Windows Registry Editor Version 5.00
; Registry Search 2.0 by Bobbi Flekman © 2005
; Version: 2.0.5.0
; Results at 2007-12-20 8:46:00 AM for strings:
; ‘fub04.sys’
; Strings excluded from search:
; (None)
; Search in:
; Registry Keys Registry Values Registry Data
; HKEY_LOCAL_MACHINE HKEY_USERS
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Fub04]
; Contents of value:
; System32\Drivers\Fub04.sys
“ImagePath”=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,
72,00,69,00,76,00,65,00,72,00,73,00,5c,00,46,00,75,00,62,00,30,00,34,00,2e,
00,73,00,79,00,73,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Fub04]
; Contents of value:
; System32\Drivers\Fub04.sys
“ImagePath”=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,
72,00,69,00,76,00,65,00,72,00,73,00,5c,00,46,00,75,00,62,00,30,00,34,00,2e,
00,73,00,79,00,73,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Fub04]
; Contents of value:
; System32\Drivers\Fub04.sys
“ImagePath”=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,
72,00,69,00,76,00,65,00,72,00,73,00,5c,00,46,00,75,00,62,00,30,00,34,00,2e,
00,73,00,79,00,73,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TypedURLs]
“url2”=“C:\WINDOWS\SYSTEM32\drivers\Fub04.sys”
[HKEY_CURRENT_USER\Software\Microsoft\Search Assistant\ACMru\5603]
“000”=“Fub04.sys”
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU*]
“f”=“C:\WINDOWS\system32\drivers\Fub04.sys”
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\OpenSaveMRU\sys]
“b”=“C:\WINDOWS\system32\drivers\Fub04.sys”
; End Of The Log…
Thanks!