Author Topic: Registry keys wanted  (Read 7040 times)

0 Members and 5 Guests are viewing this topic.

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Registry keys wanted
« on: March 22, 2007, 04:14:24 PM »
I am busy to write a littel utillity that repairs certain registry entries after a infection.
I am looking for the default file extension settings for:
- .exe
-. com
-. bat

I also need the default values for the following registry keys:
- double click on a drive in explorer so it opens
- default shell handlers

Other related keys are also welcome.
If you know one or more of these, please export them to a file and paste the content of the file here.

Thanks in advanche

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48828
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: Registry keys wanted
« Reply #1 on: March 22, 2007, 04:25:50 PM »
Hi Eddy,
Anything new on your program HiLoA  ?
Have you done any updates and is it usable with the latest version of HijackThis ?
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Registry keys wanted
« Reply #2 on: March 30, 2007, 08:16:21 PM »
Trying to fix a little bug. It refuses to recognize IE 7 as the latest version, but I will fix it.
Also adding data for Vista support and the detection dbase has new detections.
Best thing to mention: After this update, you only have to set things on ignore once, newer databse updates will keep your settings. :-)

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67183
Re: Registry keys wanted
« Reply #3 on: March 30, 2007, 08:32:52 PM »
After this update, you only have to set things on ignore once, newer databse updates will keep your settings. :-)
Great news!!!
The best things in life are free.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48828
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: Registry keys wanted
« Reply #4 on: March 30, 2007, 10:53:02 PM »
Thanks Eddy,
I look forward to the next version and hope you'll get the bugs out of it soon.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline RejZoR

  • Polymorphic Sheep
  • Serious Graphoman
  • *****
  • Posts: 9412
  • We are supersheep, resistance is futile!
    • RejZoR's Flock of Sheep
Re: Registry keys wanted
« Reply #5 on: March 31, 2007, 12:04:16 AM »
Here you go, default CLASSES (file extensions and handlers) registry hive taken from WinXP SP2 clean install.

DOWNLOAD:
http://mihd.net/aoj9v0

I've made it some time ago as backup rescue option in case of a system failure.
Visit my webpage Angry Sheep Blog

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Registry keys wanted
« Reply #6 on: May 01, 2007, 02:32:16 AM »
Thanks RejZoR

HiLoA:
- Bug is removed
- Sofar about 60 new detections added (with descriptions)
- About 200 to go

CharleyO

  • Guest
Re: Registry keys wanted
« Reply #7 on: May 01, 2007, 06:33:28 AM »
***

That's great news, Eddy. Be sure to let us know when the update is complete.    :)


***

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Registry keys wanted
« Reply #8 on: May 12, 2007, 08:17:14 PM »
New released is a bit delayed, unfortunatly.
Just before releasing I received a few log files with new entries, so I want to add them as well.

mouniernetwork

  • Guest
Re: Registry keys wanted
« Reply #9 on: May 12, 2007, 11:02:08 PM »
@Eddy

At one point I tried to make a tool that would detect the presence of trojans by checking for certain registery key in the HKEY_LM\software\microsoft\windows\run and HKEY_cu HKEY_CU\software\microsoft\windows\run.

If you are intersted let me know I I can send you the list  ;)

Al968
« Last Edit: May 12, 2007, 11:06:20 PM by al968 »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 34057
  • malware fighter
Re: Registry keys wanted
« Reply #10 on: May 13, 2007, 09:53:06 PM »
Hi Eddy,

Report when the tool is available, please.

polonus

P.S.
"Klik op de bananen voor een animatie en een dankjewelletje"
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Registry keys wanted
« Reply #11 on: May 20, 2007, 02:02:24 PM »
Ok, HiLoA 4-1 is out.
Due to lack of time, I haven't been able to add everything to the detections I wanted, but it is a start.
And if everything really is working, next time you only have to dl a small update for new detections.

http://www.ache.nl Look under the downloads

al968, I sure am interested.
You can send it to info@ache.nl

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89675
  • No support PMs thanks
Re: Registry keys wanted
« Reply #12 on: May 20, 2007, 03:06:53 PM »
Thanks Eddy.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD - 27" external monitor 1440p 2560x1440 resolution - avast! free  24.9.6130 (build 24.9.9452.762) UI 1.0.818/ Firefox, uBlock Origin Lite, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67183
Re: Registry keys wanted
« Reply #13 on: May 20, 2007, 07:51:26 PM »
Eddy, can you compare your tool with HijackReader that automatically reads HijackThis logs and gives advice on what to fix?
http://www.hollmen.dk/content/view/69/31/
The best things in life are free.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48828
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: Registry keys wanted
« Reply #14 on: May 20, 2007, 08:51:25 PM »
Hi Eddy,
I'm getting the following error trying to install HiLoA on
Windows Vista Ultima:
See Picture (Click to enlarge)

P. S.
Choosing the Ignore option simply repeats this error.
The only option is to close and that closes the program.
« Last Edit: May 20, 2007, 08:53:46 PM by bob3160 »
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet