Jump to content
Kazu

Registry Keys:: Image File Execution Options\ .EXE ?

Recommended Posts

Hi, I'm new to SUPERAntiSpyware. I did a scan and it found some viruses that were clearly malicious and I deleted them successfully...

However, I was stumped by the results in the Registry Keys Category... I am not sure if they are FP's and would like some help on this.

Do I remove them or no?

OS: Windows 7 Home Premium / 64bit - not sure if this is important lol.

::Here is my Recent Log::

____________________________________________________________________________________________________________________________

SUPERAntiSpyware Scan Log

https://www.superantispyware.com

Generated 04/08/2011 at 12:43 PM

Application Version : 4.50.1002

Core Rules Database Version : 6781

Trace Rules Database Version: 4593

Scan type : Complete Scan

Total Scan Time : 00:55:45

Memory items scanned : 546

Memory threats detected : 0

Registry items scanned : 14835

Registry threats detected : 36

File items scanned : 39208

File threats detected : 0

Security.HiJack[imageFileExecutionOptions]

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EXCEL.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EXCEL.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FILEENCRYPT.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FILEENCRYPT.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FILESPLITTER.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FILESPLITTER.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HPWA_MAIN.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HPWA_MAIN.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\INFOPATH.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\INFOPATH.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\INTEGRATOR.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\INTEGRATOR.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LIGHTSCRIBECONTROLPANEL.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LIGHTSCRIBECONTROLPANEL.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LSLAUNCHER.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LSLAUNCHER.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSACCESS.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSACCESS.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSOXMLED.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSOXMLED.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSPUB.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSPUB.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSTORE.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MSTORE.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\OUTLOOK.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\OUTLOOK.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PICTUREMOVER.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PICTUREMOVER.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\POWERPNT.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\POWERPNT.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SAFECOPY.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SAFECOPY.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UNINS000.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UNINS000.EXE#Debugger

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WINWORD.EXE

(x86) HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WINWORD.EXE#Debugger

____________________________________________________________________________________________________________________________

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.

×