![]() |
|
|
|
#1
|
|||
|
|||
|
We can use RootkitRevealer (SysInternals) to find those keys in our registry. In my machine, I have three keys of my machine:
HKLM\SOFTWARE\Classes\CLSID\{05F7676A-ABD2-42e5-8107-8B00E139D339}\InprocServer32* 04/07/2004 11:51 PM 0 bytes Key name contains embedded nulls (*) HKLM\SOFTWARE\FMS\Total .NET SourceBook\1.1\Lic* 29/06/2004 9:15 PM 0 bytes Key name contains embedded nulls (*) HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ 12/11/2004 3:41 PM 0 bytes Key name contains embedded nulls (*) HKLM\SOFTWARE\ZipWORX\ZipWorx SecureEXE RunTime* 30/06/2005 6:11 PM 0 bytes Key name contains embedded nulls (*) The last key created by test.exe of TheBoss. I will code a prog to view and delete those keys. Regards, TQN |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| CRC problem... Alien Registry Viewer | Maltese | General Discussion | 4 | 04-12-2007 13:52 |
| Registry Monitoring, what's best? | Barry | General Discussion | 13 | 08-08-2004 00:55 |