files to delete:
C:\DOCUME~1\Andrea14\IMPOST~1\Temp\wJQs.exe
C:\DOCUME~1\Andrea14\IMPOST~1\Temp\28.tmp
C:\DOCUME~1\Andrea14\IMPOST~1\Temp\128.tmp
C:\WINDOWS\system32\digeste.dll
C:\WINDOWS\system32\__c0044068.exe
C:\WINDOWS\system32\__c007FE10.exe
C:\WINDOWS\system32\__c00FB5E5.exe
C:\WINDOWS\system32\__c00E4C6.exe
C:\WINDOWS\system32\__c00213A7.exe
C:\WINDOWS\system32\__c00505DC.exe
C:\WINDOWS\system32\__c00FAD66.exe
C:\WINDOWS\system32\__c00A2236.exe
C:\WINDOWS\system32\__c001E92C.exe
C:\WINDOWS\system32\__c0095E1E.exe
C:\WINDOWS\system32\__c00D310.exe
C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
C:\WINDOWS\system32\svcnost.exe
C:\WINDOWS\Dvivafise.dll
C:\Documents and Settings\Andrea14\Andrea14.exe
files to move:
C:\Program Files\D-Link\DSL-200\bak\dslagent.exe | C:\Program Files\D-Link\DSL-200\dslagent.exe
C:\Program Files\D-Link\DSL-200\bak\dslstat.exe | C:\Program Files\D-Link\DSL-200\dslstat.exe
C:\Programmi\Adobe\Reader 8.0\Reader\bak\Reader_sl.exe | C:\Programmi\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Programmi\Java\jre1.5.0_06\bin\bak\jusched.exe | C:\Programmi\Java\jre1.5.0_06\bin\jusched.exe
C:\Programmi\Spybot - Search & Destroy\bak\TeaTimer.exe | C:\Programmi\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\ehome\bak\ehtray.exe | C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\bak\ctfmon.exe | C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\bak\NeroCheck.exe | C:\WINDOWS\system32\NeroCheck.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hpz tsb09.exe | C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb0 9.exe
C:\WINDOWS\Temp\bak\RecoverFromReboot.exe | C:\WINDOWS\Temp\RecoverFromReboot.exe
registry values to delete:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run | Ljukikay
HKLM\Software\Microsoft\Windows\CurrentVersion\Run | svchost.exe
registry values to replace with dummy:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon | System