MalwareBot
MalwareBot
Found:
2008-02-26
Known system changes:
Created Files
- %CommonDesktop%MalwareBot*.lnk
- %Windir%Tasks\MalwareBot Scheduled Scan.job
- %ApplicationData%Microsoft\Internet Explorer\Quick Launch\MalwareBot.lnk
- %CommonDesktop%MalwareBot.lnk
Created Folders
- %CommonStartMenu%Programs\MalwareBot
- %ApplicationData%MalwareBot
- %ProgramFiles%MalwareBot
- %Windir%Installer\{B759902E-3156-43E8-8A8D-AD6974F99243}
- %Windir%Installer\{3078BEAE-2EAB-411F-B304-074BFDAA7127}
- %Windir%Installer\{A97FBC73-15A5-4EC2-9F7B-882443ED959C}
- %Windir%Installer\{1D33EE2A-CB43-4056-B4A1-B55737D59187}
- %Windir%Installer\{9AFF7657-B6D1-4349-8447-AB096B7292CE}
- %Windir%Installer\{67FCE433-3D3C-4656-AC99-CDF4644E1BC9}
- %Windir%Installer\{9BFFD959-F0A9-429F-8281-340A9772B6B4}
- %Windir%Installer\{16333DAE-89C9-4A6B-ABA7-8A22F419D889}
- %Windir%Installer\{04AC6467-E857-4305-B7F7-D2B6EDFAD572}
- %Windir%Installer\{E312A1CB-B583-43A1-91DE-A459A7D4BA7C}
- %Windir%Installer\{AA74DAB3-9718-4662-9BE9-375C9EBFC642}
- %Windir%Installer\{113EFFE4-B7F3-4C4A-B7CD-1A098BC3707D}
- %Windir%Installer\{00B3D1B4-BFEC-4346-A844-352846C588B6}
Registry Entries
- Key: HKEY_CURRENT_USER\software\malwarebot
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\clsid\{c5c08c5d-51ef-4730-952a-6efbe690df16}
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\e209957b65138e34a8d8da96479f2934
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\e209957b65138e34a8d8da96479f2934
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\upgradecodes\8bf9cd9f316af4348a9e5930114224af
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\controlpanel\namespace\{c5c08c5d-51ef-4730-952a-6efbe690df16}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\upgradecodes\8bf9cd9f316af4348a9e5930114224af
- Value:
- Data:
- Key: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run
- Value: malwarebot
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\documents and settings\all users\start menu\programs\malwarebot\
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\program files\malwarebot\
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\program files\malwarebot\addons\
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{b759902e-3156-43e8-8a8d-ad6974f99243}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\eaeb8703bae2f1143b4070b4dfaa1772
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\eaeb8703bae2f1143b4070b4dfaa1772
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{3078beae-2eab-411f-b304-074bfdaa7127}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\program files\malwarebot\filterdrv\
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{3078beae-2eab-411f-b304-074bfdaa7127}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\37cbf79a5a512ce4f9b7884234de59c9
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\37cbf79a5a512ce4f9b7884234de59c9
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{a97fbc73-15a5-4ec2-9f7b-882443ed959c}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{a97fbc73-15a5-4ec2-9f7b-882443ed959c}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\a2ee33d134bc65044b1a5b75735d1978
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\a2ee33d134bc65044b1a5b75735d1978
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{1d33ee2a-cb43-4056-b4a1-b55737d59187}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{1d33ee2a-cb43-4056-b4a1-b55737d59187}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\7567ffa91d6b94344874ba90b62729ec
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\7567ffa91d6b94344874ba90b62729ec
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{9aff7657-b6d1-4349-8447-ab096b7292ce}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{9aff7657-b6d1-4349-8447-ab096b7292ce}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\334ecf76c3d36564ca99dc4f46e4b19c
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\334ecf76c3d36564ca99dc4f46e4b19c
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{67fce433-3d3c-4656-ac99-cdf4644e1bc9}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{67fce433-3d3c-4656-ac99-cdf4644e1bc9}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\959dffb99a0ff924281843a079276b4b
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\959dffb99a0ff924281843a079276b4b
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{9bffd959-f0a9-429f-8281-340a9772b6b4}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{9bffd959-f0a9-429f-8281-340a9772b6b4}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\ead333619c98b6a4ba7aa8224f918d98
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\ead333619c98b6a4ba7aa8224f918d98
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{16333dae-89c9-4a6b-aba7-8a22f419d889}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{16333dae-89c9-4a6b-aba7-8a22f419d889}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\7646ca40758e50347b7f2d6bdeaf5d27
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\7646ca40758e50347b7f2d6bdeaf5d27
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{04ac6467-e857-4305-b7f7-d2b6edfad572}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{04ac6467-e857-4305-b7f7-d2b6edfad572}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\bc1a213e385b1a3419ed4a957a4dabc7
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\bc1a213e385b1a3419ed4a957a4dabc7
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{e312a1cb-b583-43a1-91de-a459a7d4ba7c}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{e312a1cb-b583-43a1-91de-a459a7d4ba7c}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\3bad47aa81792664b99e73c5e9fb6c24
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\3bad47aa81792664b99e73c5e9fb6c24
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{aa74dab3-9718-4662-9be9-375c9ebfc642}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{aa74dab3-9718-4662-9be9-375c9ebfc642}\
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\4effe3113f7ba4c47bdca190b83c07d7
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\4effe3113f7ba4c47bdca190b83c07d7
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{113effe4-b7f3-4c4a-b7cd-1a098bc3707d}
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{113effe4-b7f3-4c4a-b7cd-1a098bc3707d}\
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\malwarebot_is1
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\features\4b1d3b00cefb64348a445382645c886b
- Value:
- Data:
- Key: HKEY_CLASSES_ROOT\installer\products\4b1d3b00cefb64348a445382645c886b
- Value:
- Data:
- Key: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
- Value: c:\windows\installer\{00b3d1b4-bfec-4346-a844-352846c588b6}\
- Data: