home *** CD-ROM | disk | FTP | other *** search
/ com!online 2002 May / comcd0502.iso / top100com / trojan / install_trojancheck5042.exe / SPYWARESIGS.DAT < prev    next >
Encoding:
INI File  |  2001-05-25  |  3.2 KB  |  117 lines

  1. [Spector 2.2]
  2. NOSEARCH=0
  3. file01=%SYS%winnetcl.hlp
  4. file02=%SYS%winnetcl.cnt
  5. file03=%SYS%winnetcl.exe
  6. file04=%SYS%netknlhm.dll
  7. file05=%SYS%netknl.dll
  8. file06=%SYS%webebot.exe
  9. rkey01=%HKCR%\clsid\{CA2DB500-5ECF-11D2-B28F-0080C8383C7B}\
  10. rkey02=%HKCR%\CLSID\{99669942-57CB-11D2-9B3D-000000000000}\
  11. rkey03=%HKLM%\software\microsoft\windows\currentversion\run\webebot.exe
  12. rkey04=%HKLM%\software\CLASSES\CLSID\{CA2DB500-5ECF-11D2-B28F-0080C8383C7B}\
  13. rkey05=%HKLM%\Software\CLASSES\CLSID\{99669942-57CB-11D2-9B3D-000000000000}\
  14. rkey06=%HKLM%\Software\microsoft\windows\currentversion\run\xyz
  15.  
  16.  
  17. [Spector bis Version 2.12]
  18. NOSEARCH=0
  19. file01=%SYS%mswnsrvx.hlp
  20. file02=%SYS%mswnsrvx.cnt
  21. file03=%SYS%mswnsrvx.exe
  22. file04=%SYS%shmswnmp.dll
  23. file05=%SYS%shmswnrc.dll
  24. file06=%SYS%sysbot.exe
  25. rkey01=%HKCR%\CLSID\{CA2DB500-5ECF-11D2-B28F-0080C8383C7B}\
  26. rkey02=%HKLM%\Software\CLASSES\CLSID\{CA2DB500-5ECF-11D2-B28F-0080C8383C7B}\
  27. rkey03=%HKLM%\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\{CA2DB500-5ECF-11D2-B28F-0080C8383C7B}
  28.  
  29.  
  30. [007 Stealth Activity Recorder & Reporter]
  31. NOSEARCH=0
  32. file01=wsys.exe
  33. file02=wsys.dll
  34. file03=starrcmd.exe
  35. rkey01=%HKLM%\software\microsoft\windows\currentversion\runservices\windll
  36.  
  37.  
  38. [HackerWacker 2001 AE]
  39. NOSEARCH=0
  40. file01=hwae.exe
  41. file02=intruder.$$$
  42. file03=userlist.$$$
  43. file04=HWAE.mdb
  44. rkey01=%HKCU%\Software\HWAE
  45.  
  46.  
  47. [PC Spy]
  48. NOSEARCH=0
  49. file01=%WIN%Kinw27.ini
  50. file02=pcs.exe
  51.  
  52.  
  53. [Parents Friend]
  54. NOSEARCH=0
  55. file01=%SYS%winadmlog.txt
  56. file02=%SYS%winadmkill.exe
  57. file03=%SYS%winadmd.exe
  58. file04=%SYS%winadm.exe
  59. file05=%SYS%Comsys.exe
  60. file06=%SYS%Comsysh.exe
  61. file07=%SYS%gif89.dll
  62. rkey01=%HKCR%\Gif89.Gif89.1\
  63. rkey02=%HKCR%\Gif89.Gif89\
  64. rkey03=%HKCR%\CLSID\{28D47530-CF84-11D1-834C-00A0249F0C28}\
  65. rkey04=%HKCR%\Interface\{28D4752F-CF84-11D1-834C-00A0249F0C28}\
  66. rkey05=%HKCR%\TypeLib\{28D47522-CF84-11D1-834C-00A0249F0C28}\
  67. rkey06=%HKLM%\Software\Microsoft\Windows\CurrentVersion\Run\_winadm
  68. rkey07=%HKLM%\Software\Microsoft\Windows\CurrentVersion\RunServices\sys
  69. rkey08=%HKLM%\Software\CLASSES\Gif89.Gif89.1\
  70. rkey09=%HKLM%\Software\CLASSES\Gif89.Gif89\
  71. rkey10=%HKLM%\Software\CLASSES\CLSID\{28D47530-CF84-11D1-834C-00A0249F0C28}\
  72. rkey11=%HKLM%\Software\CLASSES\Interface\{28D4752F-CF84-11D1-834C-00A0249F0C28}\
  73. rkey12=%HKLM%\Software\CLASSES\TypeLib\{28D47522-CF84-11D1-834C-00A0249F0C28}\
  74.  
  75.  
  76. [Omniquad Desktop Surveillance]
  77. NOSEARCH=0
  78. file01=ODS.CNT
  79. file02=ODS.HLP
  80. file03=ODSCFG.EXE
  81. file04=ODSHOST.EXE
  82. file05=ODSP.DAT
  83. file06=ODSPLAY.EXE
  84. file07=ODSPREF.EXE
  85. file08=ODSREG.EXE
  86. file09=%WIN%INF\ODSP.INF
  87. file10=%WIN%otinst.dat
  88. rkey01=%HKCU%\Software\ODSP\
  89. rkey02=%HKUS%\.DEFAULT\Software\ODSP
  90. rkey03=%HKLM%\Software\Microsoft\Windows\CurrentVersion\Run\odsp
  91.  
  92.  
  93. [PC Acme Pro]
  94. NOSEARCH=0
  95. file01=%WIN%ki.ini
  96. file02=%SYS%krnl40.dll
  97. file03=%SYS%kim.exe
  98. file04=%SYS%vcrond.vxd
  99. file05=%SYS%vkmler.vxd
  100. file06=pcacme.exe
  101. file07=pcacme.hlp
  102. file08=pcacme.cnt
  103. rkey01=%HKCR%\.sk\
  104. rkey02=%HKCR%\skfile\
  105. rkey03=%HKLM%\Software\ANNA\
  106. rkey04=%HKLM%\Software\CLASSES\.sk\
  107. rkey05=%HKLM%\Software\CLASSES\skfile\
  108. rkey06=%HKLM%\System\CurrentControlSet\Services\VxD\VKMLER\
  109. rkey07=%HKLM%\System\CurrentControlSet\Services\VxD\VcronD\
  110. rkey08=%HKLM%\Software\Microsoft\Windows\CurrentVersion\RunServices\ACMEMODULE
  111.  
  112.  
  113. [Spytech Shadow]
  114. NOSEARCH=0
  115. file01=%WIN%shadopts.dat
  116. file02=Shadow.exe
  117. file03=ShadowModule.exe