Code:
File::
C:\WINDOWS\system32\qpbmkhyq.ini
C:\WINDOWS\system32\ofxihahf.dll
C:\WINDOWS\system32\fsnadiof.dll
C:\WINDOWS\system32\drvbin.dll
C:\WINDOWS\system32\uobdtxlj.dll
C:\WINDOWS\system32\euuwkpkc.dll
C:\WINDOWS\system32\drvsew.dll
C:\WINDOWS\system32\tkhwjyrg.ini
C:\WINDOWS\system32\drvses.dll
C:\Documents and Settings\Owner.lapdawg\DesktopTrojan.Win32.BlackBird.exe
C:\WINDOWS\system32\tmwphuqu.ini
C:\WINDOWS\system32\sdeqfofe.ini
C:\WINDOWS\system32\iSecurity(2).cpl
C:\WINDOWS\system32\drvbuj.dll
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"c4cf0baf"=-
"BMc7fc3833"=-
[-HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[-HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ddccCTmk]
[-HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\winldd32]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\avp]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BMc7fc3833]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bqratsvc]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\c4cf0baf]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\khuzqdmv]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\klahizuf]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSDisp32]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSDrive]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\smgr]
[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\twbwzijk]