Infected folders detected
c:\program files\3721
c:\program files\3721\3721
c:\program files\3721\assist
c:\program files\3721\shell
c:\program files\3721\assist\3721
c:\program files\3721\assist\3721\coolbar
c:\program files\3721\assist\coolbar
c:\winnt\downloaded program files\3721
Infected registry keys/values detected
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CLASSES_ROOT\cnsminhk.cnshook.1\CLSID {D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKEY_CLASSES_ROOT\cnsminhk.cnshook.1 CnsHook Class
HKEY_CLASSES_ROOT\cnsminhk.cnshook
HKEY_CLASSES_ROOT\cnsminhk.cnshook\CLSID {D157330A-9EF3-49F8-9A67-4141AC41ADD4}
HKEY_CLASSES_ROOT\cnsminhk.cnshook\CurVer CnsMinHK.CnsHook.1
HKEY_CLASSES_ROOT\cnsminhk.cnshook CnsHook Class
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68}
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68}\ProxyStubClsid {00020424-0000-0000-C000-000000000046}
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68}\ProxyStubClsid32 {00020424-0000-0000-C000-000000000046}
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68}\TypeLib {AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68}\TypeLib Version 1.0
HKEY_CLASSES_ROOT\interface\{df692509-d9ef-48a0-9cd0-3aa5b81f6f68} ICH
HKEY_CLASSES_ROOT\typelib\{a5adeae7-a8b4-4f94-9128-bf8d8db5e927}
HKEY_CLASSES_ROOT\typelib\{a5adeae7-a8b4-4f94-9128-bf8d8db5e927}\1.0\0\win32 C:\WINNT\downlo~1\CnsHook.dll
HKEY_CLASSES_ROOT\typelib\{a5adeae7-a8b4-4f94-9128-bf8d8db5e927}\1.0\FLAGS 0
HKEY_CLASSES_ROOT\typelib\{a5adeae7-a8b4-4f94-9128-bf8d8db5e927}\1.0\HELPDIR C:\WINNT\downlo~1\
HKEY_CLASSES_ROOT\typelib\{a5adeae7-a8b4-4f94-9128-bf8d8db5e927}\1.0 CnsMinHK 1.0 Type Library
HKEY_CURRENT_USER\Software\3721\CnsMin
HKEY_CURRENT_USER\Software\3721\CnsMin\Variant showfw 1
HKEY_CURRENT_USER\Software\3721\CnsMin\Variant DEK 0
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks {BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CURRENT_USER\Software\3721\CnsMin IIS & fb=0& fc=0& fd=0& fe=0& fg=0& fh=0& fi=0& fj=0& fa=0& fu=2
HKEY_CURRENT_USER\Software\3721\CnsMin Message 1
HKEY_CURRENT_USER\Software\3721\CnsMin AddControl 1
HKEY_CURRENT_USER\Software\3721\CnsMin ForceHint 1
HKEY_CURRENT_USER\Software\3721\CnsMin LastActive 1114809922
HKEY_CURRENT_USER\Software\3721\CnsMin UpdateHint 1
HKEY_CURRENT_USER\Software\3721\CnsMin LastCheckUp 1116573932
HKEY_CURRENT_USER\Software\3721\CnsMin LastCheck 1116573932
HKEY_CURRENT_USER\Software\3721\CnsMin LastCheck_BUP 147698287
HKEY_CURRENT_USER\Software\3721\CnsMin LastCheckEx 1116573932
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CURRENT_USER\Software\3721\CnsMin LastCheckEx_BUP 147698287
HKEY_CURRENT_USER\Software\3721\CnsMin UpdateIcon 6
HKEY_CURRENT_USER\Software\3721\CnsMin PreCache 1.0.3.4
HKEY_CURRENT_USER\Software\3721\CnsMin KillHint 0
HKEY_CURRENT_USER\software\3721
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\filterlog\float
http://www.163.com* 1
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\filterlog\popup
http://www.163.com* 2
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\option FloatFilterLevel 3
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\option FloatHideOnly 0
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\option PopupSound 0
HKEY_CLASSES_ROOT\CoolBar.CoolBarObj.1
HKEY_CURRENT_USER\software\3721\Assist\ADKiller\option PopupSoundPath C:\PROGRA~1\3721\Assist\sound.wav
HKEY_CURRENT_USER\software\3721\Assist\adwurl
http://www.onlinedown.net* 1
HKEY_CURRENT_USER\software\3721\Assist\adwurl
http://www.onlinedown.com* 1
HKEY_CURRENT_USER\software\3721\Assist\adwurl
http://www.newhua.com* 1
HKEY_CURRENT_USER\software\3721\Assist\Options iebar 1
HKEY_CURRENT_USER\software\3721\Assist\Options adnotify 1
HKEY_CURRENT_USER\software\3721\Assist\Options exbar 1
HKEY_CURRENT_USER\software\3721\Assist\Options bCatchSex 0
HKEY_CURRENT_USER\software\3721\Assist\Options catchText 0
HKEY_CURRENT_USER\software\3721\Assist\Options catchad 1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj.1
HKEY_CURRENT_USER\software\3721\Assist\Options catchflash 1
HKEY_CURRENT_USER\software\3721\Assist\Options FilterCount 2
HKEY_CURRENT_USER\software\3721\Assist\Options bFloatImage 1
HKEY_CURRENT_USER\software\3721\Assist\Options FloatCount 1
HKEY_CURRENT_USER\software\3721\Assist\Options controlcount 1
HKEY_CURRENT_USER\software\3721\Assist\Options bClean 0
HKEY_CURRENT_USER\software\3721\Assist\Options Cleanstyle -1
HKEY_CURRENT_USER\software\3721\Assist\Options EnableCns 1
HKEY_CURRENT_USER\software\3721\Assist ThemeName coolbar
HKEY_CURRENT_USER\software\3721\AutoLive NoShowWarning 1
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CURRENT_USER\software\3721\CnsMin\Variant showfw 1
HKEY_CURRENT_USER\software\3721\CnsMin\Variant DEK 0
HKEY_CURRENT_USER\software\3721\CnsMin IIS & fb=0& fc=0& fd=0& fe=0& fg=0& fh=0& fi=0& fj=0& fa=0& fu=2
HKEY_CURRENT_USER\software\3721\CnsMin Message 1
HKEY_CURRENT_USER\software\3721\CnsMin AddControl 1
HKEY_CURRENT_USER\software\3721\CnsMin ForceHint 1
HKEY_CURRENT_USER\software\3721\CnsMin LastActive 1114809922
HKEY_CURRENT_USER\software\3721\CnsMin UpdateHint 1
HKEY_CURRENT_USER\software\3721\CnsMin LastCheckUp 1116573932
HKEY_CURRENT_USER\software\3721\CnsMin LastCheck 1116573932
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar {BB936323-19FA-4521-BA29-ECA6A121BC78}
HKEY_CURRENT_USER\software\3721\CnsMin LastCheck_BUP 147698287
HKEY_CURRENT_USER\software\3721\CnsMin LastCheckEx 1116573932
HKEY_CURRENT_USER\software\3721\CnsMin LastCheckEx_BUP 147698287
HKEY_CURRENT_USER\software\3721\CnsMin UpdateIcon 6
HKEY_CURRENT_USER\software\3721\CnsMin PreCache 1.0.3.4
HKEY_CURRENT_USER\software\3721\CnsMin KillHint 0
HKEY_CURRENT_USER\software\3721\InputCns 18 免费换壁纸-15亿图库尽情搜|0|0|2
HKEY_CURRENT_USER\software\3721\InputCns 17 赚赚赚-05年怎样赚大钱|0|0|2
HKEY_CURRENT_USER\software\3721\InputCns 16 百万铃声-极炫声色|0|0|2
HKEY_CURRENT_USER\software\3721\InputCns 15 最新高薪职位排名|0|0|2
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks {BB936323-19FA-4521-BA29-ECA6A121BC78}