grayware
enable its automatic execution at every system startup: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ Windows\CurrentVersion\Run smsss = "%Windows%\smss\smss.exe " It registers itself as a BHO to ensure its
This Trojan may be dropped by other malware. Arrival Details This Trojan may be dropped by other malware. Autostart Technique This Trojan adds the following registry entries to install itself as a
all Windows operating system versions; C:\Program Files (x86) for 32-bit applications running on Windows 64-bit operating systems.) Autostart Technique This adware registers itself as a BHO to ensure
\Documents and Settings\{user name}\Local Settings\Temp on Windows 2000, XP, and Server 2003.) Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every time Internet
{01815C98-84B5-4D03-A402-9558B43950EA} (Default) = IE7Pro HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ AppID\IE7Pro.DLL AppID = {01815C98-84B5-4D03-A402-9558B43950EA} HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ IE7Pro.IEbho.1 (Default) = IE7Pro BHO
file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every
and Server 2003.) Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every time Internet Explorer is used by adding the following registry keys:
file dropped by other malware or as a file downloaded unknowingly by users when visiting malicious sites. Autostart Technique This Trojan registers itself as a BHO to ensure its automatic execution every
\Application Data on Windows 2000, XP, and Server 2003, or C:\Users\{user name}\AppData\Roaming on Windows Vista and 7.) Autostart Technique This Trojan registers itself as a BHO to ensure its automatic
Adware is software that displays advertising banners on Web browsers such as Internet Explorer and Mozilla. While not categorized as malware, many users consider adware invasive. Adware programs
Trojan registers itself as a BHO to ensure its automatic execution every time Internet Explorer is used by adding the following registry keys: HKEY_LOCAL_MACHINE\Software\Microsoft\ Windows\CurrentVersion
\GenericAskToolbar.dll" HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ Windows\CurrentVersion\Explorer\ Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} = "Ask Toolbar BHO" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ CLSID\