Adware.Linkury
*reg_key
HKCU\software\microsoft\internet explorer\main\featurecontrol\feature_browser_emulation:linkury.exe
HKLM\software\microsoft\windows\currentversion\run:linkury chrome smartbar
HKLM\software\microsoft\tracing\linkury_rasmancs
HKLM\software\microsoft\tracing\linkury_rasapi32
HKLM\software\wow6432node\microsoft\tracing\linkury_rasmancs
HKLM\software\wow6432node\microsoft\tracing\linkury_rasapi32
HKCU\software\microsoft\installer\products\c5670ca607d1c7c4aa305de018401aa3
HKCU\software\microsoft\installer\features\c5670ca607d1c7c4aa305de018401aa3
HKCU\software\linkury
*file
C:\ProrogramData\Utatity\ZathTop.dat
C:\ProrogramData\Utatity\Utatity.dat
C:\ProrogramData\Utatity\Utatity.d.dat
C:\ProrogramData\Utatity\uninstall.dat
C:\ProrogramData\Utatity\TechDom.bin
C:\ProrogramData\Utatity\Stockfind.bin
C:\ProrogramData\Utatity\snp.sc
C:\ProrogramData\Utatity\Silvertop.bin
C:\ProrogramData\Utatity\Silverstrong.exe.config
C:\ProrogramData\Utatity\Silverstrong.exe
C:\ProrogramData\Utatity\Sanex.dll
C:\ProrogramData\Utatity\Opelam.dat
C:\ProrogramData\Utatity\md.xml
C:\ProrogramData\Utatity\Icesing.dll
C:\ProrogramData\Utatity\Hottam.bin
C:\ProrogramData\Utatity\Greenity.bin
C:\ProrogramData\Utatity\Goldjob.exe.config
C:\ProrogramData\Utatity\Goldjob.exe
C:\ProrogramData\Utatity\Geophase.bin
C:\ProrogramData\Utatity\ff.NT
C:\ProrogramData\Utatity\ff.HP
C:\ProrogramData\Utatity\Config.xml
C:\ProrogramData\Utatity\conf.config
C:\ProrogramData\Utatity\BlueFinplus.bin
C:\ProrogramData\Utatity\temp
C:\ProrogramData\Utatity\ondemand
Adware.Netfilter
*reg_key
HKLM\SOFTWARE\Caphyon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\6764914E5AD471D4784A9D2F63F584CD\InstallProperties
HKLM\SOFTWARE\netfilter
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E4194676-4DA5-4D17-87A4-D9F2365F48DC}
HKLM\SYSTEM\CurrentControlSet\Services\netfilter2
*file
C:\windows\System32\drivers\netfilter2.sys
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\x-rates\x-rates_x64.lnk
C:\ProrogramData\Microsoft\Windows\Start Menu\Programs\x-rates\x-rates.lnk
C:\Prorogram Files\x-rates\ProgramFiles64Folder\netfilter\x-rates.exe
C:\Prorogram Files\x-rates\ProgramFiles64Folder\netfilter\netfilter2.sys
C:\Prorogram Files\netfilter\x-rates.exe
C:\Prorogram Files\netfilter\netfilter2.sys