SmitfraudFix Changelog

What's new in SmitfraudFix 2.423

Jun 26, 2009
  • [-HKEY_CURRENT_USER\Software\ColdWare]
  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "WinProtect"=-
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "winupdate.exe"=-
  • "ColdWare"=-
  • %SYSTEM%\AVR09.exe
  • %SYSTEM%\msa.exe

New in SmitfraudFix 2.422 (Jun 11, 2009)

  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5B1D95A2-F547-4e5e-8902-622B08354622}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5B1D95A2-F547-4e5e-8902-622B08354622}]
  • %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced Virus Remover.lnk
  • %STARTMENU%\Advanced Virus Remover.lnk
  • �SKTOP%\Advanced Virus Remover.lnk
  • %PROGRAMFILES%\AdvancedVirusRemover\
  • [-HKEY_CURRENT_USER\Software\AVR]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "Advanced Virus Remover"=-

New in SmitfraudFix 2.421 (Jun 10, 2009)

  • %WINDOWS%\ld09.exe
  • %PROGRAMFILES%\podmena
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_PODMENA]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_PODMENADRV]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\podmena]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\podmenadrv]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PODMENA]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_PODMENADRV]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\podmena]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\podmenadrv]

New in SmitfraudFix 2.420 (Jun 10, 2009)

  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "mediacodec.exe"=-

New in SmitfraudFix 2.419 (Jun 10, 2009)

  • % DESKTOP%XP Deluxe Protector.lnk
  • %STARTMENU%XP Deluxe Protector.lnk
  • %USERPROFILE%XP Deluxe Protector
  • [-HKEY_CURRENT_USERSoftwareXP Deluxe Protector]
  • [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun]
  • "xpprotect"=-

New in SmitfraudFix 2.418 (Jun 2, 2009)

  • Update: WS2Fix v1.3
  • %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\UnVirex.lnk
  • %ALLUSERSTARTMENU%\Programs\UnVirex\
  • %ALLUSERSTARTMENU%\Programs\UnVirex.lnk
  • %ALLUSERDESKTOP%\UnVirex.lnk
  • %PROGRAMFILES%\UnVirex\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\IEAddon.DLL]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{C0E56Ac2-9F72-436E-B6E7-Aec28Af9E4Eb}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCB5551D-8594-4999-85F9-1E3EABCB95AC}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5B184B9D-B7BD-4FEA-8D1F-5E27182206A5}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3ED0E410-5C8E-47B6-A75D-D10B886E903C}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEAddon.StatusBarPane]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEAddon.StatusBarPane.1]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CCB5551D-8594-4999-85F9-1E3EABCB95AC}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UnVirex]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\UnVirex]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_DRVFLTIP]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DrvFltIp]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DRVFLTIP]
  • [-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DrvFltIp]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
  • "UnVirex"=-
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "UnVirex"=-

New in SmitfraudFix 2.417 (May 25, 2009)

  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "Presto TuneUp"=-
  • %WINDOWS%pp10.exe
  • %SYSTEM%SYSDLL.exe
  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "SYSDLL"=-

New in SmitfraudFix 2.416 (May 8, 2009)

  • %SYSTEM%SYS32DLL.exe
  • %PROGRAMFILES%PCenter
  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "SYS32DLL"=-
  • "agent.exe"=-

New in SmitfraudFix 2.415 (May 8, 2009)

  • O2 - BHO: (no name) - {3B7AAEB1-9F3D-4491-9C06-C7165CA8D058} - C:Program FilesApplicationsiebt.dll
  • [-HKEY_LOCAL_MACHINESOFTWAREClassesCLSID{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}]
  • [-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}]

New in SmitfraudFix 2.414 (May 4, 2009)

  • %SYSTEM%\DL32.exe
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "DL32"=-

New in SmitfraudFix 2.413 (Apr 30, 2009)

  • Update: WS2Fix v1.2
  • %USER%Application Datapcdefender.exe
  • %USER%Application Datasvchost_32.exe
  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "sysav"=-
  • "dll32"=-
  • %USERPROFILE%Application DataMicrosoftInternet ExplorerQuick LaunchCoreguard 2009.lnk
  • �SKTOP%Coreguard 2009.lnk
  • %STARTMENU%ProgramsCoreguard Antivirus 2009
  • %PROGRAMFILES%Coreguard Antivirus 2009
  • [-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallCoreguard Antivirus 2009]
  • [-HKEY_CURRENT_USERSoftwareCoreGuard]
  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "Coreguard Antivirus 2009"=-
  • [-HKEY_LOCAL_MACHINESOFTWAREClassesVShield.DocHostUIHandler]
  • [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun]
  • "Virus Shield 2009"=-

New in SmitfraudFix 2.412 (Apr 21, 2009)

  • %HOMEDRIVE%\asasa.exe
  • %HOMEDRIVE%\syst.exe
  • %PROGRAMFILES%\Microsoft Security Adviser\
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "msctrl.exe"=-
  • "msavsc.exe"=-
  • "msscan.exe"=-
  • "msiemon.exe"=-
  • "msfw.exe"=-
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "msctrl.exe"=-
  • "msavsc.exe"=-
  • "msscan.exe"=-
  • "msiemon.exe"=-
  • "msfw.exe"=-
  • %ALLUSERS%\ApplicationData\Tally software LTD\
  • %STARTMENU%\Programs\Extra Antivirus\
  • [-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\uninstall\Extra Antivirus 3.0]
  • [-HKEY_CURRENT_USER\Software\Tally software LTD]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "Extra Antivirus"=-

New in SmitfraudFix 2.411 (Apr 18, 2009)

  • %STARTMENU%ProgramsAV AntiSpyware
  • %ALLUSERS%ApplicationDataLastSun Ltd
  • [-HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallAV AntiSpyware 1.8]
  • [-HKEY_CURRENT_USERSoftwareLastSun Ltd]
  • [HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun]
  • "AV AntiSpyware"=-

New in SmitfraudFix 2.409 (Apr 17, 2009)

  • %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\homeantivirus2009.lnk
  • %STARTMENU%\Programs\homeantivirus2009\
  • �SKTOP%\homeantivirus2009.lnk
  • %PROGRAMFILES%\homeantivirus2009\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HomeAntivirus2009]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "HomeAntivirus 2009"=-

New in SmitfraudFix 2.408 (Apr 9, 2009)

  • %SYSTEM%\ahtn.htm
  • %SYSTEM%\warning.gif
  • %SYSTEM%\frmwrk32.exe
  • [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  • "Framework Windows"=-
  • %STARTMENU%\Programs\MS AntiSpyware 2009\

New in SmitfraudFix 2.407 (Apr 9, 2009)

  • DNS.Changer RK detection

New in SmitfraudFix 2.406 (Apr 6, 2009)

  • Added: Option 6, ProxyDisable.exe
  • %WINDOWS%\ld03.exe
  • %WINDOWS%\pp06.exe
  • %SYSTEM%\winsource.dll
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D263FA6D-84CC-48A8-9AF6-C664362B7A5B}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D263FA6D-84CC-48A8-9AF6-C664362B7A5B}]
  • %USERPROFILE%\Application Data\Microsoft\Internet Explorer\Quick Launch\TSC.lnk
  • �SKTOP%\TSC.lnk
  • %STARTMENU%\Programs\TSC\
  • %PROGRAMFILES%\TSC\
  • %SYSTEM%\userload.exe
  • [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  • "restor"=-

New in SmitfraudFix 2.405 (Mar 18, 2009)

  • %WINDIR%\ieocx.dll
  • [-HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEocxApp.IEocx]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEocxApp.IEocx.1]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}] (Already removed)
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A54DC52D-7AAD-4D40-A126-337211631EDC}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}]
  • �SKTOP%\WinPC Defender.lnk
  • %STARTMENU%\WinPC Defender.lnk
  • [-HKEY_CURRENT_USER\Software\WinPC Defender]
  • %SYSTEM%\rs32net.exe
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "rs32net"=-
  • [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  • "rs32net"=-
  • [-HKEY_CURRENT_USER\Software\renus2008]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "renus2008.exe"=-

New in SmitfraudFix 2.404 (Mar 16, 2009)

  • %USERPROFILE%\Application Data\sysrc32.exe
  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "Win32load"=-

New in SmitfraudFix 2.403 (Mar 13, 2009)

  • %ProgramFiles%\AntiSpyware Pro
  • %PROGRAMFILES%\RegistryFox\
  • %ALLUSERDESKTOP%\RegistryFox.lnk
  • %USERPROFILE%\Application Data\RegistryFox\
  • %ALLUSERSTARTMENU%\Programmes\RegistryFox\
  • [-HKEY_CURRENT_USER\SOFTWARE\RegistryFox]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Features\6B4F6929EB6FE0E458263EBA6AF2EB30]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\6B4F6929EB6FE0E458263EBA6AF2EB30]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\RegistryFox]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9296F4B6-F6BE-4E0E-8562-E3ABA62FBE03}]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "RegistryFox"=-

New in SmitfraudFix 2.402 (Mar 11, 2009)

  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
  • "Shell"="Explorer.exe svchostw.exe"
  • %SYSTEM%\svchostw.exe

New in SmitfraudFix 2.401 (Mar 10, 2009)

  • %WINDOWS%\ld01.exe
  • %WINDOWS%\ld02.exe
  • %WINDOWS%\pp2.exe
  • %SYSTEM%\dll32.exe
  • %SYSTEM%\dll32.dll
  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "dll"=-
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "sysldtray"=-
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "pp"=-
  • %STARTMENU%\Programs\Malware Defender 2009\
  • �SKTOP%\Malware Defender 2009.lnk
  • %PROGRAMFILES%\Malware Defender 2009\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malware Defender 2009]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Malware Defender 2009]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "malwaredef"=-
  • %STARTMENU%\Programs\System Guard 2009\
  • �SKTOP%\System Guard 2009.lnk
  • %PROGRAMFILES%\System Guard 2009\
  • %ALLUSERSPROFILE%\Application Data\Microsoft\Network\DLLs\iemodule.dll
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\System Guard 2009]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\System Guard 2009]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "systemguard"=-

New in SmitfraudFix 2.400 (Mar 6, 2009)

  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "system tool"=-

New in SmitfraudFix 2.398 (Feb 19, 2009)

  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "Microsoft Internet Agent"=-
  • %SYSTEM%\winagent.exe
  • %PROGRAMFILES%\HDQuality\
  • %STARTMENU%\Programs\HDQuality\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HDQuality]
  • [-HKEY_CURRENT_USER\SOFTWARE\HDQuality]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HDQuality]

New in SmitfraudFix 2.397 (Feb 19, 2009)

  • [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
  • "[IA3_]"=-
  • %WINDOWS%\iehost.dll
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{12c7290a-157b-4f43-b109-97e792c598ed}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{967A494A-6AEC-4555-9CAF-FA6EB00ACF91}] (Already removed)
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9692BE2F-EB8F-49D9-A11C-C24C1EF734D5}] (Already removed)
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8A10FC9B-8D76-4E95-A9BE-ACDA2F665C30}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WinGDIApp.WinGDI]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WinGDIApp.WinGDI.1]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{12c7290a-157b-4f43-b109-97e792c598ed}]

New in SmitfraudFix 2.396 (Feb 15, 2009)

  • %PROGRAMFILES%\CMVideoPlugin
  • %PROGRAMFILES%\SmitFraudFixTool\
  • %ALLUSERDESKTOP%\SmitFraudFixTool.lnk
  • %USERPROFILE%\\Application Data\SmitFraudFixTool\
  • %ALLUSERSTARTMENU%\Programs\SmitFraudFixTool\
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "SmitFraudFixTool"=-
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10EE433D-A290-4811-B562-8A1878AEE706}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel\NameSpace\{10EE433D-A290-4811-B562-8A1878AEE706}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AB63BB6D-4A8A-4E69-9F4B-E099C874A2AA}]
  • [-HKEY_CURRENT_USER\Software\SmitFraudFixTool]

New in SmitfraudFix 2.395 (Feb 9, 2009)

  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "systeminit.exe"=-

New in SmitfraudFix 2.394 (Feb 8, 2009)

  • %PROGRAMFILES%\freshplay\
  • %STARTMENU%\Programs\freshplay
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\freshplay]
  • [-HKEY_CURRENT_USER\SOFTWARE\freshplay]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\freshplay]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
  • "NoFolderOptions"=-
  • [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
  • "NoFolderOptions"=-
  • %ALLUSERPROFILE%\Application Data\CrucialSoft Ltd\
  • [-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\uninstall\MS AntiSpyware 2009 5.7]
  • [-HKEY_CURRENT_USER\Software\CrucialSoft Ltd]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "MS AntiSpyware 2009"=-

New in SmitfraudFix 2.392 (Jan 27, 2009)

  • %SYSTEM%\winsystems.dll
  • %STARTMENU%\Programs\IE-Security.lnk
  • �SKTOP%\IE-Security.lnk
  • %PROGRAMFILES%\IE-Security\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE-Security]
  • [-HKEY_CURRENT_USER\Software\IE-Security]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "IE-Security"=-
  • %STARTMENU%\XP Police Antivirus.lnk
  • �SKTOP%\XP Police Antivirus.lnk
  • %PROGRAMFILES%\XPPoliceAntivirus\
  • [-HKEY_CURRENT_USER\Software\XP Police Antivirus]
  • [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  • "PoliceAV"=-

New in SmitfraudFix 2.391 (Jan 14, 2009)

  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\CMVideo.DLL]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{36B94DC8-FA3B-45DF-8F6B-215A2A469BCC}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D23EE44-2319-4B6C-93D2-A572E0F5B0E0}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B87FA0EF-26D7-4B2A-B7EE-38C7271C4843}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{2EB32B07-6A19-4D18-9A19-4DE49F18A1FB}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{638E0063-BA00-487C-BAFF-423E356F52F6}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AC4A66D0-BB91-45E5-BB00-E0F091F630B8}]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.CMVideoPlugin]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.CMVideoPlugin.1]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.XMLDOMDocumentEventsSink]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CMVideo.XMLDOMDocumentEventsSink.1]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0D23EE44-2319-4B6C-93D2-A572E0F5B0E0}]
  • [-HKEY_CURRENT_USER\Software\CMVideoPlugin]
  • %SYSTEM%\CMVideo.dll
  • %PROGRAMFILES%\totalvid\

New in SmitfraudFix 2.388 (Jan 1, 2009)

  • %STARTMENU%\Programs\videosoft\
  • %PROGRAMFILES%\videosoft\
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\videosoft]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\videosoft]
  • [-HKEY_CURRENT_USER\Software\videosoft]
  • %PROGRAMFILES%\Total Protect 2009\
  • %ALLUSERPROFILE%\StartMenu\Programs\Total Protect 2009\
  • %ALLUSERPROFILE%\Desktop\Run Total Protect 2009.lnk
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\totalprotect]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\totalprotect]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Total Protect 2009]
  • [-HKEY_LOCAL_MACHINE\SOFTWARE\Antivirus Software]
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • "Total Protect 2009"=-