Threat Information for "Manila Industries Quicklinks"

Removal Top

StopSign will automatically remove this infection with a paid membership.

Summary Top
  • Name: Manila Industries Quicklinks
  • Aliases:
  • Date Discovered: 2006-04-24
  • Protection Added: 2006-05-09
Description Top
Technical Details Top
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\f50i.tcp
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\klsx9e.exe
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\acwfs4t2.exe
  • Added Directory/File:
    FilePath: %CACHE%\jw4p*.cab
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\wdc1n.dll
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\dgfgql.exe
  • Added Registry Key:
    Key: HKLM\%CURRENTVERSIONREG%\Uninstall\FFjTq
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\CLSID\{BA576CDE-9949-4473-A8F7-6C17C2A7E600}
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\Fseytdc.Yvakt.1
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\Fseytdc.Ariaqudok.1
  • Added Registry Key:
    Key: HKLM\%CURRENTVERSIONREG%\App Management\ARPCache\FFjTq
  • Added Registry Key:
    Key: HKLM\SOFTWARE\qI9nJ
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\Interface\{924350BE-EC92-4ACE-97D7-006721346D23}
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\CLSID\{0DEADE31-9A37-48B2-921A-7825EA93D32A}
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\Fseytdc.Yvakt
  • Added Registry Key:
    Key: HKLM\%BHOREG%\{0DEADE31-9A37-48B2-921A-7825EA93D32A}
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\Fseytdc.Ariaqudok
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\TypeLib\{2383594E-4C4B-46A0-BA6A-817A8CAD2393}
  • Added Registry Data:
    Key: HKLM\%CURRENTVERSIONREG%\Run Value: [RANDOM VALUE] Data: %SYSTEMDIR%\dgfgql.exe
  • Added Registry Data:
    Key: HKLM\SOFTWARE\Classes\PROTOCOLS\Filter\text/html Value: [RANDOM VALUE] Data: {BA576CDE-9949-4473-A8F7-6C17C2A7E600}