PCPrivacyTool
|
Popis:
|
Rogue Security Program
|
|
Úroveň rizika:
|
Vysoké
|
|
Datum 1. výskytu:
|
Friday, April 25, 2008
|
|
Poskytovatel Softwaru:
|
(neznámá)
|
|
Stručné informace:
|
Rogue/Suspect Anti-Spyware Product
"Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
|
|
Odstranění:
|
Tento škodlivý software může být odstraněn pomocí "Spyware
Terminatora"
|
ODSTRANIT SPYWARE »
Geogr. rozdělení softwaru "PCPrivacyTool"
Info o škodlivém softwaru
Zobrazit vše
Detected Items
- Detected Files:
%PROGRAMFILES%\PCPrivacyTool\plug\GDCW.exe
MD5: EF8F4DF3064DC35001375120FFA3F87C Size:282624
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%APPDATA%\Microsoft\Internet Explorer\Quick Launch\PCPrivacyTool unregistered.lnk
%DESKTOP%\Install PCPrivacyTool .lnk
%DESKTOP%\PCPrivacyTool unregistered.lnk
- Files by Directories
%START_PROGRAMSALL%\PCPrivacyTool
%ProgramFiles%\PCPrivacyTool
- Files by CLSID or Name
CLSID=B33DE756-DEEE-4D7A-87DB-1D905BA2AA21
- Registry Keys
HKCU\Software\PCPrivacyTool
HKCR\?\shellex\ContextMenuHandlers\secure_del
HKCR\.exe\shellex\ContextMenuHandlers\secure_del
HKCR\.lnk\ShellEx\ContextMenuHandlers\secure_del
HKCR\Directory\Background\shellex\ContextMenuHandlers\secure_del
HKCR\Directory\shellex\ContextMenuHandlers\secure_del
HKCR\Drive\shellex\ContextMenuHandlers\secure_del
HKCR\Folder\shellex\ContextMenuHandlers\secure_del
HKCR\SystemFileAssociations\Directory.Audio\shellex\ContextMenuHandlers\secure_del
HKCR\SystemFileAssociations\Directory.Image\shellex\ContextMenuHandlers\secure_del
HKCR\SystemFileAssociations\Directory.Video\shellex\ContextMenuHandlers\secure_del
HKCR\exefile\shellex\ContextMenuHandlers\secure_del
HKCR\lnkfile\shellex\ContextMenuHandlers\secure_del
HKLM\SOFTWARE\PCPrivacyTool
HKLM\SOFTWARE\ugdccw
- Registry Values
HKCU\Software\Microsoft\Windows\CurrentVersion\Run ValueName=PCPrivacyTool
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=PCPrivacyTool
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=ugdccw
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved ValueName={B33DE756-DEEE-4D7A-87DB-1D905BA2AA21}
«
Jít do Databáze softwaru