****************************************
Auto start entries:
C:\Arquivos de programas\Browser Hijack Blaster\bhblaster.exe -nosplash
C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar\desktop.ini
C:\Arquivos de programas\Hewlett-Packard\Digital Imaging\bin\hpomau08.exe C:\Arquivos de programas\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\Arquivos de programas\Microsoft Office\Office10\OSA.EXE -b -l
C:\Arquivos de programas\Browser Hijack Blaster\bhblaster.exe -nosplash
C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar\desktop.ini
C:\Arquivos de programas\Hewlett-Packard\Digital Imaging\bin\hpomau08.exe C:\Arquivos de programas\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\Arquivos de programas\Microsoft Office\Office10\OSA.EXE -b -l
C:\Documents and Settings\André\Menu Iniciar\Programas\Inicializar\desktop.ini
C:\Documents and Settings\André\Menu Iniciar\Programas\Inicializar\desktop.ini
****************************************
Run entries:
pccguide.exe "C:\Arquivos de programas\Trend Micro\Internet Security\pccguide.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\pccguide.exe
PCClient.exe "C:\Arquivos de programas\Trend Micro\Internet Security\PCClient.exe"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\PCClient.exe
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} not set C:\Arquivos de programas\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
{45D9ED6A-AA40-46AB-8B76-DAFAB6557C2D} not set C:\WINDOWS\System32\gedc.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{45D9ED6A-AA40-46AB-8B76-DAFAB6557C2D}
{A5366673-E8CA-11D3-9CD9-0090271D075B} not set C:\ARQUIV~1\FlashGet\jccatch.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5366673-E8CA-11D3-9CD9-0090271D075B}
{C41A1C0E-EA6C-11D4-B1B8-444553540000} G-Buster Browser Defense C:\WINDOWS\Downloaded Program Files\gbieh.dll HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C41A1C0E-EA6C-11D4-B1B8-444553540000}
Local Page C:\WINDOWS\secure.html
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
Search Bar res://%43%3a%5c%57%49%4e%44%4f%57%53%5c%53%79%73%74%65%6d%33%32%5c%67%65%64%63%2e%64%6c%6c/%73%70%2e%68%74%6d%6c
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
Local Page C:\WINDOWS\secure.html
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
Search Bar res://%43%3a%5c%57%49%4e%44%4f%57%53%5c%53%79%73%74%65%6d%33%32%5c%67%65%64%63%2e%64%6c%6c/%73%70%2e%68%74%6d%6c
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar