MSFN Forum: What is Registry Editor CodeASU1 - MSFN Forum

Jump to content


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

What is Registry Editor CodeASU1 Registry editor Rate Topic: -----

#1 User is offline   fixcar1 

  • Group: Members
  • Posts: 1
  • Joined: 27-July 11
  • OS:Windows 7 x64
  • Country: Country Flag

Posted 27 July 2011 - 07:54 PM

I need information on what codeASU1 is in my registry editor.
See Attachment

One program tells me it is Bifroze Trojan but that is one program Advance System Optimizer.
Ran ESET online no virus; also Norton; no virus detected.
Malware bytes all ok nothing found.
I need to know if this key is good and what program did this CodeASU1 come from?

Thank you in advance

Lee

Attached File(s)


This post has been edited by fixcar1: 27 July 2011 - 07:55 PM



#2 User is offline   allen2 

  • Not really Newbie
  • PipPipPipPipPipPipPip
  • Group: Members
  • Posts: 1,731
  • Joined: 13-January 06

Posted 27 July 2011 - 10:45 PM

The only way to be sure, is to uninstall properly Advanced System Optimizer and see if the reg entry is also removed.

#3 User is offline   adamt 

  • Kwisatz Haderach
  • PipPip
  • Group: Members
  • Posts: 132
  • Joined: 26-July 06
  • OS:Windows 7 x64

Posted 28 July 2011 - 06:16 AM

You could download Process Monitor from Sysinternals, and run that, looking for what is accessing that key.

Start process monitor with the /noconnect switch (c:\path\to\procmon.exe /noconnect) - which will stop it from instantly logging every single bit of activity from the second it loads.

Add a filter:

If path excludes "CodeASU1" then Exclude. Also, use the 'drop filtered events' option - to stop it from filling up your pagefile.

Now tell it to start capturing events, and from there on, it's a waiting game to see which processes are touching that key.

#4 User is offline   Tripredacus 

  • K-Mart-ian Legend
  • Group: Super Moderator
  • Posts: 8,665
  • Joined: 28-April 06
  • OS:Server 2012
  • Country: Country Flag

Posted 28 July 2011 - 08:06 AM

It does look to be that virus. Here is more info
http://www.microsoft...2%2FBifrose.ACI

Other user reports online have found problems removing it fully, as MSE and Kapersky (from March 2011) only would do a partial quarantine.

Moving to AV forum, as I can't find a good set of removal instructions that doesn't involve downloading some weird removal tool.

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

2 User(s) are reading this topic
0 members, 2 guests, 0 anonymous users



All trademarks mentioned on this page are the property of their respective owners
Copyright © 2001 - 2013 msfn.org
Privacy Policy