Trojan Downloader Win32 |
Niveau de danger:
6
6
Comment enlever Trojan Downloader Win32 vous-même
Les fichiers associés à la contamination (Trojan Downloader Win32):
ac2_0003.exe
aklsp.dll
msvidc32.dll
tempo-139421.tmp
Sys2621.exe
lphc9m9j0e1a3.exe
lphc110j0e78a.exe
lphc9s1j0evd5.exe
gkglqoue.dll
YUR2A7.exe
lphc323j0en3c.exe
EsnGOg2W.exe
dmintf32.dll
531.tmp
lsass.exe
had73sfdfd.dll
lphce5lj0e33g.exe
kzpkwj.dll
WinAvXX.exe
igzxwrl.dll
nexpegp.dll
dls0523pmw.exe
iesbpl.dll
atzrdada.dll
xpuupdate.exe
svhost.exe
dpksakgm.dll
HPAware.exe
d3acdb.dll
iesplg.dll
czxtyx.dll
isadd.dll
iesplugin.dll
isaddon.dll
ixt0.dll
ajdnjhfo10.exe
senssrv.dll
newname3.exe
ecsiin.stub.exe
aphj.dll
jgdi.dll
bvt.exe
bhomod00.dll
installer.exe
BHOmod.dll
bretiuxh.exe
cjuvwa.dll
wupeng.exe
__c00642B1.dat
svchost.exe
update_check.exe
win32st.exe
xskmoqx.dll
alofkmn.dll
mgmrwmrv.exe
apdqnxp.dll
altvxvm.dll
btrklfr.dll
bokpkov.dll
MSWINSCK.OCX
wmsdkns.exe
vadokmxt.dll
sysrxmfdksp.exe
wdpoefan.dll
WLCtrl32.dll
spools.exe
glock32.exe
mfc42.exe
win32.exe
GMILLOGOF.EXE
userinit.exe
WinNt32.dll
wuauclt.exe
F.tmp
sysmon.exe
TempAA.exe
TimeOutPatch.EXE
sbmdl.dll
lenveqvt.exe
FD.exe
winlogon.exe
IEBHO.dll
ie_updates3r.exe
cmdbcs.exe
perfs.exe
bxsbang.dll
yyk2954.exe
routing.exe
wupdater.exe
oyhucntf.exe
UGA6P_0001_N122M2802NetInstaller.exe
X117.exe
msn.exe
svchost23.exe
WinCtrl32.dll
vbpdtvdp.exe
GoogleDesktop.exe
mrofinu1535.exe
iftuyszv.exe
cftmon.exe
Sys77.exe
msupdte.exe
uoyzsydz.exe
lphcnvtj0eve7.exe
rundll32.exe
SysE4E3.exe
Sys2.exe
Sys4.exe
Sys3.exe
Sys1.exe
zgyhw.dll
lphcgu6j0e9av.exe
euwoeu.dll
lphc942j0e9e7.exe
lphc9dpj0e793.exe
VIE7B09.exe
.ttE.tmp.exe
adqnebaf.exe
smss.exe
kzgdudgj.exe
braviax.exe
qtmjcfsj.exe
chslqbih.exe
wcs.exe
buritos.exe
css.exe
zgxwbank.exe
lyryzgjs.exe
c.exe
6LN0dYGS.exe
a.exe
actxprxy.dll
lphcp4vj0et35.exe
lphcrkkj0erbr.exe
video233.cfg.exe
video232.cfg.exe
video1161.cfg.exe
video1019.cfg.exe
lphclq5j0e14p.exe
g.exe
781.exe
Player.exe
qmafxprs.dll
lphcnfgj0ep7n.exe
brastk.exe
dmbsvwtk.exe
crypts.dll
video1086.cfg.exe
video234.cfg.exe
rkhdl.exe
mipinu.dll
iebtm.exe
iebtmm.exe
Yy5v3068.exe
qnflkotm.dll
vwnskbot.dll
xxx5366.exe
~tmpd.exe
getsn32.dll
h8b3LvB2.exe
vedxga3me2.exe
rs32net.exe
ppcb_32.exe
7Jv5vJhh.exe
hpmon.exe
hpmom.exe
wini10894.exe
qttaskm.exe
qttask.exe
wndutl32.dll
msiconf.exe
setup_241_3777_[2].exe
uesiuqcr.exe
frmwrk32.exe
dmusic32.dll
gtckad.dll
VIE2.exe
yyy12351.exe
yyy2010.exe
~tmpc.exe
yyy15461.exe
yyy9308.exe
~.exe
eventlog32.dll
yyy289.exe
yyy12224.exe
~tmpb.exe
mVM33I6b.exe
yyy9902.exe
BwNVxGhC.exe
yyy2599.exe
explorer32.exe
yyy10930.exe
haozs1.dll
11.tmp
~tmpf.exe
ert56264.exe
haozs0.dll
afmain1.dll
nmdfgds1.dll
inte1b.dll
2XKM2nX1.exe
sysguard.exe
475.tmp.exe
OPLlho18.exe
gpkcsp32.dll
alg.exe
~tmpi.exe
1rlkp3G3.exe
hhsa.dll
pCo7V3H8.exe
~tmpx.exe
kiago32a.dll
~tmp3.exe
~tmpp.exe
ckzty22913935.exe
wpiv.exe
svcho.exe
msj.exe
mschr.exe
b1jl2V0m.exe
4115.exe
comaddin32.dll
Terry Santi.exe
davclnt32.dll
DISPEX32.DLL
msa.exe
__c00592D1.dat
msb.exe
userload.exe
svcnost.exe
cnetcfg32.dll
dompifgn.dll
TpScrex.exe
KAVStart.exe
Torpedo[1].com
reader_s.exe
prnet.tmp
soundmix.exe
Msxrs.exe
syst.exe
licao_de_vida.exe
NeroCheck.exe
leia.exe
xydzyh.exe
__c0076B51.dat
2183.exe
theof.exe
d3dim32.dll
__c00E2D44.dat
5765.exe
18163.exe
bxvkyrly.dll
ntspknlg.dll
byxyvtq.dll
secieaddin.dll
ContraVirusPro.exe
xpupdate.dll
bkhujyxs.exe
csrssc.exe
dsaip32b.dll
wmpdxm.dll
getfn32.dll
hpmun.dll
iebt.dll
qipauzax.dll
ifsndu.dll
msxml71.dll
rmd-.dll
ns28kut1.dll
LSYSTI~1.DLL
gpatbs.dll
supsafe.dll
xrdwbfgn.dll
dgksvbpn.dll
pdoskegl.dll
rqbmvpso.dll
664575600.exe
video.avi[1].exe
drvvoj.dll
_A00F299C205.exe
lphcamlj0ea8a.exe
ntuser.com
qbynahkr.exe
tsxngabr.dll
videoa32.dll
vtqnxfko.dll
jiryrclc.exe
wdarqxox.exe
eqvwamkl.dll
wnslvxtf.dll
Gtool.dll
xokvrpwg.dll
rld6.tmp
SVIQ.EXE
8D1.tmp
F1EF.tmp
maxpaynow.exe
pntqkflv.dll
lahmtcho.exe
229F.tmp
domie.dll
evgratsm.dll
xpupdate.exe
setup73.exe
8764.exe
hpi.dll
qegbdmwf.dll
okmdepgb.dll
gnowmebk.dll
z_view.dll
xvorfwbd.dll
asc94.dll
sigma64.dll
setup.exe
CSSRSS.EXE
wpvmqosg.dll
TXPlatform.exe
vregfwlx.dll
ubodh.exe
pxgdslro.dll
scit.exe
scm.exe
sbmntr.exe
sbsm.exe
ati2evxx.exe
ieupdates.exe
nod32se.exe
tujwbkbm.exe
edwnghyb.exe
nabmlare.exe
Firewall.exe
wserving.exe
winupdate.exe
Dot1XCfg.exe
wprcaw.exe
exp.exe
dsound3dd.dll
servicelayer.exe
amoumain.exe
~f9bd.tmp
ctfmon.exe
nvsvc32.exe
bios.exe
winpad32.exe
r56ujxftyrsdjsxrgf46i5sgheh44.exe
qgipz2469937.exe
winsrc.dll
wmsetup.dll
CbEvtSvc.exe
lwpwer.exe
empa.exe
PnE3bw28.dll
Sakora.exe
kbdpo.exe
xaczweo.dll
autodisc.exe
odbcconf.exe
Windj50.sys
~tmp1174.exe
Winxd37.sys
pornivideo03y45i[1].exe
gEehlDA9.exe
l[1].exe
g[1].exe
nJJG.exe
Winye50.sys
visfdw.exe
digeste.dll
load[1].exe
install[1].exe
winvijhq.exe
tisgvi.exe
windsn.exe
adobe_flash[1].exe
AdobeFlash[1].exe
ert51791.exe
usp10.dll
Omahonafazeq.dll
new23[1].exe
gr[2].exe
adv111[1].exe
Test.exe
loader[1].exe
~tmpa.exe
c-setup[2].exe
nfr.sys
movie434.avi.exe
load1.exe
ipv6sp.dll
ni1mg2b5.exe
ieocx.dll
A4-tmpaoi.exe
ptssvc.exe
Winkq26.sys
zchMiB.exe
psvrr.exe
scvhost.exe
oopuqq1.exe
_A00F220AD.exe
winjmxy.exe
ak1[1].exe
g13dyr.exe
avast!antivirus.exe
ashevtsvc.exe
sysloc.dll
19.tmp
93679526.exe
13035004.exe
93044996.exe
avp.exe
win2A.tmp.exe
304434.dll
keyboard.exe
mrofinu572.exe
mrofinu1188.exe
gadcom.exe
nidle.exe
99068276.exe
97179996.exe
91724226.exe
11714234.exe
zoply.dll
734914.dll
788309.dll
890166.dll
512686.dll
367770.dll
124909.dll
311496.dll
912525.dll
119987.dll
590075.dll
848700.dll
768890.dll
242112.dll
907465.dll
857060.dll
709598.dll
804031.dll
iSecurity.cpl
931928.dll
788877.dll
814810.dll
892267.dll
xpa.exe
jpssoft[1].exe
238044.dll
altcmd32.dll
MapEDC.exe
guxmhcd.dll
nsduo.dll
vtr357.dll
duocore.dll
vtr441.dll
WinAvX.exe
bgwttyl.dll
gsrnxgh.dll
ms050862618809.exe
egzcqg.dll
sclick.exe
bpvol.dll
msnhlp32.dll
qch29sr.dll
servhist.exe
cfltygd.dll
qxfgcg.dll
9eabcdc8.exe
hp100.tmp
dfndr.exe
adobepnl.dll
tejotilyd.dll
defender24.exe
keyboard24.exe
newname24.exe
defender20.exe
ipue32.exe
/HideUninstall /HideDir /PC=CP.SAV
sqldata1.exe
ctdbrr.exe
updmgr.exe
bubbj.dll
isfmdl.dll
__c009BE76.dat
gfopyhkh.dll
qejdhnvg.exe
sncntr.exe
nvsvca32.exe
nsdlua.exe
conscorr.exe
__c0078B7C.dat
tvtpwp.dll
27.exe
bnbs.dll
rxjddnvj.exe
sysahbecjh.exe
sysavxjgdu.exe
dcggain.dll
sysutrnez.exe
wind32.exe
fkdnrwsv.dll
dwnrpofk.dll
pmsoarbf.dll
csrss.exe
clfmon.exe
qadovnel.dll
bdkpfxqw.dll
sixyahbi.exe
mmmxgzxg.dll
fshqaln.dll
Explorer.EXE
BD805CFA.DLL
antivirusinstallfull_en[1].exe
mmc.exe
omlbpkaw.dll
{b91413db-d88a-a499-2661-f9f9441c9f46}.dll
audiohq.exe
spool.exe
sysi.exe
mpfanvqg.dll
vip_master_orkut.exe
bsyys.exe
msmsgxs.exe
screen.scr
wetkadmr.dll
gbplib.dll
jrevm.exe
gbppdist.dll
winscok.dll
afontext.dll
bsyys.scr
vbksrofa.dll
kutorkt.exe
2FB25269.DLL
ixplorer.exe
Sys5457.exe
Sys5BE6.exe
blbpeoy.dll
perfc000.dat
1000675417.exe
cru629.dat
lphcpevj0elag.exe
jkqvjzl.dll
lphc783j0eveg.exe
lphcr49j0ea81.exe
lphct1hj0ep35.exe
lphcg9bj0e7e9.exe
lphc71lj0e94p.exe
lphc5mlj0ev7c.exe
lphcva1j0epb9.exe
lphca5sj0ee31.exe
lphct1sj0ele5.exe
ouhzw.dll
lphcv4rj0en23.exe
lphcp19j0e3ac.exe
lphcnn0j0e7c5.exe
lphcej5j0ee4e.exe
lphc1tdj0ea77.exe
lphc5vwj0erb3.exe
lphca35j0ee3c.exe
lphcr6aj0e11v.exe
lphclp6j0ev5p.exe
lphcruaj0e355.exe
lphcpghj0ecfl.exe
lphc5rfj0eg89.exe
lphc3erj0elav.exe
lphcv49j0ejdl.exe
lphcp72j0e1dr.exe
lphc1qtj0ege1.exe
lphcj7cj0ea59.exe
lphc3f8j0eaaa.exe
lphcvhoj0e33t.exe
lphc9v2j0ecfj.exe
lylopybc.exe
gtolsbef.exe
33.tmp.exe
mgxfebsq.dll
javclcte.exe
lphc59hj0eab1.exe
Cpl32ver.exe
lphc3q4j0epca.exe
qhqrmbyz.exe
telghgtw.exe
Manager.exe
arubinuj.exe
YUR205F.exe
lphccpaj0ec7g.exe
YUR507A.exe
xrg1.exe
lphcl2sj0ep0c.exe
lphcnjcj0e92j.exe
yvudcbaf.exe
wcm.exe
pikavn.dll
hare32.dll
samh.log
xappit.dll
lphcem0j0e72a.exe
video88.cfg.exe
sysbas~1.dll
video1140.cfg.exe
sdetcs.dll
vszynz.dll
video1055.cfg.exe
d.exe
rgf.dll
lphcguej0eaep.exe
sft_ver1.1454.0.exe
e.exe
gopfa.dll
gcqltg.dll
pas.exe
x1psul5R.exe
qfrmwmq.dll
7F6B.tmp
izwum.exe
sv.exe
svhoster.exe
svzip.exe
runsql.exe
DTProAgent.exe
setup_241_3777_21347_.exe
5rR0NYTX.exe
7.tmp.exe
rtenazot.dll
qUSOWf4S.exe
yyy1022.exe
BC50DF28.exe
yyy3175.exe
EmuleInstaller.exe
yyy10695.exe
yyy4430.exe
891.tmp.exe
~tmpk.exe
ncswaormex.tmp
yyy14869.exe
yyy10084.exe
yyy8022.exe
lphcavej0epd9.exe
torbjne.exe
yyy6517.exe
vamsoft.exe
BN20.tmp
ert52014.exe
~tmpy.exe
ert58253.exe
wini10251.exe
0xf9.exe
~tmpn.exe
hcwxds32.dll
scvhost32.exe
svchostw.exe
a6.exe
loader.exe
Msmsgs.exe
orkutkut.exe
__c006D472.dat
CdbgEvtSvc.exe
G-Buster.exe
sprof.exe
b.exe
KB75.exe
pidle.exe
ssqomll.dll
mxduo.dll
sconf32.dll
vtr351.dll
zkpssqa.dll
vpccw.dll
jfbakvqj.dll
Update.exe
dooep.dll
lapmvzf.dll
igpfced.dll
msCMTSrvc.exe
uimcu.dll
axlet.dll
vwfps.dll
ms031779298.exe
dfndrff_e5.exe
se_spoof.dll
dfndref_7.exe
nsq2B.dll
hp8F01.tmp
elitelsd32.exe
wupdt.exe
rldyt.dll
ivrllc.dll
ljhebby.dll
axdpfl.dll
iinqyl.dll
admggxp.dll
ctfmona.exe
sbwltbxa.exe
tdomgafw.dll
sysawpbkvnq.exe
sysnxcphmgy.exe
dnlsvc.exe
77.exe
winsys3.exe
system.exe
gnmguxh.dll
cxbrk.dll
winsystem.exe
kcekz.dll
sjrggq.dll
dtseqrxk.dll
lphc1gjj0eg45.exe
zafhemm.dll
ivozwzsl.exe
zqfclgjc.exe
bcxjqr.dll
wupda.exe
deskmon32.dll
yyy11314.exe
e1GuF5Id.exe
yyy13219.exe
ert59692.exe
ert516368.exe
ert5244.exe
SpeedRunner.exe
brastia.exe
DLD.exe
maxpaynowti1.exe
Facegame.exe
HPIEAddOn.dll
tsitra11.exe
qwinondt.exe
Apoint.exe
~tmpo.exe
odsaps.dll
promo.exe
Ib2G3XJQ.exe
ahiaw.exe
iqswi.dll
WLXxeq.dll
WuMO.dll
gsdrgfdrrgnd.dll
rah3b8ffdnd.dll
Owner.exe
__c00E2167.dat
svchosb.exe
mslsrv32.exe
k4stl7tuwv80.exe
winxp.exe
xwr38547.dll
cy37722.dll
restorer32_a.exe
restorer64_a.exe
aklsp.dll
msvidc32.dll
tempo-139421.tmp
Sys2621.exe
lphc9m9j0e1a3.exe
lphc110j0e78a.exe
lphc9s1j0evd5.exe
gkglqoue.dll
YUR2A7.exe
lphc323j0en3c.exe
EsnGOg2W.exe
dmintf32.dll
531.tmp
lsass.exe
had73sfdfd.dll
lphce5lj0e33g.exe
kzpkwj.dll
WinAvXX.exe
igzxwrl.dll
nexpegp.dll
dls0523pmw.exe
iesbpl.dll
atzrdada.dll
xpuupdate.exe
svhost.exe
dpksakgm.dll
HPAware.exe
d3acdb.dll
iesplg.dll
czxtyx.dll
isadd.dll
iesplugin.dll
isaddon.dll
ixt0.dll
ajdnjhfo10.exe
senssrv.dll
newname3.exe
ecsiin.stub.exe
aphj.dll
jgdi.dll
bvt.exe
bhomod00.dll
installer.exe
BHOmod.dll
bretiuxh.exe
cjuvwa.dll
wupeng.exe
__c00642B1.dat
svchost.exe
update_check.exe
win32st.exe
xskmoqx.dll
alofkmn.dll
mgmrwmrv.exe
apdqnxp.dll
altvxvm.dll
btrklfr.dll
bokpkov.dll
MSWINSCK.OCX
wmsdkns.exe
vadokmxt.dll
sysrxmfdksp.exe
wdpoefan.dll
WLCtrl32.dll
spools.exe
glock32.exe
mfc42.exe
win32.exe
GMILLOGOF.EXE
userinit.exe
WinNt32.dll
wuauclt.exe
F.tmp
sysmon.exe
TempAA.exe
TimeOutPatch.EXE
sbmdl.dll
lenveqvt.exe
FD.exe
winlogon.exe
IEBHO.dll
ie_updates3r.exe
cmdbcs.exe
perfs.exe
bxsbang.dll
yyk2954.exe
routing.exe
wupdater.exe
oyhucntf.exe
UGA6P_0001_N122M2802NetInstaller.exe
X117.exe
msn.exe
svchost23.exe
WinCtrl32.dll
vbpdtvdp.exe
GoogleDesktop.exe
mrofinu1535.exe
iftuyszv.exe
cftmon.exe
Sys77.exe
msupdte.exe
uoyzsydz.exe
lphcnvtj0eve7.exe
rundll32.exe
SysE4E3.exe
Sys2.exe
Sys4.exe
Sys3.exe
Sys1.exe
zgyhw.dll
lphcgu6j0e9av.exe
euwoeu.dll
lphc942j0e9e7.exe
lphc9dpj0e793.exe
VIE7B09.exe
.ttE.tmp.exe
adqnebaf.exe
smss.exe
kzgdudgj.exe
braviax.exe
qtmjcfsj.exe
chslqbih.exe
wcs.exe
buritos.exe
css.exe
zgxwbank.exe
lyryzgjs.exe
c.exe
6LN0dYGS.exe
a.exe
actxprxy.dll
lphcp4vj0et35.exe
lphcrkkj0erbr.exe
video233.cfg.exe
video232.cfg.exe
video1161.cfg.exe
video1019.cfg.exe
lphclq5j0e14p.exe
g.exe
781.exe
Player.exe
qmafxprs.dll
lphcnfgj0ep7n.exe
brastk.exe
dmbsvwtk.exe
crypts.dll
video1086.cfg.exe
video234.cfg.exe
rkhdl.exe
mipinu.dll
iebtm.exe
iebtmm.exe
Yy5v3068.exe
qnflkotm.dll
vwnskbot.dll
xxx5366.exe
~tmpd.exe
getsn32.dll
h8b3LvB2.exe
vedxga3me2.exe
rs32net.exe
ppcb_32.exe
7Jv5vJhh.exe
hpmon.exe
hpmom.exe
wini10894.exe
qttaskm.exe
qttask.exe
wndutl32.dll
msiconf.exe
setup_241_3777_[2].exe
uesiuqcr.exe
frmwrk32.exe
dmusic32.dll
gtckad.dll
VIE2.exe
yyy12351.exe
yyy2010.exe
~tmpc.exe
yyy15461.exe
yyy9308.exe
~.exe
eventlog32.dll
yyy289.exe
yyy12224.exe
~tmpb.exe
mVM33I6b.exe
yyy9902.exe
BwNVxGhC.exe
yyy2599.exe
explorer32.exe
yyy10930.exe
haozs1.dll
11.tmp
~tmpf.exe
ert56264.exe
haozs0.dll
afmain1.dll
nmdfgds1.dll
inte1b.dll
2XKM2nX1.exe
sysguard.exe
475.tmp.exe
OPLlho18.exe
gpkcsp32.dll
alg.exe
~tmpi.exe
1rlkp3G3.exe
hhsa.dll
pCo7V3H8.exe
~tmpx.exe
kiago32a.dll
~tmp3.exe
~tmpp.exe
ckzty22913935.exe
wpiv.exe
svcho.exe
msj.exe
mschr.exe
b1jl2V0m.exe
4115.exe
comaddin32.dll
Terry Santi.exe
davclnt32.dll
DISPEX32.DLL
msa.exe
__c00592D1.dat
msb.exe
userload.exe
svcnost.exe
cnetcfg32.dll
dompifgn.dll
TpScrex.exe
KAVStart.exe
Torpedo[1].com
reader_s.exe
prnet.tmp
soundmix.exe
Msxrs.exe
syst.exe
licao_de_vida.exe
NeroCheck.exe
leia.exe
xydzyh.exe
__c0076B51.dat
2183.exe
theof.exe
d3dim32.dll
__c00E2D44.dat
5765.exe
18163.exe
bxvkyrly.dll
ntspknlg.dll
byxyvtq.dll
secieaddin.dll
ContraVirusPro.exe
xpupdate.dll
bkhujyxs.exe
csrssc.exe
dsaip32b.dll
wmpdxm.dll
getfn32.dll
hpmun.dll
iebt.dll
qipauzax.dll
ifsndu.dll
msxml71.dll
rmd-.dll
ns28kut1.dll
LSYSTI~1.DLL
gpatbs.dll
supsafe.dll
xrdwbfgn.dll
dgksvbpn.dll
pdoskegl.dll
rqbmvpso.dll
664575600.exe
video.avi[1].exe
drvvoj.dll
_A00F299C205.exe
lphcamlj0ea8a.exe
ntuser.com
qbynahkr.exe
tsxngabr.dll
videoa32.dll
vtqnxfko.dll
jiryrclc.exe
wdarqxox.exe
eqvwamkl.dll
wnslvxtf.dll
Gtool.dll
xokvrpwg.dll
rld6.tmp
SVIQ.EXE
8D1.tmp
F1EF.tmp
maxpaynow.exe
pntqkflv.dll
lahmtcho.exe
229F.tmp
domie.dll
evgratsm.dll
xpupdate.exe
setup73.exe
8764.exe
hpi.dll
qegbdmwf.dll
okmdepgb.dll
gnowmebk.dll
z_view.dll
xvorfwbd.dll
asc94.dll
sigma64.dll
setup.exe
CSSRSS.EXE
wpvmqosg.dll
TXPlatform.exe
vregfwlx.dll
ubodh.exe
pxgdslro.dll
scit.exe
scm.exe
sbmntr.exe
sbsm.exe
ati2evxx.exe
ieupdates.exe
nod32se.exe
tujwbkbm.exe
edwnghyb.exe
nabmlare.exe
Firewall.exe
wserving.exe
winupdate.exe
Dot1XCfg.exe
wprcaw.exe
exp.exe
dsound3dd.dll
servicelayer.exe
amoumain.exe
~f9bd.tmp
ctfmon.exe
nvsvc32.exe
bios.exe
winpad32.exe
r56ujxftyrsdjsxrgf46i5sgheh44.exe
qgipz2469937.exe
winsrc.dll
wmsetup.dll
CbEvtSvc.exe
lwpwer.exe
empa.exe
PnE3bw28.dll
Sakora.exe
kbdpo.exe
xaczweo.dll
autodisc.exe
odbcconf.exe
Windj50.sys
~tmp1174.exe
Winxd37.sys
pornivideo03y45i[1].exe
gEehlDA9.exe
l[1].exe
g[1].exe
nJJG.exe
Winye50.sys
visfdw.exe
digeste.dll
load[1].exe
install[1].exe
winvijhq.exe
tisgvi.exe
windsn.exe
adobe_flash[1].exe
AdobeFlash[1].exe
ert51791.exe
usp10.dll
Omahonafazeq.dll
new23[1].exe
gr[2].exe
adv111[1].exe
Test.exe
loader[1].exe
~tmpa.exe
c-setup[2].exe
nfr.sys
movie434.avi.exe
load1.exe
ipv6sp.dll
ni1mg2b5.exe
ieocx.dll
A4-tmpaoi.exe
ptssvc.exe
Winkq26.sys
zchMiB.exe
psvrr.exe
scvhost.exe
oopuqq1.exe
_A00F220AD.exe
winjmxy.exe
ak1[1].exe
g13dyr.exe
avast!antivirus.exe
ashevtsvc.exe
sysloc.dll
19.tmp
93679526.exe
13035004.exe
93044996.exe
avp.exe
win2A.tmp.exe
304434.dll
keyboard.exe
mrofinu572.exe
mrofinu1188.exe
gadcom.exe
nidle.exe
99068276.exe
97179996.exe
91724226.exe
11714234.exe
zoply.dll
734914.dll
788309.dll
890166.dll
512686.dll
367770.dll
124909.dll
311496.dll
912525.dll
119987.dll
590075.dll
848700.dll
768890.dll
242112.dll
907465.dll
857060.dll
709598.dll
804031.dll
iSecurity.cpl
931928.dll
788877.dll
814810.dll
892267.dll
xpa.exe
jpssoft[1].exe
238044.dll
altcmd32.dll
MapEDC.exe
guxmhcd.dll
nsduo.dll
vtr357.dll
duocore.dll
vtr441.dll
WinAvX.exe
bgwttyl.dll
gsrnxgh.dll
ms050862618809.exe
egzcqg.dll
sclick.exe
bpvol.dll
msnhlp32.dll
qch29sr.dll
servhist.exe
cfltygd.dll
qxfgcg.dll
9eabcdc8.exe
hp100.tmp
dfndr.exe
adobepnl.dll
tejotilyd.dll
defender24.exe
keyboard24.exe
newname24.exe
defender20.exe
ipue32.exe
/HideUninstall /HideDir /PC=CP.SAV
sqldata1.exe
ctdbrr.exe
updmgr.exe
bubbj.dll
isfmdl.dll
__c009BE76.dat
gfopyhkh.dll
qejdhnvg.exe
sncntr.exe
nvsvca32.exe
nsdlua.exe
conscorr.exe
__c0078B7C.dat
tvtpwp.dll
27.exe
bnbs.dll
rxjddnvj.exe
sysahbecjh.exe
sysavxjgdu.exe
dcggain.dll
sysutrnez.exe
wind32.exe
fkdnrwsv.dll
dwnrpofk.dll
pmsoarbf.dll
csrss.exe
clfmon.exe
qadovnel.dll
bdkpfxqw.dll
sixyahbi.exe
mmmxgzxg.dll
fshqaln.dll
Explorer.EXE
BD805CFA.DLL
antivirusinstallfull_en[1].exe
mmc.exe
omlbpkaw.dll
{b91413db-d88a-a499-2661-f9f9441c9f46}.dll
audiohq.exe
spool.exe
sysi.exe
mpfanvqg.dll
vip_master_orkut.exe
bsyys.exe
msmsgxs.exe
screen.scr
wetkadmr.dll
gbplib.dll
jrevm.exe
gbppdist.dll
winscok.dll
afontext.dll
bsyys.scr
vbksrofa.dll
kutorkt.exe
2FB25269.DLL
ixplorer.exe
Sys5457.exe
Sys5BE6.exe
blbpeoy.dll
perfc000.dat
1000675417.exe
cru629.dat
lphcpevj0elag.exe
jkqvjzl.dll
lphc783j0eveg.exe
lphcr49j0ea81.exe
lphct1hj0ep35.exe
lphcg9bj0e7e9.exe
lphc71lj0e94p.exe
lphc5mlj0ev7c.exe
lphcva1j0epb9.exe
lphca5sj0ee31.exe
lphct1sj0ele5.exe
ouhzw.dll
lphcv4rj0en23.exe
lphcp19j0e3ac.exe
lphcnn0j0e7c5.exe
lphcej5j0ee4e.exe
lphc1tdj0ea77.exe
lphc5vwj0erb3.exe
lphca35j0ee3c.exe
lphcr6aj0e11v.exe
lphclp6j0ev5p.exe
lphcruaj0e355.exe
lphcpghj0ecfl.exe
lphc5rfj0eg89.exe
lphc3erj0elav.exe
lphcv49j0ejdl.exe
lphcp72j0e1dr.exe
lphc1qtj0ege1.exe
lphcj7cj0ea59.exe
lphc3f8j0eaaa.exe
lphcvhoj0e33t.exe
lphc9v2j0ecfj.exe
lylopybc.exe
gtolsbef.exe
33.tmp.exe
mgxfebsq.dll
javclcte.exe
lphc59hj0eab1.exe
Cpl32ver.exe
lphc3q4j0epca.exe
qhqrmbyz.exe
telghgtw.exe
Manager.exe
arubinuj.exe
YUR205F.exe
lphccpaj0ec7g.exe
YUR507A.exe
xrg1.exe
lphcl2sj0ep0c.exe
lphcnjcj0e92j.exe
yvudcbaf.exe
wcm.exe
pikavn.dll
hare32.dll
samh.log
xappit.dll
lphcem0j0e72a.exe
video88.cfg.exe
sysbas~1.dll
video1140.cfg.exe
sdetcs.dll
vszynz.dll
video1055.cfg.exe
d.exe
rgf.dll
lphcguej0eaep.exe
sft_ver1.1454.0.exe
e.exe
gopfa.dll
gcqltg.dll
pas.exe
x1psul5R.exe
qfrmwmq.dll
7F6B.tmp
izwum.exe
sv.exe
svhoster.exe
svzip.exe
runsql.exe
DTProAgent.exe
setup_241_3777_21347_.exe
5rR0NYTX.exe
7.tmp.exe
rtenazot.dll
qUSOWf4S.exe
yyy1022.exe
BC50DF28.exe
yyy3175.exe
EmuleInstaller.exe
yyy10695.exe
yyy4430.exe
891.tmp.exe
~tmpk.exe
ncswaormex.tmp
yyy14869.exe
yyy10084.exe
yyy8022.exe
lphcavej0epd9.exe
torbjne.exe
yyy6517.exe
vamsoft.exe
BN20.tmp
ert52014.exe
~tmpy.exe
ert58253.exe
wini10251.exe
0xf9.exe
~tmpn.exe
hcwxds32.dll
scvhost32.exe
svchostw.exe
a6.exe
loader.exe
Msmsgs.exe
orkutkut.exe
__c006D472.dat
CdbgEvtSvc.exe
G-Buster.exe
sprof.exe
b.exe
KB75.exe
pidle.exe
ssqomll.dll
mxduo.dll
sconf32.dll
vtr351.dll
zkpssqa.dll
vpccw.dll
jfbakvqj.dll
Update.exe
dooep.dll
lapmvzf.dll
igpfced.dll
msCMTSrvc.exe
uimcu.dll
axlet.dll
vwfps.dll
ms031779298.exe
dfndrff_e5.exe
se_spoof.dll
dfndref_7.exe
nsq2B.dll
hp8F01.tmp
elitelsd32.exe
wupdt.exe
rldyt.dll
ivrllc.dll
ljhebby.dll
axdpfl.dll
iinqyl.dll
admggxp.dll
ctfmona.exe
sbwltbxa.exe
tdomgafw.dll
sysawpbkvnq.exe
sysnxcphmgy.exe
dnlsvc.exe
77.exe
winsys3.exe
system.exe
gnmguxh.dll
cxbrk.dll
winsystem.exe
kcekz.dll
sjrggq.dll
dtseqrxk.dll
lphc1gjj0eg45.exe
zafhemm.dll
ivozwzsl.exe
zqfclgjc.exe
bcxjqr.dll
wupda.exe
deskmon32.dll
yyy11314.exe
e1GuF5Id.exe
yyy13219.exe
ert59692.exe
ert516368.exe
ert5244.exe
SpeedRunner.exe
brastia.exe
DLD.exe
maxpaynowti1.exe
Facegame.exe
HPIEAddOn.dll
tsitra11.exe
qwinondt.exe
Apoint.exe
~tmpo.exe
odsaps.dll
promo.exe
Ib2G3XJQ.exe
ahiaw.exe
iqswi.dll
WLXxeq.dll
WuMO.dll
gsdrgfdrrgnd.dll
rah3b8ffdnd.dll
Owner.exe
__c00E2167.dat
svchosb.exe
mslsrv32.exe
k4stl7tuwv80.exe
winxp.exe
xwr38547.dll
cy37722.dll
restorer32_a.exe
restorer64_a.exe
Utilisation de bibliothèques de lien dynamique (Trojan Downloader Win32):
aklsp.dll
msvidc32.dll
gkglqoue.dll
dmintf32.dll
had73sfdfd.dll
kzpkwj.dll
igzxwrl.dll
nexpegp.dll
iesbpl.dll
atzrdada.dll
dpksakgm.dll
d3acdb.dll
iesplg.dll
czxtyx.dll
isadd.dll
iesplugin.dll
isaddon.dll
ixt0.dll
senssrv.dll
aphj.dll
jgdi.dll
bhomod00.dll
BHOmod.dll
cjuvwa.dll
xskmoqx.dll
alofkmn.dll
apdqnxp.dll
altvxvm.dll
btrklfr.dll
bokpkov.dll
vadokmxt.dll
wdpoefan.dll
WLCtrl32.dll
WinNt32.dll
sbmdl.dll
IEBHO.dll
bxsbang.dll
WinCtrl32.dll
zgyhw.dll
euwoeu.dll
actxprxy.dll
qmafxprs.dll
crypts.dll
mipinu.dll
qnflkotm.dll
vwnskbot.dll
getsn32.dll
wndutl32.dll
dmusic32.dll
gtckad.dll
eventlog32.dll
haozs1.dll
haozs0.dll
afmain1.dll
nmdfgds1.dll
inte1b.dll
gpkcsp32.dll
hhsa.dll
kiago32a.dll
comaddin32.dll
davclnt32.dll
cnetcfg32.dll
dompifgn.dll
d3dim32.dll
bxvkyrly.dll
ntspknlg.dll
byxyvtq.dll
secieaddin.dll
xpupdate.dll
dsaip32b.dll
wmpdxm.dll
getfn32.dll
hpmun.dll
iebt.dll
qipauzax.dll
ifsndu.dll
msxml71.dll
rmd-.dll
ns28kut1.dll
gpatbs.dll
supsafe.dll
xrdwbfgn.dll
dgksvbpn.dll
pdoskegl.dll
rqbmvpso.dll
drvvoj.dll
tsxngabr.dll
videoa32.dll
vtqnxfko.dll
eqvwamkl.dll
wnslvxtf.dll
Gtool.dll
xokvrpwg.dll
pntqkflv.dll
domie.dll
evgratsm.dll
hpi.dll
qegbdmwf.dll
okmdepgb.dll
gnowmebk.dll
z_view.dll
xvorfwbd.dll
asc94.dll
sigma64.dll
wpvmqosg.dll
vregfwlx.dll
pxgdslro.dll
dsound3dd.dll
winsrc.dll
wmsetup.dll
PnE3bw28.dll
xaczweo.dll
digeste.dll
usp10.dll
Omahonafazeq.dll
ipv6sp.dll
ieocx.dll
sysloc.dll
304434.dll
zoply.dll
734914.dll
788309.dll
890166.dll
512686.dll
367770.dll
124909.dll
311496.dll
912525.dll
119987.dll
590075.dll
848700.dll
768890.dll
242112.dll
907465.dll
857060.dll
709598.dll
804031.dll
931928.dll
788877.dll
814810.dll
892267.dll
238044.dll
altcmd32.dll
guxmhcd.dll
nsduo.dll
vtr357.dll
duocore.dll
vtr441.dll
bgwttyl.dll
gsrnxgh.dll
egzcqg.dll
bpvol.dll
msnhlp32.dll
qch29sr.dll
cfltygd.dll
qxfgcg.dll
adobepnl.dll
tejotilyd.dll
bubbj.dll
isfmdl.dll
gfopyhkh.dll
tvtpwp.dll
bnbs.dll
dcggain.dll
fkdnrwsv.dll
dwnrpofk.dll
pmsoarbf.dll
qadovnel.dll
bdkpfxqw.dll
mmmxgzxg.dll
fshqaln.dll
omlbpkaw.dll
{b91413db-d88a-a499-2661-f9f9441c9f46}.dll
mpfanvqg.dll
wetkadmr.dll
gbplib.dll
gbppdist.dll
winscok.dll
afontext.dll
vbksrofa.dll
blbpeoy.dll
jkqvjzl.dll
ouhzw.dll
mgxfebsq.dll
pikavn.dll
hare32.dll
xappit.dll
sysbas~1.dll
sdetcs.dll
vszynz.dll
rgf.dll
gopfa.dll
gcqltg.dll
qfrmwmq.dll
rtenazot.dll
hcwxds32.dll
ssqomll.dll
mxduo.dll
sconf32.dll
vtr351.dll
zkpssqa.dll
vpccw.dll
jfbakvqj.dll
dooep.dll
lapmvzf.dll
igpfced.dll
uimcu.dll
axlet.dll
vwfps.dll
se_spoof.dll
nsq2B.dll
rldyt.dll
ivrllc.dll
ljhebby.dll
axdpfl.dll
iinqyl.dll
admggxp.dll
tdomgafw.dll
gnmguxh.dll
cxbrk.dll
kcekz.dll
sjrggq.dll
dtseqrxk.dll
zafhemm.dll
bcxjqr.dll
deskmon32.dll
HPIEAddOn.dll
odsaps.dll
iqswi.dll
WLXxeq.dll
WuMO.dll
gsdrgfdrrgnd.dll
rah3b8ffdnd.dll
xwr38547.dll
cy37722.dll
msvidc32.dll
gkglqoue.dll
dmintf32.dll
had73sfdfd.dll
kzpkwj.dll
igzxwrl.dll
nexpegp.dll
iesbpl.dll
atzrdada.dll
dpksakgm.dll
d3acdb.dll
iesplg.dll
czxtyx.dll
isadd.dll
iesplugin.dll
isaddon.dll
ixt0.dll
senssrv.dll
aphj.dll
jgdi.dll
bhomod00.dll
BHOmod.dll
cjuvwa.dll
xskmoqx.dll
alofkmn.dll
apdqnxp.dll
altvxvm.dll
btrklfr.dll
bokpkov.dll
vadokmxt.dll
wdpoefan.dll
WLCtrl32.dll
WinNt32.dll
sbmdl.dll
IEBHO.dll
bxsbang.dll
WinCtrl32.dll
zgyhw.dll
euwoeu.dll
actxprxy.dll
qmafxprs.dll
crypts.dll
mipinu.dll
qnflkotm.dll
vwnskbot.dll
getsn32.dll
wndutl32.dll
dmusic32.dll
gtckad.dll
eventlog32.dll
haozs1.dll
haozs0.dll
afmain1.dll
nmdfgds1.dll
inte1b.dll
gpkcsp32.dll
hhsa.dll
kiago32a.dll
comaddin32.dll
davclnt32.dll
cnetcfg32.dll
dompifgn.dll
d3dim32.dll
bxvkyrly.dll
ntspknlg.dll
byxyvtq.dll
secieaddin.dll
xpupdate.dll
dsaip32b.dll
wmpdxm.dll
getfn32.dll
hpmun.dll
iebt.dll
qipauzax.dll
ifsndu.dll
msxml71.dll
rmd-.dll
ns28kut1.dll
gpatbs.dll
supsafe.dll
xrdwbfgn.dll
dgksvbpn.dll
pdoskegl.dll
rqbmvpso.dll
drvvoj.dll
tsxngabr.dll
videoa32.dll
vtqnxfko.dll
eqvwamkl.dll
wnslvxtf.dll
Gtool.dll
xokvrpwg.dll
pntqkflv.dll
domie.dll
evgratsm.dll
hpi.dll
qegbdmwf.dll
okmdepgb.dll
gnowmebk.dll
z_view.dll
xvorfwbd.dll
asc94.dll
sigma64.dll
wpvmqosg.dll
vregfwlx.dll
pxgdslro.dll
dsound3dd.dll
winsrc.dll
wmsetup.dll
PnE3bw28.dll
xaczweo.dll
digeste.dll
usp10.dll
Omahonafazeq.dll
ipv6sp.dll
ieocx.dll
sysloc.dll
304434.dll
zoply.dll
734914.dll
788309.dll
890166.dll
512686.dll
367770.dll
124909.dll
311496.dll
912525.dll
119987.dll
590075.dll
848700.dll
768890.dll
242112.dll
907465.dll
857060.dll
709598.dll
804031.dll
931928.dll
788877.dll
814810.dll
892267.dll
238044.dll
altcmd32.dll
guxmhcd.dll
nsduo.dll
vtr357.dll
duocore.dll
vtr441.dll
bgwttyl.dll
gsrnxgh.dll
egzcqg.dll
bpvol.dll
msnhlp32.dll
qch29sr.dll
cfltygd.dll
qxfgcg.dll
adobepnl.dll
tejotilyd.dll
bubbj.dll
isfmdl.dll
gfopyhkh.dll
tvtpwp.dll
bnbs.dll
dcggain.dll
fkdnrwsv.dll
dwnrpofk.dll
pmsoarbf.dll
qadovnel.dll
bdkpfxqw.dll
mmmxgzxg.dll
fshqaln.dll
omlbpkaw.dll
{b91413db-d88a-a499-2661-f9f9441c9f46}.dll
mpfanvqg.dll
wetkadmr.dll
gbplib.dll
gbppdist.dll
winscok.dll
afontext.dll
vbksrofa.dll
blbpeoy.dll
jkqvjzl.dll
ouhzw.dll
mgxfebsq.dll
pikavn.dll
hare32.dll
xappit.dll
sysbas~1.dll
sdetcs.dll
vszynz.dll
rgf.dll
gopfa.dll
gcqltg.dll
qfrmwmq.dll
rtenazot.dll
hcwxds32.dll
ssqomll.dll
mxduo.dll
sconf32.dll
vtr351.dll
zkpssqa.dll
vpccw.dll
jfbakvqj.dll
dooep.dll
lapmvzf.dll
igpfced.dll
uimcu.dll
axlet.dll
vwfps.dll
se_spoof.dll
nsq2B.dll
rldyt.dll
ivrllc.dll
ljhebby.dll
axdpfl.dll
iinqyl.dll
admggxp.dll
tdomgafw.dll
gnmguxh.dll
cxbrk.dll
kcekz.dll
sjrggq.dll
dtseqrxk.dll
zafhemm.dll
bcxjqr.dll
deskmon32.dll
HPIEAddOn.dll
odsaps.dll
iqswi.dll
WLXxeq.dll
WuMO.dll
gsdrgfdrrgnd.dll
rah3b8ffdnd.dll
xwr38547.dll
cy37722.dll
Les processus pour tuer (Trojan Downloader Win32):
ac2_0003.exe
Sys2621.exe
lphc9m9j0e1a3.exe
lphc110j0e78a.exe
lphc9s1j0evd5.exe
YUR2A7.exe
lphc323j0en3c.exe
EsnGOg2W.exe
lsass.exe
lphce5lj0e33g.exe
WinAvXX.exe
dls0523pmw.exe
xpuupdate.exe
svhost.exe
HPAware.exe
ajdnjhfo10.exe
newname3.exe
ecsiin.stub.exe
bvt.exe
installer.exe
bretiuxh.exe
wupeng.exe
svchost.exe
update_check.exe
win32st.exe
mgmrwmrv.exe
wmsdkns.exe
sysrxmfdksp.exe
spools.exe
glock32.exe
mfc42.exe
win32.exe
userinit.exe
wuauclt.exe
sysmon.exe
TempAA.exe
gmillogof.exe
lenveqvt.exe
FD.exe
winlogon.exe
ie_updates3r.exe
cmdbcs.exe
perfs.exe
yyk2954.exe
routing.exe
wupdater.exe
oyhucntf.exe
UGA6P_0001_N122M2802NetInstaller.exe
X117.exe
msn.exe
svchost23.exe
vbpdtvdp.exe
GoogleDesktop.exe
mrofinu1535.exe
iftuyszv.exe
cftmon.exe
Sys77.exe
msupdte.exe
uoyzsydz.exe
lphcnvtj0eve7.exe
rundll32.exe
SysE4E3.exe
Sys2.exe
Sys4.exe
Sys3.exe
Sys1.exe
lphcgu6j0e9av.exe
lphc942j0e9e7.exe
lphc9dpj0e793.exe
VIE7B09.exe
.ttE.tmp.exe
adqnebaf.exe
smss.exe
kzgdudgj.exe
braviax.exe
qtmjcfsj.exe
chslqbih.exe
wcs.exe
buritos.exe
css.exe
zgxwbank.exe
lyryzgjs.exe
c.exe
6LN0dYGS.exe
a.exe
lphcp4vj0et35.exe
lphcrkkj0erbr.exe
video233.cfg.exe
video232.cfg.exe
video1161.cfg.exe
video1019.cfg.exe
lphclq5j0e14p.exe
g.exe
781.exe
Player.exe
lphcnfgj0ep7n.exe
brastk.exe
dmbsvwtk.exe
video1086.cfg.exe
video234.cfg.exe
rkhdl.exe
iebtm.exe
iebtmm.exe
Yy5v3068.exe
xxx5366.exe
~tmpd.exe
h8b3LvB2.exe
vedxga3me2.exe
rs32net.exe
ppcb_32.exe
7Jv5vJhh.exe
hpmon.exe
hpmom.exe
wini10894.exe
qttaskm.exe
qttask.exe
msiconf.exe
setup_241_3777_[2].exe
uesiuqcr.exe
frmwrk32.exe
VIE2.exe
yyy12351.exe
yyy2010.exe
~tmpc.exe
yyy15461.exe
yyy9308.exe
~.exe
yyy289.exe
yyy12224.exe
~tmpb.exe
mVM33I6b.exe
yyy9902.exe
BwNVxGhC.exe
yyy2599.exe
explorer32.exe
yyy10930.exe
~tmpf.exe
ert56264.exe
2XKM2nX1.exe
sysguard.exe
475.tmp.exe
OPLlho18.exe
alg.exe
~tmpi.exe
1rlkp3G3.exe
pCo7V3H8.exe
~tmpx.exe
~tmp3.exe
~tmpp.exe
ckzty22913935.exe
wpiv.exe
svcho.exe
msj.exe
mschr.exe
b1jl2V0m.exe
4115.exe
Terry Santi.exe
msa.exe
msb.exe
userload.exe
svcnost.exe
TpScrex.exe
KAVStart.exe
reader_s.exe
soundmix.exe
Msxrs.exe
syst.exe
licao_de_vida.exe
NeroCheck.exe
leia.exe
xydzyh.exe
2183.exe
theof.exe
5765.exe
18163.exe
ContraVirusPro.exe
bkhujyxs.exe
csrssc.exe
664575600.exe
video.avi[1].exe
_A00F299C205.exe
lphcamlj0ea8a.exe
qbynahkr.exe
jiryrclc.exe
wdarqxox.exe
maxpaynow.exe
lahmtcho.exe
xpupdate.exe
setup73.exe
8764.exe
setup.exe
TXPlatform.exe
ubodh.exe
scit.exe
scm.exe
sbmntr.exe
sbsm.exe
ati2evxx.exe
ieupdates.exe
nod32se.exe
tujwbkbm.exe
edwnghyb.exe
nabmlare.exe
Firewall.exe
wserving.exe
winupdate.exe
Dot1XCfg.exe
wprcaw.exe
exp.exe
servicelayer.exe
amoumain.exe
ctfmon.exe
nvsvc32.exe
bios.exe
winpad32.exe
r56ujxftyrsdjsxrgf46i5sgheh44.exe
qgipz2469937.exe
CbEvtSvc.exe
lwpwer.exe
empa.exe
Sakora.exe
kbdpo.exe
autodisc.exe
odbcconf.exe
~tmp1174.exe
pornivideo03y45i[1].exe
gEehlDA9.exe
l[1].exe
g[1].exe
nJJG.exe
visfdw.exe
load[1].exe
install[1].exe
winvijhq.exe
tisgvi.exe
windsn.exe
adobe_flash[1].exe
AdobeFlash[1].exe
ert51791.exe
new23[1].exe
gr[2].exe
adv111[1].exe
Test.exe
loader[1].exe
~tmpa.exe
c-setup[2].exe
movie434.avi.exe
load1.exe
ni1mg2b5.exe
A4-tmpaoi.exe
ptssvc.exe
zchMiB.exe
psvrr.exe
scvhost.exe
oopuqq1.exe
_A00F220AD.exe
winjmxy.exe
ak1[1].exe
g13dyr.exe
avast!antivirus.exe
ashevtsvc.exe
93679526.exe
13035004.exe
93044996.exe
avp.exe
win2A.tmp.exe
keyboard.exe
mrofinu572.exe
mrofinu1188.exe
gadcom.exe
nidle.exe
99068276.exe
97179996.exe
91724226.exe
11714234.exe
xpa.exe
jpssoft[1].exe
MapEDC.exe
WinAvX.exe
ms050862618809.exe
sclick.exe
servhist.exe
9eabcdc8.exe
dfndr.exe
defender24.exe
keyboard24.exe
newname24.exe
defender20.exe
ipue32.exe
sqldata1.exe
ctdbrr.exe
updmgr.exe
qejdhnvg.exe
sncntr.exe
nvsvca32.exe
nsdlua.exe
conscorr.exe
27.exe
rxjddnvj.exe
sysahbecjh.exe
sysavxjgdu.exe
sysutrnez.exe
wind32.exe
csrss.exe
clfmon.exe
sixyahbi.exe
antivirusinstallfull_en[1].exe
mmc.exe
audiohq.exe
spool.exe
sysi.exe
vip_master_orkut.exe
bsyys.exe
msmsgxs.exe
jrevm.exe
kutorkt.exe
ixplorer.exe
Sys5457.exe
Sys5BE6.exe
1000675417.exe
lphcpevj0elag.exe
lphc783j0eveg.exe
lphcr49j0ea81.exe
lphct1hj0ep35.exe
lphcg9bj0e7e9.exe
lphc71lj0e94p.exe
lphc5mlj0ev7c.exe
lphcva1j0epb9.exe
lphca5sj0ee31.exe
lphct1sj0ele5.exe
lphcv4rj0en23.exe
lphcp19j0e3ac.exe
lphcnn0j0e7c5.exe
lphcej5j0ee4e.exe
lphc1tdj0ea77.exe
lphc5vwj0erb3.exe
lphca35j0ee3c.exe
lphcr6aj0e11v.exe
lphclp6j0ev5p.exe
lphcruaj0e355.exe
lphcpghj0ecfl.exe
lphc5rfj0eg89.exe
lphc3erj0elav.exe
lphcv49j0ejdl.exe
lphcp72j0e1dr.exe
lphc1qtj0ege1.exe
lphcj7cj0ea59.exe
lphc3f8j0eaaa.exe
lphcvhoj0e33t.exe
lphc9v2j0ecfj.exe
lylopybc.exe
gtolsbef.exe
33.tmp.exe
javclcte.exe
lphc59hj0eab1.exe
Cpl32ver.exe
lphc3q4j0epca.exe
qhqrmbyz.exe
telghgtw.exe
Manager.exe
arubinuj.exe
YUR205F.exe
lphccpaj0ec7g.exe
YUR507A.exe
xrg1.exe
lphcl2sj0ep0c.exe
lphcnjcj0e92j.exe
yvudcbaf.exe
wcm.exe
lphcem0j0e72a.exe
video88.cfg.exe
video1140.cfg.exe
video1055.cfg.exe
d.exe
lphcguej0eaep.exe
sft_ver1.1454.0.exe
e.exe
pas.exe
x1psul5R.exe
izwum.exe
sv.exe
svhoster.exe
svzip.exe
runsql.exe
DTProAgent.exe
setup_241_3777_21347_.exe
5rR0NYTX.exe
7.tmp.exe
qUSOWf4S.exe
yyy1022.exe
BC50DF28.exe
yyy3175.exe
EmuleInstaller.exe
yyy10695.exe
yyy4430.exe
891.tmp.exe
~tmpk.exe
yyy14869.exe
yyy10084.exe
yyy8022.exe
lphcavej0epd9.exe
torbjne.exe
yyy6517.exe
vamsoft.exe
ert52014.exe
~tmpy.exe
ert58253.exe
wini10251.exe
0xf9.exe
~tmpn.exe
scvhost32.exe
svchostw.exe
a6.exe
loader.exe
Msmsgs.exe
orkutkut.exe
CdbgEvtSvc.exe
G-Buster.exe
sprof.exe
b.exe
KB75.exe
pidle.exe
Update.exe
msCMTSrvc.exe
ms031779298.exe
dfndrff_e5.exe
dfndref_7.exe
elitelsd32.exe
wupdt.exe
ctfmona.exe
sbwltbxa.exe
sysawpbkvnq.exe
sysnxcphmgy.exe
dnlsvc.exe
77.exe
winsys3.exe
system.exe
winsystem.exe
lphc1gjj0eg45.exe
ivozwzsl.exe
zqfclgjc.exe
wupda.exe
yyy11314.exe
e1GuF5Id.exe
yyy13219.exe
ert59692.exe
ert516368.exe
ert5244.exe
SpeedRunner.exe
brastia.exe
DLD.exe
maxpaynowti1.exe
Facegame.exe
tsitra11.exe
qwinondt.exe
Apoint.exe
~tmpo.exe
promo.exe
Ib2G3XJQ.exe
ahiaw.exe
Owner.exe
svchosb.exe
mslsrv32.exe
k4stl7tuwv80.exe
winxp.exe
restorer32_a.exe
restorer64_a.exe
Sys2621.exe
lphc9m9j0e1a3.exe
lphc110j0e78a.exe
lphc9s1j0evd5.exe
YUR2A7.exe
lphc323j0en3c.exe
EsnGOg2W.exe
lsass.exe
lphce5lj0e33g.exe
WinAvXX.exe
dls0523pmw.exe
xpuupdate.exe
svhost.exe
HPAware.exe
ajdnjhfo10.exe
newname3.exe
ecsiin.stub.exe
bvt.exe
installer.exe
bretiuxh.exe
wupeng.exe
svchost.exe
update_check.exe
win32st.exe
mgmrwmrv.exe
wmsdkns.exe
sysrxmfdksp.exe
spools.exe
glock32.exe
mfc42.exe
win32.exe
userinit.exe
wuauclt.exe
sysmon.exe
TempAA.exe
gmillogof.exe
lenveqvt.exe
FD.exe
winlogon.exe
ie_updates3r.exe
cmdbcs.exe
perfs.exe
yyk2954.exe
routing.exe
wupdater.exe
oyhucntf.exe
UGA6P_0001_N122M2802NetInstaller.exe
X117.exe
msn.exe
svchost23.exe
vbpdtvdp.exe
GoogleDesktop.exe
mrofinu1535.exe
iftuyszv.exe
cftmon.exe
Sys77.exe
msupdte.exe
uoyzsydz.exe
lphcnvtj0eve7.exe
rundll32.exe
SysE4E3.exe
Sys2.exe
Sys4.exe
Sys3.exe
Sys1.exe
lphcgu6j0e9av.exe
lphc942j0e9e7.exe
lphc9dpj0e793.exe
VIE7B09.exe
.ttE.tmp.exe
adqnebaf.exe
smss.exe
kzgdudgj.exe
braviax.exe
qtmjcfsj.exe
chslqbih.exe
wcs.exe
buritos.exe
css.exe
zgxwbank.exe
lyryzgjs.exe
c.exe
6LN0dYGS.exe
a.exe
lphcp4vj0et35.exe
lphcrkkj0erbr.exe
video233.cfg.exe
video232.cfg.exe
video1161.cfg.exe
video1019.cfg.exe
lphclq5j0e14p.exe
g.exe
781.exe
Player.exe
lphcnfgj0ep7n.exe
brastk.exe
dmbsvwtk.exe
video1086.cfg.exe
video234.cfg.exe
rkhdl.exe
iebtm.exe
iebtmm.exe
Yy5v3068.exe
xxx5366.exe
~tmpd.exe
h8b3LvB2.exe
vedxga3me2.exe
rs32net.exe
ppcb_32.exe
7Jv5vJhh.exe
hpmon.exe
hpmom.exe
wini10894.exe
qttaskm.exe
qttask.exe
msiconf.exe
setup_241_3777_[2].exe
uesiuqcr.exe
frmwrk32.exe
VIE2.exe
yyy12351.exe
yyy2010.exe
~tmpc.exe
yyy15461.exe
yyy9308.exe
~.exe
yyy289.exe
yyy12224.exe
~tmpb.exe
mVM33I6b.exe
yyy9902.exe
BwNVxGhC.exe
yyy2599.exe
explorer32.exe
yyy10930.exe
~tmpf.exe
ert56264.exe
2XKM2nX1.exe
sysguard.exe
475.tmp.exe
OPLlho18.exe
alg.exe
~tmpi.exe
1rlkp3G3.exe
pCo7V3H8.exe
~tmpx.exe
~tmp3.exe
~tmpp.exe
ckzty22913935.exe
wpiv.exe
svcho.exe
msj.exe
mschr.exe
b1jl2V0m.exe
4115.exe
Terry Santi.exe
msa.exe
msb.exe
userload.exe
svcnost.exe
TpScrex.exe
KAVStart.exe
reader_s.exe
soundmix.exe
Msxrs.exe
syst.exe
licao_de_vida.exe
NeroCheck.exe
leia.exe
xydzyh.exe
2183.exe
theof.exe
5765.exe
18163.exe
ContraVirusPro.exe
bkhujyxs.exe
csrssc.exe
664575600.exe
video.avi[1].exe
_A00F299C205.exe
lphcamlj0ea8a.exe
qbynahkr.exe
jiryrclc.exe
wdarqxox.exe
maxpaynow.exe
lahmtcho.exe
xpupdate.exe
setup73.exe
8764.exe
setup.exe
TXPlatform.exe
ubodh.exe
scit.exe
scm.exe
sbmntr.exe
sbsm.exe
ati2evxx.exe
ieupdates.exe
nod32se.exe
tujwbkbm.exe
edwnghyb.exe
nabmlare.exe
Firewall.exe
wserving.exe
winupdate.exe
Dot1XCfg.exe
wprcaw.exe
exp.exe
servicelayer.exe
amoumain.exe
ctfmon.exe
nvsvc32.exe
bios.exe
winpad32.exe
r56ujxftyrsdjsxrgf46i5sgheh44.exe
qgipz2469937.exe
CbEvtSvc.exe
lwpwer.exe
empa.exe
Sakora.exe
kbdpo.exe
autodisc.exe
odbcconf.exe
~tmp1174.exe
pornivideo03y45i[1].exe
gEehlDA9.exe
l[1].exe
g[1].exe
nJJG.exe
visfdw.exe
load[1].exe
install[1].exe
winvijhq.exe
tisgvi.exe
windsn.exe
adobe_flash[1].exe
AdobeFlash[1].exe
ert51791.exe
new23[1].exe
gr[2].exe
adv111[1].exe
Test.exe
loader[1].exe
~tmpa.exe
c-setup[2].exe
movie434.avi.exe
load1.exe
ni1mg2b5.exe
A4-tmpaoi.exe
ptssvc.exe
zchMiB.exe
psvrr.exe
scvhost.exe
oopuqq1.exe
_A00F220AD.exe
winjmxy.exe
ak1[1].exe
g13dyr.exe
avast!antivirus.exe
ashevtsvc.exe
93679526.exe
13035004.exe
93044996.exe
avp.exe
win2A.tmp.exe
keyboard.exe
mrofinu572.exe
mrofinu1188.exe
gadcom.exe
nidle.exe
99068276.exe
97179996.exe
91724226.exe
11714234.exe
xpa.exe
jpssoft[1].exe
MapEDC.exe
WinAvX.exe
ms050862618809.exe
sclick.exe
servhist.exe
9eabcdc8.exe
dfndr.exe
defender24.exe
keyboard24.exe
newname24.exe
defender20.exe
ipue32.exe
sqldata1.exe
ctdbrr.exe
updmgr.exe
qejdhnvg.exe
sncntr.exe
nvsvca32.exe
nsdlua.exe
conscorr.exe
27.exe
rxjddnvj.exe
sysahbecjh.exe
sysavxjgdu.exe
sysutrnez.exe
wind32.exe
csrss.exe
clfmon.exe
sixyahbi.exe
antivirusinstallfull_en[1].exe
mmc.exe
audiohq.exe
spool.exe
sysi.exe
vip_master_orkut.exe
bsyys.exe
msmsgxs.exe
jrevm.exe
kutorkt.exe
ixplorer.exe
Sys5457.exe
Sys5BE6.exe
1000675417.exe
lphcpevj0elag.exe
lphc783j0eveg.exe
lphcr49j0ea81.exe
lphct1hj0ep35.exe
lphcg9bj0e7e9.exe
lphc71lj0e94p.exe
lphc5mlj0ev7c.exe
lphcva1j0epb9.exe
lphca5sj0ee31.exe
lphct1sj0ele5.exe
lphcv4rj0en23.exe
lphcp19j0e3ac.exe
lphcnn0j0e7c5.exe
lphcej5j0ee4e.exe
lphc1tdj0ea77.exe
lphc5vwj0erb3.exe
lphca35j0ee3c.exe
lphcr6aj0e11v.exe
lphclp6j0ev5p.exe
lphcruaj0e355.exe
lphcpghj0ecfl.exe
lphc5rfj0eg89.exe
lphc3erj0elav.exe
lphcv49j0ejdl.exe
lphcp72j0e1dr.exe
lphc1qtj0ege1.exe
lphcj7cj0ea59.exe
lphc3f8j0eaaa.exe
lphcvhoj0e33t.exe
lphc9v2j0ecfj.exe
lylopybc.exe
gtolsbef.exe
33.tmp.exe
javclcte.exe
lphc59hj0eab1.exe
Cpl32ver.exe
lphc3q4j0epca.exe
qhqrmbyz.exe
telghgtw.exe
Manager.exe
arubinuj.exe
YUR205F.exe
lphccpaj0ec7g.exe
YUR507A.exe
xrg1.exe
lphcl2sj0ep0c.exe
lphcnjcj0e92j.exe
yvudcbaf.exe
wcm.exe
lphcem0j0e72a.exe
video88.cfg.exe
video1140.cfg.exe
video1055.cfg.exe
d.exe
lphcguej0eaep.exe
sft_ver1.1454.0.exe
e.exe
pas.exe
x1psul5R.exe
izwum.exe
sv.exe
svhoster.exe
svzip.exe
runsql.exe
DTProAgent.exe
setup_241_3777_21347_.exe
5rR0NYTX.exe
7.tmp.exe
qUSOWf4S.exe
yyy1022.exe
BC50DF28.exe
yyy3175.exe
EmuleInstaller.exe
yyy10695.exe
yyy4430.exe
891.tmp.exe
~tmpk.exe
yyy14869.exe
yyy10084.exe
yyy8022.exe
lphcavej0epd9.exe
torbjne.exe
yyy6517.exe
vamsoft.exe
ert52014.exe
~tmpy.exe
ert58253.exe
wini10251.exe
0xf9.exe
~tmpn.exe
scvhost32.exe
svchostw.exe
a6.exe
loader.exe
Msmsgs.exe
orkutkut.exe
CdbgEvtSvc.exe
G-Buster.exe
sprof.exe
b.exe
KB75.exe
pidle.exe
Update.exe
msCMTSrvc.exe
ms031779298.exe
dfndrff_e5.exe
dfndref_7.exe
elitelsd32.exe
wupdt.exe
ctfmona.exe
sbwltbxa.exe
sysawpbkvnq.exe
sysnxcphmgy.exe
dnlsvc.exe
77.exe
winsys3.exe
system.exe
winsystem.exe
lphc1gjj0eg45.exe
ivozwzsl.exe
zqfclgjc.exe
wupda.exe
yyy11314.exe
e1GuF5Id.exe
yyy13219.exe
ert59692.exe
ert516368.exe
ert5244.exe
SpeedRunner.exe
brastia.exe
DLD.exe
maxpaynowti1.exe
Facegame.exe
tsitra11.exe
qwinondt.exe
Apoint.exe
~tmpo.exe
promo.exe
Ib2G3XJQ.exe
ahiaw.exe
Owner.exe
svchosb.exe
mslsrv32.exe
k4stl7tuwv80.exe
winxp.exe
restorer32_a.exe
restorer64_a.exe
Enlevez des entrées d'enregistrement (Trojan Downloader Win32):
RUNNING PROGRAM\tempo-139421.tmp
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{54629298-47B2-4F79-BC62-7B3648D70020}
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catal
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys2621.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9m9j0e1a3
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc110j0e78a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9s1j0evd5
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\gkglqoue
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR2A7.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc323j0en3c
RUNNING PROGRAM\EsnGOg2W.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS\ AppInit_DLLs
RUNNING PROGRAM\531.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lsass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{C6C7B2A1-00F3-42BD-F434-00AABA2C8953}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphce5lj0e33g
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{f39d0dee-b2f0-4591-9187-1cc39c1df98a}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WinAVX
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{18a8f76b-804b-4981-b87c-460699971a4b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{eb86b46a-d6db-4478-8f5f-06cb2ebc1b35}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Net Agent
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{29C5A3B6-9A8D-4FA0-B5AD-3E20F4AA5C00}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABCDECF0-4B15-11D1-ABED-709549C10000}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Windows Updater Servc
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\svhost
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5A184FC-1B2B-49FC-B71A-C4790F5801CC}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\HP Update Assistant
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{53B5F2B1-94DD-43E5-8187-EB4E31F00701}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B8C5186E-EC37-4889-9C2E-F73649FFB7BB}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{31615D5C-5126-448A-818A-A7CDFEE85A9B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0e4e5110-a772-4c4a-a7dc-137fe10abd6e}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6ACAE64-F798-4930-AD86-BD3FB32038DB}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{84938242-5C5B-4A55-B6B9-A1507543B418}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1a1ddc19-5893-43ab-a73f-f41a0f34d115}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{274c0420-ebe0-4f1d-b473-edd1aa9b85dd}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8bf5b8fc-11cb-409f-8c91-4d4ca04a1b6d}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\loaddr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensSrv
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7fcf04b6-6354-47ef-b45e-a48268e92757}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\newname
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ecsiin
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4113DD2D-400C-4BED-BD20-526AF2F8CB35}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{24D7D87C-FFB6-4AE9-9BBF-949F17CF7990}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\SysScan
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6828CA-9E42-462C-BC60-418C8144012C}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Installer Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\pacrgp
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0123eb75-964c-4cb3-b796-431cc9099570}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Winupdate Engine
RUNNING PROGRAM\explorer.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Host Process
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Maxp2p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SMSERIALSTARTER
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{f0d4f88e-e1f8-460f-a41c-6cfb7f73af79}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
RUNNING PROGRAM\lsass.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {E4785213-3EFE-4c26-A9B4-332440E31F6F}
RUNNING PROGRAM\winlogon.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ntuser
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Glock Suite 1.1
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mfc42
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TechZonne
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ advap32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Systems
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Windows Accounts Driver
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MacDrive7.0.4TimeOutPatch
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{7C109800-A5D5-438F-9640-18D17E168B88}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lenveqvt
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ FD_SAP
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{F08555B0-9CC3-11D2-AA8E-000000000000}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Google Online Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cmdbcs
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\perfmons Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xmens32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Routing Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ updater
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yzxlpiay
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NI.XPCTP_0001_N93C1703 Data = "C:\Documents and Settings\Administrator\Name = NI.UGA
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MyTrayMessageBoxX117
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ symanteccsysconf
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost23
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WinCtrl32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Google Desktop Search
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ runner1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ autoload
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys77.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft WinUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnvtj0eve7
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SysE4E3.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys2.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys4.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys3.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys1.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{2f199d0e-f3e7-41a7-a060-816c24cceea0}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcgu6j0e9av
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0fe36c74-667b-454b-828e-75e4e72cbef8}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc942j0e9e7
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9dpj0e793
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \VIE7B09.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ inrhcr1cj0er1q
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ admcmd
RUNNING PROGRAM\smss.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ websmartchk
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ braviax
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GenHlpAct
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SetEnGen
RUNNING PROGRAM\wcs.exe
RUNNING PROGRAM\buritos.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Css
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mntsh
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysgen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Cognac
RUNNING PROGRAM\6LN0dYGS.exe
RUNNING PROGRAM\a.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp4vj0et35
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcrkkj0erbr
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSFox
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphclq5j0e14p
RUNNING PROGRAM\g.exe
RUNNING PROGRAM\781.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnfgj0ep7n
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ braviax
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ApiApp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\crypt
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Somefox
RUNNING PROGRAM\rkhdl.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Player
RUNNING PROGRAM\iebtm.exe
RUNNING PROGRAM\iebtmm.exe
RUNNING PROGRAM\Yy5v3068.exe
RUNNING PROGRAM\brastk.exe
RUNNING PROGRAM\~tmpd.exe
RUNNING PROGRAM\h8b3LvB2.exe
RUNNING PROGRAM\vedxga3me2.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ rs32net
RUNNING PROGRAM\ppcb_32.exe
RUNNING PROGRAM\7Jv5vJhh.exe
RUNNING PROGRAM\hpmon.exe
RUNNING PROGRAM\hpmom.exe
RUNNING PROGRAM\wini10894.exe
RUNNING PROGRAM\qttaskm.exe
RUNNING PROGRAM\qttask.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{020487CC-FC04-4B1E-863F-D9801796230B}
RUNNING PROGRAM\msiconf.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ InstallProgram
RUNNING PROGRAM\frmwrk32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\b86798e350
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \VIE2.exe
RUNNING PROGRAM\~tmpc.exe
RUNNING PROGRAM\~.exe
RUNNING PROGRAM\yyy289.exe
RUNNING PROGRAM\mVM33I6b.exe
RUNNING PROGRAM\BwNVxGhC.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ieupdate
RUNNING PROGRAM\11.tmp
RUNNING PROGRAM\~tmpf.exe
RUNNING PROGRAM\2XKM2nX1.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysguard
RUNNING PROGRAM\OPLlho18.exe
RUNNING PROGRAM\sysguard.exe
RUNNING PROGRAM\alg.exe
RUNNING PROGRAM\~tmpi.exe
RUNNING PROGRAM\1rlkp3G3.exe
RUNNING PROGRAM\pCo7V3H8.exe
RUNNING PROGRAM\~tmpx.exe
RUNNING PROGRAM\~tmp3.exe
RUNNING PROGRAM\~tmpp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ realtecks
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 20453
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN\ svcho
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ColdWare
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Java Syncro
RUNNING PROGRAM\b1jl2V0m.exe
RUNNING PROGRAM\4115.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Terry Santi
RUNNING PROGRAM\msa.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00592D1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restor
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TpScrex
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ KavStart
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SharedAPPs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ reader_s
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ prnet
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ soundmix
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ JavaScriptMsxrs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NeroFilterCheck
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xydzyh
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c0076B51
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN\ theof
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00E2D44
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A113A77-F330-23E6-F468-0891816CEC35}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{480598DD-AE28-48B7-82F7-6ADDA1AA6B66}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byxyvtq
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBE5BEE8-F032-11DB-826A-C4BB56D89593}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ContraVirus
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Windows Update Svc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ p1QV1vjgfH
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Jnskdfmf9eldfd
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8B65F8A9-BAD5-4261-BB6F-25B2020C3098}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{F757B0A0-E8CA-4CC3-BFF5-DECD70DFEEDA}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{21A237A4-3A94-4198-911D-647ED2263DD2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{64466B8E-20A7-4A4A-AFF4-AAD9CA68B52C}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8710DF42-3171-4A3B-9079-3F7D7101552B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{156DD78A-CB74-4822-A17C-9CF02B43F72A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A2F253AD-1F23-4D87-A64B-D6987F38D981}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{BE1A344F-9FF5-4024-949B-52205E6DB2D0}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A013E591-B570-4013-A2D6-E8CB72E80FAF}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{500BCA15-57A7-4eaf-8143-8C619470B13D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DE5F80FD-8A16-4E53-A670-25EDD1152274}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{99C6D1BB-7555-474C-91DA-D8FB62A9CC75}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{06717D20-4FAA-48E1-B4BA-E8F80DAF1F06}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{5B171109-DED1-4403-90E9-6F7778533B9A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A8485774-8230-4D88-B00F-4A04A3E4FC1C}
RUNNING PROGRAM\c.exe
RUNNING PROGRAM\664575600.exe
RUNNING PROGRAM\video.avi[1].exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ A00F299C205.exe
RUNNING PROGRAM\lphcamlj0ea8a.exe
RUNNING PROGRAM\ntuser.com
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ setdb
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{baca5b3b-dd57-4e62-b986-9a5677fbf001}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ procmongen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ endsc
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{53322B35-2C26-4FAC-A713-C31BBAA1C636}
RUNNING PROGRAM\rld6.tmp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ dc2k5
RUNNING PROGRAM\8D1.tmp
RUNNING PROGRAM\F1EF.tmp
RUNNING PROGRAM\maxpaynow.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Host Process
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ msgstr
RUNNING PROGRAM\229F.tmp
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A4D16645-4149-41FB-B670-E06072E540C1}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows update loader
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Windows Installer
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{B8301AF7-D00E-4EA4-87C1-5FF4644FBBA1}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8AE578E0-6DF5-41E0-869F-F65A32D2F6BD}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2FF811E6-8925-4084-A649-C159955E67E8}
RUNNING PROGRAM\CSSRSS.EXE
RUNNING PROGRAM\TXPlatform.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{99BA268B-4021-4739-9945-3C774217FE75}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Windows Adapter 5.1.3214
RUNNING PROGRAM\scit.exe
RUNNING PROGRAM\scm.exe
RUNNING PROGRAM\sbmntr.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{7C109800-A5D5-438F-9640-18D17E168B88}
RUNNING PROGRAM\sbsm.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Duas
RUNNING PROGRAM\nod32se.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ywcbrflh
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ hzdppaon
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ jezokyfs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Firewall.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SVCHOST.EXE
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WServing Service
RUNNING PROGRAM\winupdate.exe
RUNNING PROGRAM\Dot1XCfg.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winsync
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\exp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ servicelayer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ amoumain
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\zx
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmon
RUNNING PROGRAM\qgipz2469937.exe
RUNNING PROGRAM\r56ujxftyrsdjsxrgf46i5sgheh44.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Advanced DHTML Enable
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{500BCA15-57A7-4eaf-8143-8C619470B13D}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ bios
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvSvc
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C613CE22-151C-4331-94FF-F113A153F66D}
{C613CE22-151C-4331-94FF-F113A153F66D}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99C6D1BB-7555-474C-91DA-D8FB62A9CC75}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Sakora
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A8D06B4-1B40-009F-E531-629A59080F43}
{2A8D06B4-1B40-009F-E531-629A59080F43}
hzfeL1.BhoApp
hzfeL1.BhoApp.1
Microsoft\Windows\CurrentVersion\Uninstall\xaczweo
Microsoft\Windows\CurrentVersion\Run\(ProtectedStorage)
Microsoft\Windows\CurrentVersion\Run\(RPC)
Microsoft\Windows\CurrentVersion\Run\(Themes)
xaczweo
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\winlogone
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WinDNS
Microsoft\Windows\CurrentVersion\Run\Mmexofumutokara
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7919015-910D-44BB-9059-4080A4D64ABD}
{D7919015-910D-44BB-9059-4080A4D64ABD}
{B239A766-5643-466A-A35C-C55446C9920F}
{E040CB09-0780-471A-903C-25E6C594111E}
Leofa
Leofa.1
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6978074F-9702-4EDB-8172-4DD019693D40}
{6978074F-9702-4EDB-8172-4DD019693D40}
{1844B74D-6338-442F-9A2A-4B939DABCB7E}
{5026DFE5-D709-41B5-82AA-9215CF85B38A}
KiskOps
KiskOps.1
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CC2F638-99FF-45d2-97C7-E30E83CF04D2}
{5CC2F638-99FF-45d2-97C7-E30E83CF04D2}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
IEocxApp.IEocx
IEocxApp.IEocx.1
{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}
{A54DC52D-7AAD-4D40-A126-337211631EDC}
{B360243E-09E8-402F-8721-00B6798089AD}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{437A43D5-E5C3-4959-BBD0-F2BFB1EDC6FD}
RUNNING PROGRAM\19.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93679526
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13035004
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93044996
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winupdate.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\avp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\keyboard
RUNNING PROGRAM\gadcom.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ nidle
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99068276
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 97179996
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 91724226
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11714234
RUNNING PROGRAM\avast!Antivirus.exe
RUNNING PROGRAM\AshEvtSvc.exe
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\avast!Antivirus
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0BD071A6-C989-49E8-9B8E-80F92A868E26}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{72207979-90E0-41EA-A6A6-9EAA2D1BB83F}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A48FE9AC-DD02-4FF7-9211-B7BA9A2C8BF2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{51B15F5A-E98B-4658-B9CB-9307B74773A7}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{CAD68085-8805-4FD3-AA1E-2E282ED7E7A2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{51fc8c8a-a290-44bb-9331-c2d3289976a6}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{95325092-62FC-473B-B32A-AE613278855B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0354731f-950c-4a53-bc2b-132b5ee6b0fa}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2231839A-F38E-4066-BF3C-959006189942}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{AFC8A14F-B50A-4F0F-8FB7-77982092D81D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0CC6DB27-243B-4450-96A7-7E868225858D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{446EF370-1987-49DB-AAFF-8EC680903F7A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{4B05A613-988E-4FA1-B2D7-55A1145FD1EF}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{73D8D2C9-E615-4A23-8013-30FFF3C5BF8E}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{6CCBAFC1-5285-494F-93F1-6894C87A9C43}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DCA2089A-9FFE-4025-869D-6DF987858DB9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{C82B3296-FC52-4CD7-876B-8147E28DA748}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{5F6D7A37-A3D1-47F1-920D-3F48370D509B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{7BC9C2E2-73A6-4FCF-B73D-CBAA20B31C9B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DC59D6DA-7CDE-4874-9F97-41C82C177069}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{25E0128D-AAFC-49FF-AB11-1F12C2FCC391}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CbEvtSvc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 23667436964095406121069801947504
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{C0F371D7-926D-4700-B65E-63BFF1197205}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{45531D08-A710-B0E6-14C1-D4E2BEA6B724}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MapEDC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fedff4ae-1302-4b8a-bda9-43b9f67b9749}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ACD85107-9CF9-4C9E-B0B7-39940A0017C0}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5DDE5591-A8AB-4897-93EF-1E4E943F85A7}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{283A0EE3-2CC1-45AB-8207-B1D7B69C7F83}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{cfda6372-043c-48d2-ba3c-7bfe1cf71854}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7A8F5B7A-A74F-495E-8A33-DF6226D2BAD8}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{c704547b-26c0-4222-a034-81653c07b494}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ms050862618809
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ede8bed5-92cf-4482-8f51-a01cd9b3ea37}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\sclick
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FC80E00-41B0-4F74-BC16-2C83ED49CAC9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEFBE5D6-FEFF-4CB4-AA26-6A464090CB89}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D5849A2-93F3-429D-FF34-260A2068897C}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{1a29a79a-b9c8-44a9-bedf-7fadde3cf33f}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\jjkdsks3B612
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ff170564-36c8-43f7-9100-559e166405cf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{bf1ced2c-4b3f-4079-a330-864eda5a4cff}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{202a961f-23ae-42b1-9505-ffe3c818d717}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{2be26361-58a2-4836-be57-b838f02fec3f}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{479fd0cf-5be9-4c63-8cda-b6d371c67bd5}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\9eabcdc8.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{686a161d-5bd1-4999-8832-6393f41e564c}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\defender
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E8FA924-DEF0-4E71-8A82-A11CA0C1413B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6ab7158b-4bff-4160-ad7d-4d622df548cf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7D19E8E-A715-476D-9EDE-F4730C56014A}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ipue32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\AutoLoaderAproposClient
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WINDOWSflashbrg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\odufacl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\updmgr
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{1817ab5d-25bf-4d5e-ba90-6e5fe658fc5f}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{43BF8E0C-886D-4103-8DDB-2DFE0E8A0168}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c009BE76
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\vyrmxwne
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\qejdhnvg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\sncntr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\nvsvca32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\nsdlua
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\conscorr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c0078B7C
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d8b937a4-cdad-497b-a872-8da7c4c3ef6f}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvGraphicsInterface
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WLCtrl32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Network Provisioning Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {7DD4A7AC-A3F1-4495-884A-7947C5B89108}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {2C70168B-97CE-4f31-B85D-1FEC5002721D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{9c87cb31-93d0-4f3e-a360-4a91ff77aeb7}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {DD651081-A909-45ad-BD71-2335B0ADE043}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Googles Onlines Search Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ csrss
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TBMExe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ navpdt.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{4a9e875b-d032-45e4-8294-789fe3be5b19}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NI.GA6P_0001_N122C2802
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\COM+ System Executer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ AudioHQ
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysi
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Mespanger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SymantecFilterCheck
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ msmsgxs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Java VM Launch
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{A4F94C0C-54A7-4DB1-9AF3-B22E63D00401}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Services Orkut
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ixplorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys5457.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys5BE6.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ecc974ae-6ede-44a2-90da-93b996d8eaf8}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcpevj0elag
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{c96395b8-ab09-46a4-b539-7ddf6e061808}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc783j0eveg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcr49j0ea81
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphct1hj0ep35
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcg9bj0e7e9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc71lj0e94p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5mlj0ev7c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcva1j0epb9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphca5sj0ee31
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphct1sj0ele5
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{97d2dfac-9acb-4d6f-ac2b-ab6ee090f649}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcv4rj0en23
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp19j0e3ac
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnn0j0e7c5
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcej5j0ee4e
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1tdj0ea77
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5vwj0erb3
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphca35j0ee3c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcr6aj0e11v
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphclp6j0ev5p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcruaj0e355
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcpghj0ecfl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5rfj0eg89
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3erj0elav
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcv49j0ejdl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp72j0e1dr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1qtj0ege1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcj7cj0ea59
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3f8j0eaaa
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcvhoj0e33t
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9v2j0ecfj
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mongenen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ UtilHlp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DbHlp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc59hj0eab1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Cpl32ver
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3q4j0epca
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DbWinMon
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SetDsc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Run
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ infomsgmon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR205F.exe
RUNNING PROGRAM\lphccpaj0ec7g.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR507A.exe
RUNNING PROGRAM\xrg1.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcl2sj0ep0c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnjcj0e92j
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysmnt
RUNNING PROGRAM\wcm.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcem0j0e72a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\vszynz
RUNNING PROGRAM\d.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcguej0eaep
RUNNING PROGRAM\sft_ver1.1454.0.exe
RUNNING PROGRAM\e.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ba934431-76af-4c99-93c2-c3d21944a72e}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ PersonalAntiSpy
RUNNING PROGRAM\x1psul5R.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d54f12f7-4d76-4c39-a096-e51ef5d33f2b}
RUNNING PROGRAM\7F6B.tmp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ izwu
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ systemz
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ netsv32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ net64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ netzip
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ runsql
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DAEMON Tools Pro Agent
RUNNING PROGRAM\5rR0NYTX.exe
RUNNING PROGRAM\7.tmp.exe
RUNNING PROGRAM\qUSOWf4S.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {90BF8224-CD63-4081-A4C7-EF9A2CF6596F}
RUNNING PROGRAM\EmuleInstaller.exe
RUNNING PROGRAM\891.tmp.exe
RUNNING PROGRAM\ncswaormex.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcavej0epd9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vhostcheck
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vamsoft
RUNNING PROGRAM\BN20.tmp
RUNNING PROGRAM\ert58253.exe
RUNNING PROGRAM\wini10251.exe
RUNNING PROGRAM\0xf9.exe
RUNNING PROGRAM\~tmpn.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\241a8c4151
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost32
RUNNING PROGRAM\svchostw.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Ex
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Msmsgs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GlobalFlagorkutkut
RUNNING PROGRAM\CdbgEvtSvc.exe
RUNNING PROGRAM\CbEvtSvc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ avp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE\ Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sprof
RUNNING PROGRAM\KB75.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ pidle
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\ssqomll
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88418AA3-16F5-4FC2-A9D8-90B1266DF841}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{208D7BCC-9857-4C9E-823B-D04E72490A67}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF12CF13-DC3B-461C-B5CE-894806C15303}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d1e5ca97-235e-4ff0-9b92-7543c9d61ff4}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{e758745e-b8aa-47ac-a652-6307ff5f3ebf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{420C4981-32CC-AF09-C412-03797A5A3F37}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\{30D72EC3-07D4-1033-0330-060115070001}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{44e670f2-d57b-4815-a576-955d17dbbf2d}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fde1bd72-ca80-443f-9526-595337b73878}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{36ADA89D-2440-4DC4-820A-3A05E8630935}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8bbe40fd-0416-4c3f-80ea-0c7ad5fb1aab}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Content Monitoring Tool
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{6ad686b9-ab56-4ebc-a804-9f70b55b4577}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8670ee50-01f9-47da-ac1e-cf8549e9e521}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{951a98d0-dad6-4a77-8280-a494279a884b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ae18da4e-be15-4925-81bb-890c04af0200}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ms031779298
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{385066e0-23f3-11db-a98b-0800200c9a66}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{23FB5ADD-DA37-4a40-9FC0-B0E2384CDE92}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b0398eca-0bcd-4645-8261-5e9dc70248d0}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\antiware
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Win ServerUpdt
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b0883848-1466-4470-a418-3fe7d36694b9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b585105c-0e84-4ef0-9c6a-fbe134a72945}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\IMSMIG
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\ljhebby
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fce1c203-ff2b-4ec1-9983-e2900d29bbd8}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{27cb634d-c84e-4c00-9b53-f5523601dbad}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmona
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TBMonEx
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MS Software Shadow Download Provider
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Mesppanger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinSys3
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{629340b5-8df6-4211-9245-a86563a35792}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8dc71747-ace0-40c1-8947-54f107d0639b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d3b82107-f8fa-4ef3-8066-136e22872d4e}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1gjj0eg45
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8d332d3a-0114-4492-8521-c2b93b4db160}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ geninfocmd
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mntactsmart
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Tair
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{e3623691-f85d-48d8-8e4d-abe79077f841}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WebSUpdater
RUNNING PROGRAM\e1GuF5Id.exe
RUNNING PROGRAM\userinit.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SpeedRunner
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastia
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ LUOM
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DriveSystem
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Facegame
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gadcom
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{25B8D58C-B0CB-46b0-BA64-05B3804E4E86}
RUNNING PROGRAM\b.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ExploreUpdSched
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Apoint
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{F38636ED-E66E-4A37-822E-0C01F64D6605}
RUNNING PROGRAM\promo.exe
RUNNING PROGRAM\Ib2G3XJQ.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ apocasw
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\iqswi
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{D5BF4552-94F1-42BD-F434-3604812C807D}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Owner
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00E2167
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ regdiit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Driver Setup
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ k4stl7wuwvo9
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{BC2471D2-B720-38D6-9A61-C780EFC93A81}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2508CBA6-AD92-3624-9005-4383115B413F}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restorer32_a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restorer64_a
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{54629298-47B2-4F79-BC62-7B3648D70020}
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catal
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys2621.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9m9j0e1a3
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc110j0e78a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9s1j0evd5
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\gkglqoue
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR2A7.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc323j0en3c
RUNNING PROGRAM\EsnGOg2W.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS\ AppInit_DLLs
RUNNING PROGRAM\531.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lsass
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{C6C7B2A1-00F3-42BD-F434-00AABA2C8953}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphce5lj0e33g
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{f39d0dee-b2f0-4591-9187-1cc39c1df98a}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WinAVX
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{18a8f76b-804b-4981-b87c-460699971a4b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{eb86b46a-d6db-4478-8f5f-06cb2ebc1b35}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Net Agent
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{29C5A3B6-9A8D-4FA0-B5AD-3E20F4AA5C00}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ABCDECF0-4B15-11D1-ABED-709549C10000}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Windows Updater Servc
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\svhost
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5A184FC-1B2B-49FC-B71A-C4790F5801CC}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\HP Update Assistant
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{53B5F2B1-94DD-43E5-8187-EB4E31F00701}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B8C5186E-EC37-4889-9C2E-F73649FFB7BB}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{31615D5C-5126-448A-818A-A7CDFEE85A9B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0e4e5110-a772-4c4a-a7dc-137fe10abd6e}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6ACAE64-F798-4930-AD86-BD3FB32038DB}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{84938242-5C5B-4A55-B6B9-A1507543B418}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1a1ddc19-5893-43ab-a73f-f41a0f34d115}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{274c0420-ebe0-4f1d-b473-edd1aa9b85dd}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8bf5b8fc-11cb-409f-8c91-4d4ca04a1b6d}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a43385f0-7113-496d-96d7-b9b550e3fcca}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\loaddr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensSrv
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7fcf04b6-6354-47ef-b45e-a48268e92757}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\newname
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ecsiin
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4113DD2D-400C-4BED-BD20-526AF2F8CB35}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{24D7D87C-FFB6-4AE9-9BBF-949F17CF7990}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\SysScan
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6828CA-9E42-462C-BC60-418C8144012C}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Installer Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\pacrgp
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0123eb75-964c-4cb3-b796-431cc9099570}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Winupdate Engine
RUNNING PROGRAM\explorer.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Host Process
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Maxp2p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SMSERIALSTARTER
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{f0d4f88e-e1f8-460f-a41c-6cfb7f73af79}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
RUNNING PROGRAM\lsass.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {E4785213-3EFE-4c26-A9B4-332440E31F6F}
RUNNING PROGRAM\winlogon.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ntuser
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Glock Suite 1.1
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mfc42
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TechZonne
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ advap32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Systems
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Windows Accounts Driver
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MacDrive7.0.4TimeOutPatch
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{7C109800-A5D5-438F-9640-18D17E168B88}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lenveqvt
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ FD_SAP
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{F08555B0-9CC3-11D2-AA8E-000000000000}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Google Online Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cmdbcs
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\perfmons Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xmens32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Routing Service
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ updater
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yzxlpiay
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NI.XPCTP_0001_N93C1703 Data = "C:\Documents and Settings\Administrator\Name = NI.UGA
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MyTrayMessageBoxX117
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ symanteccsysconf
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost23
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WinCtrl32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Google Desktop Search
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ runner1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ autoload
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys77.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft WinUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnvtj0eve7
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SysE4E3.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys2.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys4.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys3.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys1.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{2f199d0e-f3e7-41a7-a060-816c24cceea0}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcgu6j0e9av
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0fe36c74-667b-454b-828e-75e4e72cbef8}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc942j0e9e7
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9dpj0e793
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \VIE7B09.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ inrhcr1cj0er1q
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ admcmd
RUNNING PROGRAM\smss.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ websmartchk
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ braviax
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GenHlpAct
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SetEnGen
RUNNING PROGRAM\wcs.exe
RUNNING PROGRAM\buritos.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Css
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mntsh
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysgen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Cognac
RUNNING PROGRAM\6LN0dYGS.exe
RUNNING PROGRAM\a.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp4vj0et35
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcrkkj0erbr
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSFox
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphclq5j0e14p
RUNNING PROGRAM\g.exe
RUNNING PROGRAM\781.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnfgj0ep7n
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ braviax
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ApiApp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\crypt
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Somefox
RUNNING PROGRAM\rkhdl.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Player
RUNNING PROGRAM\iebtm.exe
RUNNING PROGRAM\iebtmm.exe
RUNNING PROGRAM\Yy5v3068.exe
RUNNING PROGRAM\brastk.exe
RUNNING PROGRAM\~tmpd.exe
RUNNING PROGRAM\h8b3LvB2.exe
RUNNING PROGRAM\vedxga3me2.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ rs32net
RUNNING PROGRAM\ppcb_32.exe
RUNNING PROGRAM\7Jv5vJhh.exe
RUNNING PROGRAM\hpmon.exe
RUNNING PROGRAM\hpmom.exe
RUNNING PROGRAM\wini10894.exe
RUNNING PROGRAM\qttaskm.exe
RUNNING PROGRAM\qttask.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{020487CC-FC04-4B1E-863F-D9801796230B}
RUNNING PROGRAM\msiconf.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ InstallProgram
RUNNING PROGRAM\frmwrk32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\b86798e350
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \VIE2.exe
RUNNING PROGRAM\~tmpc.exe
RUNNING PROGRAM\~.exe
RUNNING PROGRAM\yyy289.exe
RUNNING PROGRAM\mVM33I6b.exe
RUNNING PROGRAM\BwNVxGhC.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ieupdate
RUNNING PROGRAM\11.tmp
RUNNING PROGRAM\~tmpf.exe
RUNNING PROGRAM\2XKM2nX1.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysguard
RUNNING PROGRAM\OPLlho18.exe
RUNNING PROGRAM\sysguard.exe
RUNNING PROGRAM\alg.exe
RUNNING PROGRAM\~tmpi.exe
RUNNING PROGRAM\1rlkp3G3.exe
RUNNING PROGRAM\pCo7V3H8.exe
RUNNING PROGRAM\~tmpx.exe
RUNNING PROGRAM\~tmp3.exe
RUNNING PROGRAM\~tmpp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ realtecks
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 20453
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN\ svcho
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ColdWare
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Java Syncro
RUNNING PROGRAM\b1jl2V0m.exe
RUNNING PROGRAM\4115.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Terry Santi
RUNNING PROGRAM\msa.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00592D1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restor
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TpScrex
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ KavStart
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SharedAPPs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ reader_s
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ prnet
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ soundmix
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ JavaScriptMsxrs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NeroFilterCheck
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xydzyh
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c0076B51
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN\ theof
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00E2D44
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A113A77-F330-23E6-F468-0891816CEC35}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{480598DD-AE28-48B7-82F7-6ADDA1AA6B66}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byxyvtq
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBE5BEE8-F032-11DB-826A-C4BB56D89593}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ContraVirus
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Windows Update Svc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ p1QV1vjgfH
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Jnskdfmf9eldfd
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8B65F8A9-BAD5-4261-BB6F-25B2020C3098}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{F757B0A0-E8CA-4CC3-BFF5-DECD70DFEEDA}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{21A237A4-3A94-4198-911D-647ED2263DD2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{64466B8E-20A7-4A4A-AFF4-AAD9CA68B52C}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8710DF42-3171-4A3B-9079-3F7D7101552B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{156DD78A-CB74-4822-A17C-9CF02B43F72A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{3B7AAEB1-9F3D-4491-9C06-C7165CA8D058}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A2F253AD-1F23-4D87-A64B-D6987F38D981}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{BE1A344F-9FF5-4024-949B-52205E6DB2D0}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A013E591-B570-4013-A2D6-E8CB72E80FAF}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{500BCA15-57A7-4eaf-8143-8C619470B13D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DE5F80FD-8A16-4E53-A670-25EDD1152274}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{99C6D1BB-7555-474C-91DA-D8FB62A9CC75}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0BD44AB1-76A7-4E05-92F4-4B065FE72BD6}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{06717D20-4FAA-48E1-B4BA-E8F80DAF1F06}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{5B171109-DED1-4403-90E9-6F7778533B9A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A8485774-8230-4D88-B00F-4A04A3E4FC1C}
RUNNING PROGRAM\c.exe
RUNNING PROGRAM\664575600.exe
RUNNING PROGRAM\video.avi[1].exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ A00F299C205.exe
RUNNING PROGRAM\lphcamlj0ea8a.exe
RUNNING PROGRAM\ntuser.com
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ setdb
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{baca5b3b-dd57-4e62-b986-9a5677fbf001}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ procmongen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ endsc
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{53322B35-2C26-4FAC-A713-C31BBAA1C636}
RUNNING PROGRAM\rld6.tmp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ dc2k5
RUNNING PROGRAM\8D1.tmp
RUNNING PROGRAM\F1EF.tmp
RUNNING PROGRAM\maxpaynow.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Host Process
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ msgstr
RUNNING PROGRAM\229F.tmp
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A4D16645-4149-41FB-B670-E06072E540C1}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows update loader
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Windows Installer
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{B8301AF7-D00E-4EA4-87C1-5FF4644FBBA1}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{8AE578E0-6DF5-41E0-869F-F65A32D2F6BD}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2FF811E6-8925-4084-A649-C159955E67E8}
RUNNING PROGRAM\CSSRSS.EXE
RUNNING PROGRAM\TXPlatform.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{99BA268B-4021-4739-9945-3C774217FE75}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Windows Adapter 5.1.3214
RUNNING PROGRAM\scit.exe
RUNNING PROGRAM\scm.exe
RUNNING PROGRAM\sbmntr.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{7C109800-A5D5-438F-9640-18D17E168B88}
RUNNING PROGRAM\sbsm.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Duas
RUNNING PROGRAM\nod32se.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ywcbrflh
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ hzdppaon
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ jezokyfs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Firewall.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SVCHOST.EXE
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WServing Service
RUNNING PROGRAM\winupdate.exe
RUNNING PROGRAM\Dot1XCfg.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winsync
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\exp.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ servicelayer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ amoumain
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\zx
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmon
RUNNING PROGRAM\qgipz2469937.exe
RUNNING PROGRAM\r56ujxftyrsdjsxrgf46i5sgheh44.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Advanced DHTML Enable
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{500BCA15-57A7-4eaf-8143-8C619470B13D}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ bios
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvSvc
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C613CE22-151C-4331-94FF-F113A153F66D}
{C613CE22-151C-4331-94FF-F113A153F66D}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99C6D1BB-7555-474C-91DA-D8FB62A9CC75}
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Sakora
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A8D06B4-1B40-009F-E531-629A59080F43}
{2A8D06B4-1B40-009F-E531-629A59080F43}
hzfeL1.BhoApp
hzfeL1.BhoApp.1
Microsoft\Windows\CurrentVersion\Uninstall\xaczweo
Microsoft\Windows\CurrentVersion\Run\(ProtectedStorage)
Microsoft\Windows\CurrentVersion\Run\(RPC)
Microsoft\Windows\CurrentVersion\Run\(Themes)
xaczweo
MICROSOFT\WINDOWS\CURRENTVERSION\RUN\winlogone
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WinDNS
Microsoft\Windows\CurrentVersion\Run\Mmexofumutokara
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7919015-910D-44BB-9059-4080A4D64ABD}
{D7919015-910D-44BB-9059-4080A4D64ABD}
{B239A766-5643-466A-A35C-C55446C9920F}
{E040CB09-0780-471A-903C-25E6C594111E}
Leofa
Leofa.1
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6978074F-9702-4EDB-8172-4DD019693D40}
{6978074F-9702-4EDB-8172-4DD019693D40}
{1844B74D-6338-442F-9A2A-4B939DABCB7E}
{5026DFE5-D709-41B5-82AA-9215CF85B38A}
KiskOps
KiskOps.1
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CC2F638-99FF-45d2-97C7-E30E83CF04D2}
{5CC2F638-99FF-45d2-97C7-E30E83CF04D2}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
{96ad72e4-2e2b-4ffc-a5bb-279c2714af12}
IEocxApp.IEocx
IEocxApp.IEocx.1
{4B66E1DF-4DE3-4CDA-83B5-11673EADAB0B}
{A54DC52D-7AAD-4D40-A126-337211631EDC}
{B360243E-09E8-402F-8721-00B6798089AD}
Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{437A43D5-E5C3-4959-BBD0-F2BFB1EDC6FD}
RUNNING PROGRAM\19.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93679526
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 13035004
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 93044996
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winupdate.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\avp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\keyboard
RUNNING PROGRAM\gadcom.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ nidle
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99068276
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 97179996
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 91724226
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 11714234
RUNNING PROGRAM\avast!Antivirus.exe
RUNNING PROGRAM\AshEvtSvc.exe
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\avast!Antivirus
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0BD071A6-C989-49E8-9B8E-80F92A868E26}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{72207979-90E0-41EA-A6A6-9EAA2D1BB83F}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{A48FE9AC-DD02-4FF7-9211-B7BA9A2C8BF2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{51B15F5A-E98B-4658-B9CB-9307B74773A7}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{CAD68085-8805-4FD3-AA1E-2E282ED7E7A2}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{51fc8c8a-a290-44bb-9331-c2d3289976a6}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{95325092-62FC-473B-B32A-AE613278855B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0354731f-950c-4a53-bc2b-132b5ee6b0fa}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2231839A-F38E-4066-BF3C-959006189942}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{AFC8A14F-B50A-4F0F-8FB7-77982092D81D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{0CC6DB27-243B-4450-96A7-7E868225858D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{446EF370-1987-49DB-AAFF-8EC680903F7A}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{4B05A613-988E-4FA1-B2D7-55A1145FD1EF}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{73D8D2C9-E615-4A23-8013-30FFF3C5BF8E}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{6CCBAFC1-5285-494F-93F1-6894C87A9C43}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DCA2089A-9FFE-4025-869D-6DF987858DB9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{C82B3296-FC52-4CD7-876B-8147E28DA748}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{5F6D7A37-A3D1-47F1-920D-3F48370D509B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{7BC9C2E2-73A6-4FCF-B73D-CBAA20B31C9B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{DC59D6DA-7CDE-4874-9F97-41C82C177069}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{25E0128D-AAFC-49FF-AB11-1F12C2FCC391}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CbEvtSvc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 23667436964095406121069801947504
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{C0F371D7-926D-4700-B65E-63BFF1197205}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{45531D08-A710-B0E6-14C1-D4E2BEA6B724}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MapEDC
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fedff4ae-1302-4b8a-bda9-43b9f67b9749}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ACD85107-9CF9-4C9E-B0B7-39940A0017C0}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5DDE5591-A8AB-4897-93EF-1E4E943F85A7}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{283A0EE3-2CC1-45AB-8207-B1D7B69C7F83}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{cfda6372-043c-48d2-ba3c-7bfe1cf71854}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7A8F5B7A-A74F-495E-8A33-DF6226D2BAD8}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{c704547b-26c0-4222-a034-81653c07b494}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ms050862618809
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ede8bed5-92cf-4482-8f51-a01cd9b3ea37}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\sclick
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FC80E00-41B0-4F74-BC16-2C83ED49CAC9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEFBE5D6-FEFF-4CB4-AA26-6A464090CB89}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D5849A2-93F3-429D-FF34-260A2068897C}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{1a29a79a-b9c8-44a9-bedf-7fadde3cf33f}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\jjkdsks3B612
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ff170564-36c8-43f7-9100-559e166405cf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{bf1ced2c-4b3f-4079-a330-864eda5a4cff}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{202a961f-23ae-42b1-9505-ffe3c818d717}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{2be26361-58a2-4836-be57-b838f02fec3f}
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\{479fd0cf-5be9-4c63-8cda-b6d371c67bd5}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\9eabcdc8.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{686a161d-5bd1-4999-8832-6393f41e564c}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\defender
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5E8FA924-DEF0-4E71-8A82-A11CA0C1413B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6ab7158b-4bff-4160-ad7d-4d622df548cf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D7D19E8E-A715-476D-9EDE-F4730C56014A}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ipue32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\AutoLoaderAproposClient
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\WINDOWSflashbrg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\odufacl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\updmgr
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{1817ab5d-25bf-4d5e-ba90-6e5fe658fc5f}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{43BF8E0C-886D-4103-8DDB-2DFE0E8A0168}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c009BE76
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\vyrmxwne
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\qejdhnvg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\sncntr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\nvsvca32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\nsdlua
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\conscorr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c0078B7C
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d8b937a4-cdad-497b-a872-8da7c4c3ef6f}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvGraphicsInterface
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WLCtrl32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Network Provisioning Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {7DD4A7AC-A3F1-4495-884A-7947C5B89108}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {2C70168B-97CE-4f31-B85D-1FEC5002721D}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{9c87cb31-93d0-4f3e-a360-4a91ff77aeb7}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {DD651081-A909-45ad-BD71-2335B0ADE043}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Googles Onlines Search Services
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ csrss
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TBMExe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ navpdt.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{4a9e875b-d032-45e4-8294-789fe3be5b19}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NI.GA6P_0001_N122C2802
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\COM+ System Executer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ AudioHQ
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysi
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Mespanger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SymantecFilterCheck
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ msmsgxs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Java VM Launch
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{A4F94C0C-54A7-4DB1-9AF3-B22E63D00401}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Services Orkut
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ixplorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys5457.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Sys5BE6.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ecc974ae-6ede-44a2-90da-93b996d8eaf8}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcpevj0elag
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{c96395b8-ab09-46a4-b539-7ddf6e061808}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc783j0eveg
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcr49j0ea81
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphct1hj0ep35
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcg9bj0e7e9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc71lj0e94p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5mlj0ev7c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcva1j0epb9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphca5sj0ee31
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphct1sj0ele5
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{97d2dfac-9acb-4d6f-ac2b-ab6ee090f649}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcv4rj0en23
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp19j0e3ac
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnn0j0e7c5
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcej5j0ee4e
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1tdj0ea77
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5vwj0erb3
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphca35j0ee3c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcr6aj0e11v
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphclp6j0ev5p
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcruaj0e355
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcpghj0ecfl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc5rfj0eg89
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3erj0elav
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcv49j0ejdl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp72j0e1dr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1qtj0ege1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcj7cj0ea59
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3f8j0eaaa
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcvhoj0e33t
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc9v2j0ecfj
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mongenen
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ UtilHlp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DbHlp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc59hj0eab1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Cpl32ver
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc3q4j0epca
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DbWinMon
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SetDsc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Run
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ infomsgmon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR205F.exe
RUNNING PROGRAM\lphccpaj0ec7g.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ \YUR507A.exe
RUNNING PROGRAM\xrg1.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcl2sj0ep0c
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnjcj0e92j
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysmnt
RUNNING PROGRAM\wcm.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcem0j0e72a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\vszynz
RUNNING PROGRAM\d.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcguej0eaep
RUNNING PROGRAM\sft_ver1.1454.0.exe
RUNNING PROGRAM\e.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ba934431-76af-4c99-93c2-c3d21944a72e}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ PersonalAntiSpy
RUNNING PROGRAM\x1psul5R.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d54f12f7-4d76-4c39-a096-e51ef5d33f2b}
RUNNING PROGRAM\7F6B.tmp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ izwu
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ systemz
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ netsv32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ net64
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ netzip
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ runsql
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DAEMON Tools Pro Agent
RUNNING PROGRAM\5rR0NYTX.exe
RUNNING PROGRAM\7.tmp.exe
RUNNING PROGRAM\qUSOWf4S.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ {90BF8224-CD63-4081-A4C7-EF9A2CF6596F}
RUNNING PROGRAM\EmuleInstaller.exe
RUNNING PROGRAM\891.tmp.exe
RUNNING PROGRAM\ncswaormex.tmp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcavej0epd9
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vhostcheck
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vamsoft
RUNNING PROGRAM\BN20.tmp
RUNNING PROGRAM\ert58253.exe
RUNNING PROGRAM\wini10251.exe
RUNNING PROGRAM\0xf9.exe
RUNNING PROGRAM\~tmpn.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\241a8c4151
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ svchost32
RUNNING PROGRAM\svchostw.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Ex
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Msmsgs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GlobalFlagorkutkut
RUNNING PROGRAM\CdbgEvtSvc.exe
RUNNING PROGRAM\CbEvtSvc.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ avp
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE\ Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sprof
RUNNING PROGRAM\KB75.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ pidle
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\ssqomll
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88418AA3-16F5-4FC2-A9D8-90B1266DF841}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{208D7BCC-9857-4C9E-823B-D04E72490A67}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF12CF13-DC3B-461C-B5CE-894806C15303}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d1e5ca97-235e-4ff0-9b92-7543c9d61ff4}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{e758745e-b8aa-47ac-a652-6307ff5f3ebf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{420C4981-32CC-AF09-C412-03797A5A3F37}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\{30D72EC3-07D4-1033-0330-060115070001}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{44e670f2-d57b-4815-a576-955d17dbbf2d}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fde1bd72-ca80-443f-9526-595337b73878}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{36ADA89D-2440-4DC4-820A-3A05E8630935}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8bbe40fd-0416-4c3f-80ea-0c7ad5fb1aab}
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Content Monitoring Tool
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{6ad686b9-ab56-4ebc-a804-9f70b55b4577}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8670ee50-01f9-47da-ac1e-cf8549e9e521}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{951a98d0-dad6-4a77-8280-a494279a884b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ae18da4e-be15-4925-81bb-890c04af0200}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ms031779298
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{385066e0-23f3-11db-a98b-0800200c9a66}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{23FB5ADD-DA37-4a40-9FC0-B0E2384CDE92}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b0398eca-0bcd-4645-8261-5e9dc70248d0}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\antiware
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\Win ServerUpdt
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b0883848-1466-4470-a418-3fe7d36694b9}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{b585105c-0e84-4ef0-9c6a-fbe134a72945}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\IMSMIG
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\ljhebby
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{fce1c203-ff2b-4ec1-9983-e2900d29bbd8}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{27cb634d-c84e-4c00-9b53-f5523601dbad}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmona
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ TBMonEx
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MS Software Shadow Download Provider
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Mesppanger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WinSys3
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{629340b5-8df6-4211-9245-a86563a35792}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8dc71747-ace0-40c1-8947-54f107d0639b}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d3b82107-f8fa-4ef3-8066-136e22872d4e}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc1gjj0eg45
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{8d332d3a-0114-4492-8521-c2b93b4db160}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ geninfocmd
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mntactsmart
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Tair
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{e3623691-f85d-48d8-8e4d-abe79077f841}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WebSUpdater
RUNNING PROGRAM\e1GuF5Id.exe
RUNNING PROGRAM\userinit.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SpeedRunner
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ brastia
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ LUOM
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ DriveSystem
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Facegame
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gadcom
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{25B8D58C-B0CB-46b0-BA64-05B3804E4E86}
RUNNING PROGRAM\b.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ExploreUpdSched
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Apoint
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{F38636ED-E66E-4A37-822E-0C01F64D6605}
RUNNING PROGRAM\promo.exe
RUNNING PROGRAM\Ib2G3XJQ.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ apocasw
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\iqswi
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{D5BF4552-94F1-42BD-F434-3604812C807D}
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Owner
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00E2167
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ explorer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ regdiit
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Driver Setup
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ k4stl7wuwvo9
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{BC2471D2-B720-38D6-9A61-C780EFC93A81}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{2508CBA6-AD92-3624-9005-4383115B413F}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restorer32_a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restorer64_a



Postez votre commentaire - NOUS AVONS BESOIN DE VOTRE OPINION!