files to delete:
C:\WINNT\system32\bmbho.dll
C:\WINNT\system32\devcheck.exe
C:\DOCUME~1\user\IMPOST~1\Temp\keygen.exe
c:\RECYCLER\teskmgr.exe
C:\WINNT\system32\scardsvr32.exe
c:\RECYCLER\winrao.exe
C:\WINNT\System32\Mofei.cfg
C:\WINNT\System32\MoFei.ver
registry values to delete:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run | Sts
registry keys to delete:
HKEY_LOCAL_MACHINE\system\controlset001\services\W diCenterHost
HKEY_LOCAL_MACHINE\system\controlset003\services\W diCenterHost
HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\WdiCenterHost
HKEY_LOCAL_MACHINE\system\controlset002\services\W diCenterHost
HKEY_LOCAL_MACHINE\system\controlset001\services\C OMWinHst
HKEY_LOCAL_MACHINE\system\controlset003\services\C OMWinHst
HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\COMWinHst
HKEY_LOCAL_MACHINE\system\controlset002\services\C OMWinHst