Top 10 Alerts
Latest 10 Malware Files
Testimonials
WOW!
Real people who answer queries within an hour!
Please don't get bought out by some large, impersonal company. Your customer service is amazing.
I am recommending your product to everyone I meet.
Ainsley
Outerinfo Registry Values
Scan your Windows registry for Outerinfo
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zutbir="[%PERSONAL%]\W?nSxS\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Caaskren=[%PERSONAL%]\W?nSxS\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmzbe="[%PERSONAL%]\??stem32\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Buvg=[%WINDOWS%]\W?nSxS\s?ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Skpnlg=[%SYSTEM%]\M?crosoft.NET\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Osikim=[%SYSTEM%]\W?nSxS\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rwrlfcc="[%APPDATA%]\?ystem\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Orzdfey="[%PROGRAM_FILES_COMMON%]\s?curity\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rlangaro="[%APPDATA%]\W?nSxS\?serinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dng="[%PERSONAL%]\??curity\?pool32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hyrf="[%PERSONAL%]\s?mbols\w?nspool.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ama=[%WINDOWS%]\??crosoft\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qqtnwui="[%PROGRAM_FILES%]\??crosoft\s?oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tbgueu=[%WINDOWS%]\M?crosoft.NET\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bhjbthj="[%PROGRAM_FILES%]\?dobe\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tufpt=[%SYSTEM%]\??oolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Luxha=[%WINDOWS%]\s?mbols\r?gedit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Luxha=[%WINDOWS%]\s?mbols\r?gedit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xjkof=[%SYSTEM%]\??sks\m?hta.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wgioiore=[%WINDOWS%]\s?curity\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wgex=[%SYSTEM%]\M?crosoft\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Rfxrzt=[%SYSTEM%]\d?dplay.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Lejkf=[%SYSTEM%]\?hkntfs.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Wurz=[%WINDOWS%]\?asks\?hkdsk.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Ldde=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Lmtutz=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Xxtqaoag=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lyenuep=[%SYSTEM%]\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Leu=[%SYSTEM%]\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Kysioxdm=[%SYSTEM%]\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gmkpfn=[%WINDOWS%]\??sks\w?aclt.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ltpm=[%PROGRAM_FILES%]\??curity\w?crtupd.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Olr="[%PROGRAM_FILES%]\M?crosoft.NET\taskmgr.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sgsbrip=[%SYSTEM%]\?hkdsk.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gpqxnfg="[%PERSONAL%]\?ystem32\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rfsjs="[%PROGRAM_FILES_COMMON%]\S?mantec\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mgabtpn="[%APPDATA%]\?ecurity\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ehn=[%SYSTEM%]\M?crosoft\w?auboot.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ykvjii=[%SYSTEM%]\?icrosoft\ѕpoolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mhlnnhlu=[%SYSTEM%]\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aftlh=[%PROGRAM_FILES_COMMON%]\??curity\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Dwewio=[%SYSTEM%]\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tsfgu="[%PROGRAM_FILES_COMMON%]\M?crosoft.NET\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bhuy=[%WINDOWS%]\??mbols\?ervices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cag=[%SYSTEM%]\r?ndll.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wqtcepsr="[%APPDATA%]\??sks\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Vui=[%APPDATA%]\??crosoft.NET\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Hsk=[%SYSTEM%]\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xzea=[%SYSTEM%]\S?mantec\??erinit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ipud=[%SYSTEM%]\w?crtupd.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ezjqgwfs="[%APPDATA%]\?ppPatch\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xgbd="[%APPDATA%]\F?nts\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pghd="[%PERSONAL%]\F?nts\?hkdsk.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xysfurdh=[%SYSTEM%]\??stem32\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yodl=[%WINDOWS%]\?ppPatch\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bfnxawa=[%WINDOWS%]\F?nts\w?aclt.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gudywhw="[%PROGRAM_FILES_COMMON%]\??stem32\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gwxdmutd="[%APPDATA%]\?ppPatch\s?oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dizwold="[%APPDATA%]\?ystem\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ozbi="[%PROGRAM_FILES%]\s?stem32\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Duhfg=[%SYSTEM%]\??pPatch\?xplorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ttxuqcqu="[%PERSONAL%]\s?curity\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Udq="[%PROGRAM_FILES_COMMON%]\?icrosoft\?explore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lqvoc="[%PROGRAM_FILES%]\s?curity\?xplorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ikqdycdh=[%WINDOWS%]\s?curity\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Eihbimhv="[%PROGRAM_FILES%]\?racle\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vgwrrioz=[%WINDOWS%]\s?curity\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wyky=[%SYSTEM%]\?ecurity\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kkmooc="[%PROGRAM_FILES%]\s?curity\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Meep="[%PERSONAL%]\??mantec\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, svchost.exe=[%APPDATA%]\Microsoft\svch?st.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kgbo="[%PERSONAL%]\??mantec\??chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gqdjbr="[%PERSONAL%]\?dobe\l?gonui.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gnwkns=[%SYSTEM%]\??oolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fxv=[%WINDOWS%]\s?stem32\s?ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oyhs=[%WINDOWS%]\?dobe\?ervices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ildl="[%PERSONAL%]\??sks\?serinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dufcueg="[%PROGRAM_FILES_COMMON%]\a?sembly\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mmffcyg=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iwsovk=[%PROGRAM_FILES_COMMON%]\s?stem\?ti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cko="[%PROGRAM_FILES_COMMON%]\?ystem\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qhukrvx="[%PROGRAM_FILES%]\a?sembly\ntvdm.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zhqjrfie=[%SYSTEM%]\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ttywinxl="[%PROGRAM_FILES%]\?asks\r?ndll.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ocpcru=[%SYSTEM%]\n?lookup.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jrtk=[%WINDOWS%]\??stem\t?skmgr.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iqgespl="[%PROGRAM_FILES_COMMON%]\??mantec\r?gedit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xmex="[%APPDATA%]\a?sembly\??rss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fpaan=[%WINDOWS%]\a?sembly\??ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Jpoayb="[%PERSONAL%]\?ssembly\?srss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vswg=[%WINDOWS%]\F?nts\s?ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jlb="[%PROGRAM_FILES%]\a?sembly\r?ndll32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ncsd=[%SYSTEM%]\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kjdkpxf=[%SYSTEM%]\??plorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zoivfl="[%PROGRAM_FILES_COMMON%]\s?stem\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ewwlycbu=[%PERSONAL%]\??stem32\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zravgq=[%WINDOWS%]\??mbols\s?anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ursiqm=[%WINDOWS%]\s?stem\?hkdsk.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ntui="[%PERSONAL%]\??stem32\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xrcluwn="[%PERSONAL%]\F?nts\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kxhutjuk="[%PERSONAL%]\??curity\??xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qsarbg="[%PERSONAL%]\?ppPatch\??rss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zyciycb=[%SYSTEM%]\?ymantec\??chost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Tru=[%SYSTEM%]\?racle\?hkntfs.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Aspecmv=[%SYSTEM%]\S?mantec\l?gonui.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Mkqk="[%PROGRAM_FILES_COMMON%]\s?mbols\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nxk=[%SYSTEM%]\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rppfjjf="[%PROGRAM_FILES%]\?dobe\s?anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qzrxsr="[%APPDATA%]\?racle\d?dplay.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Limm=[%WINDOWS%]\?ystem\¬Сti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oloibozt=[%SYSTEM%]\??ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qnrja=[%SYSTEM%]\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Outerinfo=[%WINDOWS%]\Outerinfo.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hli=[%SYSTEM%]\??anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Euw=[%SYSTEM%]\s?curity\?vchost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Mlvdbaa="[%PERSONAL%]\??stem\i?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oxba=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnvyn=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zmdquiuu="[%PERSONAL%]\W?nSxS\s?anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vwl="[%PERSONAL%]\??mantec\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pandxxvb="[%PERSONAL%]\M?crosoft.NET\?hkdsk.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pnrjy=[%SYSTEM%]\?hkntfs.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vaatv=[%SYSTEM%]\??curity\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Porki=[%SYSTEM%]\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uwtjjvag="[%PROGRAM_FILES_COMMON%]\??sks\?explore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Muejkbgl=[%SYSTEM%]\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Svm=[%SYSTEM%]\n?lookup.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ckmvbkrc=[%WINDOWS%]\?icrosoft.NET\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kcrtddjj=[%PROGRAM_FILES%]\?dobe\c?rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Xxoqejaj=[%WINDOWS%]\?dobe\?explore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, OuterinfoUpdate="[%PROGRAM_FILES%]\Outerinfo\OuterinfoUpdate.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Outerinfo="[%PROGRAM_FILES%]\Outerinfo\Outerinfo.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hnqcz=[%SYSTEM%]\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkjnmy=[%PROGRAM_FILES_COMMON%]\M?crosoft\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Kiupaczg=[%SYSTEM%]\w?crtupd.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fzg="[%PROGRAM_FILES%]\S?mantec\n?tdde.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uhvpcu=[%PROGRAM_FILES%]\s?stem\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Swu="[%APPDATA%]\??mantec\??ool32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gvuctml="[%PERSONAL%]\?ssembly\?ervices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Imcefsep="[%APPDATA%]\M?crosoft\??oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gcxgbg=[%SYSTEM%]\?ecurity\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ipnduk="[%PROGRAM_FILES_COMMON%]\??curity\s?anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Upaw=[%WINDOWS%]\??crosoft\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jkbajha=[%SYSTEM%]\?ppPatch\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dsfsemb=[%SYSTEM%]\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zprqj="[%PROGRAM_FILES_COMMON%]\s?curity\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lvsvuo="[%PROGRAM_FILES%]\W?nSxS\c?rss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lwrgfize=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zcczvl=[%SYSTEM%]\??oolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Etrzovo=[%APPDATA%]\?racle\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vjmjkyo=[%SYSTEM%]\??chost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wmtq="[%PROGRAM_FILES%]\?asks\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bbry=[%SYSTEM%]\?racle\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lxoi=[%SYSTEM%]\?racle\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aus=[%SYSTEM%]\??stem32\w?auboot.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rbfeek=[%SYSTEM%]\?dobe\s?rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jhqsmn=[%SYSTEM%]\S?mantec\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pxfli=[%SYSTEM%]\F?nts\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sngdo="[%PROGRAM_FILES%]\W?nSxS\w?nlogon.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gxtpawvo="[%PERSONAL%]\?racle\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uxg="[%APPDATA%]\?ecurity\u?erinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Srsr="[%PROGRAM_FILES%]\?icrosoft\s?oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dzcrvhzt="[%PROGRAM_FILES%]\?icrosoft.NET\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ent="[%PROGRAM_FILES_COMMON%]\F?nts\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xynnx="[%PROGRAM_FILES_COMMON%]\M?crosoft.NET\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bufomiri="[%APPDATA%]\?asks\i?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ecyegn="[%PERSONAL%]\??curity\?serinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jyzt=[%WINDOWS%]\?ystem\?srss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zuutp="[%PROGRAM_FILES_COMMON%]\A?pPatch\?poolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uqas="[%PROGRAM_FILES%]\W?nSxS\m?config.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xvhgn=[%PROGRAM_FILES%]\??sembly\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vhnoi="[%PERSONAL%]\?ecurity\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (Disabled by Starter), Hmqlyg=[%WINDOWS%]\?ecurity\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Detxtvbd=[%WINDOWS%]\??crosoft.NET\?hkdsk.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, tjfajgvp=[%SYSTEM%]\??pPatch\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, jvgxlst="[%PROGRAM_FILES_COMMON%]\??mbols\w?nspool.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, tbhvf="[%PERSONAL%]\??sembly\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, zeutrkc="[%PROGRAM_FILES_COMMON%]\s?mbols\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nodikeom="[%PROGRAM_FILES%]\?ymantec\d?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ndaclord="[%PROGRAM_FILES_COMMON%]\s?stem\?serinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Trnlz="[%PERSONAL%]\??mantec\d?dplay.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xwgziqf=[%WINDOWS%]\??mbols\l?gonui.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ijla="[%PROGRAM_FILES_COMMON%]\F?nts\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uhldh="[%PERSONAL%]\s?stem32\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wwkbd="[%PROGRAM_FILES%]\?dobe\?canregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fnvzt=[%SYSTEM%]\??sembly\??plorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Agka=[%SYSTEM%]\?hkntfs.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nhb=[%SYSTEM%]\?ppPatch\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Brv="[%PERSONAL%]\??crosoft\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yhli="[%PERSONAL%]\s?mbols\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tkxz="[%PERSONAL%]\?asks\?serinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zqwpsx="[%APPDATA%]\?dobe\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zkpj="[%APPDATA%]\?ecurity\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lopobf="[%PERSONAL%]\?ystem32\n?tdde.exe"
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, svchost.exe=[%SYSTEM%]\svch?st.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dfudj=[%SYSTEM%]\?ttrib.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hzh=[%SYSTEM%]\?ttrib.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Arvo=[%SYSTEM%]\??stem\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ooryx="[%PERSONAL%]\M?crosoft\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uvahzgg="[%PERSONAL%]\W?nSxS\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pos="[%PERSONAL%]\?dobe\m?config.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nisqq="[%PROGRAM_FILES%]\?icrosoft.NET\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Izbu="[%PROGRAM_FILES%]\?ssembly\?xplorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lhjpyj=[%SYSTEM%]\M?crosoft.NET\?serinit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zsqic="[%PROGRAM_FILES%]\??curity\d?dplay.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bvfjl="[%PROGRAM_FILES%]\??curity\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rgk=[%SYSTEM%]\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jpyj=[%SYSTEM%]\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dyuuciae="[%PROGRAM_FILES%]\?dobe\??erinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Racz=[%SYSTEM%]\??stem32\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ilsbusyl="[%APPDATA%]\?icrosoft\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zmavj=[%SYSTEM%]\??oolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Silrm="[%PROGRAM_FILES%]\??pPatch\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qyftgw=[%PROGRAM_FILES_COMMON%]\a?sembly\?vchost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wlhhopl=[%WINDOWS%]\?dobe\r?gsvr32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hmhjdqkl="[%PROGRAM_FILES%]\??crosoft.NET\n?tdde.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ycrn=[%WINDOWS%]\??crosoft.NET\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dbbnugc="[%PROGRAM_FILES_COMMON%]\?icrosoft\notepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fwkajktr=[%SYSTEM%]\??pPatch\?ti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lbcvec=[%WINDOWS%]\T?sks\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vmmwrrqc=[%SYSTEM%]\S?mantec\n?lookup.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qqprmkno="[%PROGRAM_FILES%]\s?stem32\ping.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sophqech=[%WINDOWS%]\?ppPatch\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lobk=[%SYSTEM%]\??xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qsv=[%WINDOWS%]\?ssembly\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tjn="[%PERSONAL%]\?dobe\??chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qkkdga="[%PERSONAL%]\W?nSxS\s?oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bjyhm=[%SYSTEM%]\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Msec=[%WINDOWS%]\s?mbols\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rejbp=[%SYSTEM%]\s?curity\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vvwu="[%APPDATA%]\?ymbols\w?nlogon.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Evcztz="[%PROGRAM_FILES_COMMON%]\?racle\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gltomcj="[%PROGRAM_FILES%]\s?stem\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ilmst="[%PROGRAM_FILES%]\?icrosoft\u?erinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ljfhirc="[%APPDATA%]\a?sembly\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Olfn="[%PERSONAL%]\?dobe\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Choiuy="[%APPDATA%]\?racle\d?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Twkbvvfw="[%APPDATA%]\M?crosoft\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hwjnirvj="[%PERSONAL%]\??sembly\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xxxcbxp=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (Disabled by Starter), Tmkupm=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wmb=[%WINDOWS%]\?ssembly\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qetre="[%PROGRAM_FILES%]\??sks\d?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rakme=[%WINDOWS%]\a?sembly\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Awmeg=[%WINDOWS%]\??pPatch\winlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Okb="[%APPDATA%]\s?curity\dexplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cjljhbf="[%PROGRAM_FILES%]\?icrosoft\taskmgr.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rhxamr="[%APPDATA%]\?dobe\csrss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tpqqcyfv="[%PROGRAM_FILES_COMMON%]\?asks\alg.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kjrurpnu="[%PROGRAM_FILES_COMMON%]\??sks\regedit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyacf="[%PROGRAM_FILES%]\??pPatch\spool32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qwewbrxe="[%APPDATA%]\??crosoft.NET\cmd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Chepyvcq="[%PERSONAL%]\??sembly\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pzjnetal="[%PROGRAM_FILES%]\?dobe\w?nword.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (Disabled), Ceeaarp="[%APPDATA%]\a?sembly\r?ndll32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Mpzem=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fgomn=[%SYSTEM%]\??ool32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Knpg=[%WINDOWS%]\M?crosoft\u?erinit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tsg="[%PROGRAM_FILES_COMMON%]\M?crosoft.NET\notepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xtvvouw=[%WINDOWS%]\?ymbols\r?gedit.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gmce="[%PERSONAL%]\?asks\w?nlogon.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jmqx=[%SYSTEM%]\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yey=[%SYSTEM%]\?serinit.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, svchost.exe="[%SYSTEM%]\svch?st.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qychltkd=[%APPDATA%]\??crosoft.NET\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cobthlj=[%PERSONAL%]\?ymbols\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uhlfybyt=[%PERSONAL%]\T?sks\j?vaw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Psa=[%SYSTEM%]\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jbyjw="[%PROGRAM_FILES%]\??sks\m?config.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xjhjbmt=[%SYSTEM%]\?ecurity\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jaauc=[%SYSTEM%]\??chost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-Disabled, Lfebdl="[%PROGRAM_FILES_COMMON%]\M?crosoft\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jtfg=[%SYSTEM%]\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Waone=[%SYSTEM%]\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ekqxn=[%SYSTEM%]\??rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ccljdax=[%WINDOWS%]\s?stem32\spoolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Psxsunv="[%PROGRAM_FILES_COMMON%]\??curity\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Voynlrak=[%WINDOWS%]\W?nSxS\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hbkpg=[%WINDOWS%]\?ystem32\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cdmgem=[%SYSTEM%]\??sembly\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jswem=[%SYSTEM%]\?ymbols\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Resbcc=[%SYSTEM%]\??crosoft\s?rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pgelsg=[%SYSTEM%]\?ystem\s?anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tab=[%SYSTEM%]\?racle\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fpilxwki=[%WINDOWS%]\?racle\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmhdvdfc=[%WINDOWS%]\?ystem32\m?hta.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Snhogrr=[%SYSTEM%]\F?nts\m?config.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dyykypog=[%SYSTEM%]\A?pPatch\?poolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rzuqy=[%WINDOWS%]\W?nSxS\?poolsv.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pgdajxx=[%WINDOWS%]\?racle\?explore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mtjozrzw="[%PROGRAM_FILES_COMMON%]\??pPatch\u?erinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ceat="[%PROGRAM_FILES%]\?ystem\s?rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Togtdtf="[%PROGRAM_FILES_COMMON%]\??crosoft\s?oolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ylwz="[%PROGRAM_FILES%]\??stem\r?gedit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ifkiyw="[%PROGRAM_FILES%]\s?mbols\n?tepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kbfwr="[%PROGRAM_FILES%]\F?nts\n?tepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iixyqon="[%PROGRAM_FILES%]\?ystem32\n?tdde.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vcllgxr="[%PERSONAL%]\M?crosoft\l?gonui.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Azikf="[%APPDATA%]\M?crosoft.NET\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Htyhyn="[%PROGRAM_FILES%]\?asks\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bhgip="[%PROGRAM_FILES%]\?ppPatch\?pool32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xltgsr="[%PROGRAM_FILES_COMMON%]\s?curity\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jhdepmv="[%APPDATA%]\??crosoft.NET\??plorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Msmjkvte="[%APPDATA%]\F?nts\n?tdde.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mggqpboc=[%SYSTEM%]\??crosoft.NET\?xplorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cjkx="[%PROGRAM_FILES%]\?dobe\d?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gus="[%PERSONAL%]\?ecurity\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Riovbowt="[%PERSONAL%]\??pPatch\??xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nvpwx=[%SYSTEM%]\W?nSxS\services.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Skhuwjne=[%SYSTEM%]\??xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Volxft=[%SYSTEM%]\?ecurity\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kkhy="[%PERSONAL%]\S?mantec\?hkntfs.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Gbcxn=[%SYSTEM%]\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jizue="[%PERSONAL%]\a?sembly\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gtvyqrfd="[%PROGRAM_FILES_COMMON%]\?ppPatch\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zed=[%SYSTEM%]\??mantec\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vvpdjk="[%PROGRAM_FILES%]\??crosoft.NET\n?tepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kweyzr=[%SYSTEM%]\??anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Fqtjmml=[%SYSTEM%]\w?auboot.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vragnr=[%SYSTEM%]\W?nSxS\?vchost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jivcheag=[%WINDOWS%]\??sks\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xcnavxz="[%APPDATA%]\?ymbols\w?nspool.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hsuw="[%PROGRAM_FILES_COMMON%]\F?nts\s?rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Eycw="[%APPDATA%]\?racle\r?ndll32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Meu="[%PROGRAM_FILES_COMMON%]\?ystem32\r?ndll.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rntbnckn="[%PROGRAM_FILES_COMMON%]\s?stem32\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jad="[%PROGRAM_FILES_COMMON%]\??sembly\??anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mngjwv=[%APPDATA%]\??crosoft.NET\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dasro=[%SYSTEM%]\??pPatch\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ohu=[%SYSTEM%]\A?pPatch\?xplorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xmxng=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iae=[%WINDOWS%]\??crosoft.NET\w?nspool.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jaaeaxpi=[%SYSTEM%]\?ssembly\w?auclt.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wavnf=[%WINDOWS%]\?ecurity\w?auboot.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zrmgeocs=[%SYSTEM%]\?racle\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ntm=[%WINDOWS%]\??curity\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Froftzvs=[%WINDOWS%]\a?sembly\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xnq=[%SYSTEM%]\?racle\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Knse=[%WINDOWS%]\a?sembly\m?hta.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Btb=[%WINDOWS%]\S?mantec\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qitcsd=[%SYSTEM%]\??stem\m?config.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Twn=[%SYSTEM%]\s?mbols\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zyraoy=[%SYSTEM%]\?ystem32\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rismkro=[%SYSTEM%]\F?nts\?vchost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qshchoj="[%PROGRAM_FILES_COMMON%]\F?nts\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zosz="[%PROGRAM_FILES_COMMON%]\?icrosoft.NET\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jgpgb="[%APPDATA%]\?racle\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yozmz="[%PROGRAM_FILES%]\F?nts\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fafphmk="[%APPDATA%]\s?stem32\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nnyeyw="[%PERSONAL%]\?racle\r?gsvr32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Przyl="[%PERSONAL%]\?ssembly\n?tepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Spei="[%PROGRAM_FILES_COMMON%]\?ystem32\n?tepad.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mlkqhemg="[%PERSONAL%]\F?nts\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hznovpmp="[%PROGRAM_FILES%]\??crosoft\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pce="[%PERSONAL%]\??stem32\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hics="[%APPDATA%]\F?nts\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wwfyaail="[%APPDATA%]\M?crosoft.NET\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yvnolgyw="[%APPDATA%]\?icrosoft\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cqvts="[%PROGRAM_FILES_COMMON%]\?dobe\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lceqgi="[%PERSONAL%]\?ymantec\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Znw="[%PROGRAM_FILES%]\??stem\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mahmuhh="[%APPDATA%]\s?stem\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Imvzjdso="[%APPDATA%]\?ppPatch\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sph="[%APPDATA%]\?asks\d?dplay.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oqzl="[%PROGRAM_FILES_COMMON%]\F?nts\c?rss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vosf="[%PROGRAM_FILES_COMMON%]\S?mantec\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ecltttu="[%PROGRAM_FILES%]\??mantec\?srss.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gzia="[%PERSONAL%]\??crosoft.NET\?poolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rlpdv="[%PERSONAL%]\?icrosoft\?hkntfs.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ytet="[%PROGRAM_FILES%]\F?nts\?hkdsk.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ylq="[%PROGRAM_FILES_COMMON%]\?ecurity\?ervices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pifjcd="[%PROGRAM_FILES%]\?asks\??chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Roqtmvqm="[%PERSONAL%]\?asks\?xplorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xsomtg="[%APPDATA%]\?icrosoft\?ti2evxx.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wgk="[%PERSONAL%]\?ecurity\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zkkapxu=[%WINDOWS%]\A?pPatch\n?lookup.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bwpkr=[%SYSTEM%]\??pPatch\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Kfew=[%SYSTEM%]\?icrosoft\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Nasvh="[%PROGRAM_FILES%]\s?stem32\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iznommym="[%APPDATA%]\W?nSxS\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnlrltls="[%PERSONAL%]\?dobe\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yru="[%PERSONAL%]\S?mantec\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Igllawxw=[%SYSTEM%]\m?hta.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hxcjel=[%SYSTEM%]\l?gonui.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uakddkh=[%WINDOWS%]\?dobe\smss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qcmfabsp="[%APPDATA%]\S?mantec\w?nspool.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zkxmvp=[%WINDOWS%]\??stem\wuaclt.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Widwmgbt="[%PERSONAL%]\T?sks\winspool.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkefglau="[%PERSONAL%]\??curity\userinit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lcacr="[%PERSONAL%]\??crosoft\mmc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kfuhjti=[%PROGRAM_FILES_COMMON%]\?ystem\??plorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lvglpt="[%PROGRAM_FILES_COMMON%]\?asks\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rsvxghdy="[%PERSONAL%]\a?sembly\?explore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rjlduqz="[%PROGRAM_FILES%]\W?nSxS\??xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lzoq="[%PROGRAM_FILES_COMMON%]\??stem32\w?wexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ioatn="[%PERSONAL%]\?ystem32\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ioe="[%PROGRAM_FILES%]\??stem32\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jkstcfad="[%APPDATA%]\?ystem32\m?config.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qumbn="[%PROGRAM_FILES%]\?dobe\d?xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hpnpr=[%WINDOWS%]\s?curity\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ovnpuu=[%WINDOWS%]\M?crosoft.NET\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nyexeeeo=[%SYSTEM%]\w?wexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ozvxzb="[%PERSONAL%]\?ymantec\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xug="[%PERSONAL%]\T?sks\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cvoi=[%SYSTEM%]\?dobe\m?dtc.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oozrnjmd=[%SYSTEM%]\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pagbv=[%SYSTEM%]\??curity\l?gonui.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Giuphaqj=[%SYSTEM%]\W?nSxS\e?plorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jbdjpu="[%PERSONAL%]\?icrosoft.NET\wucrtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Eheh="[%PERSONAL%]\?ystem32\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dpekf="[%PROGRAM_FILES%]\?dobe\s?chost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kiaqvht="[%PERSONAL%]\??crosoft.NET\n?tdde.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dnvuazpv="[%PROGRAM_FILES%]\??pPatch\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Miw=[%WINDOWS%]\a?sembly\w?nword.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jvfnris=[%WINDOWS%]\M?crosoft\w?nlogon.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ayvftawc=[%SYSTEM%]\??pPatch\w?auboot.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vbdubz=[%SYSTEM%]\F?nts\t?skmgr.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pnqk=[%SYSTEM%]\?ystem32\s?rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bxg=[%WINDOWS%]\??crosoft\s?chost.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jxgrtr=[%SYSTEM%]\?ecurity\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sqnll=[%WINDOWS%]\??mantec\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qsx=[%SYSTEM%]\F?nts\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wwdf=[%WINDOWS%]\?ymbols\m?iexec.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Joana=[%WINDOWS%]\?ymantec\m?config.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kldjaxo=[%WINDOWS%]\W?nSxS\d?xplore.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mbgkdcz="[%APPDATA%]\?ecurity\w?auclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fetlmn="[%APPDATA%]\??mbols\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wiriebo="[%APPDATA%]\?ssembly\w?auboot.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cku="[%APPDATA%]\S?mantec\n?pdb.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Daon="[%APPDATA%]\?ystem32\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jmozcgi="[%PROGRAM_FILES%]\s?stem32\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jobb="[%PROGRAM_FILES%]\??crosoft.NET\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Opw="[%PROGRAM_FILES_COMMON%]\??sembly\?vchost.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uzwpy="[%PROGRAM_FILES%]\?racle\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xoi="[%PERSONAL%]\??curity\?poolsv.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sthget="[%PROGRAM_FILES_COMMON%]\s?mbols\?hkdsk.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vpt="[%APPDATA%]\s?mbols\?canregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jvwv="[%APPDATA%]\??mbols\??rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Asaewpi="[%PROGRAM_FILES%]\?ystem\??anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lfzqjfm="[%APPDATA%]\?racle\?xplorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aknxpkb=[%WINDOWS%]\??stem32\n?tdde.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fbpeu="[%PROGRAM_FILES%]\?racle\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iabc="[%PROGRAM_FILES%]\?ecurity\?hkntfs.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Doyyyguh="[%PROGRAM_FILES_COMMON%]\?icrosoft\r?gsvr32.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lussii="[%APPDATA%]\??crosoft.NET\j?vaw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Midoe="[%PROGRAM_FILES%]\a?sembly\?ervices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Perb="[%PERSONAL%]\?ssembly\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pyuhp="[%PERSONAL%]\??curity\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qqro=[%SYSTEM%]\F?nts\?ti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nrzjfp=[%WINDOWS%]\?ssembly\w?auclt.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iexhose=[%SYSTEM%]\??crosoft.NET\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qkgccd=[%SYSTEM%]\T?sks\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yapv=[%WINDOWS%]\??stem32\??anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oyly="[%PROGRAM_FILES_COMMON%]\F?nts\w?nword.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gfuithe="[%PERSONAL%]\?asks\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bal="[%APPDATA%]\??mantec\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ciyda="[%PERSONAL%]\W?nSxS\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qiazol="[%PERSONAL%]\?racle\l?ass.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pafvfnld=[%SYSTEM%]\?racle\e?plorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Whrej="[%PERSONAL%]\??sks\?ttrib.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyovt="[%PROGRAM_FILES_COMMON%]\??sembly\e?plorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yroo=[%SYSTEM%]\??sks\s?anregw.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Chsje="[%PERSONAL%]\M?crosoft\??plorer.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sbrimgt="[%PROGRAM_FILES_COMMON%]\S?mantec\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Nffzvu="[%PROGRAM_FILES%]\??stem32\??xplore.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-Disabled, Qtsu=[%SYSTEM%]\??stem\?srss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Avqrkdcv=[%SYSTEM%]\?ttrib.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ivubz=[%SYSTEM%]\?dobe\?srss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hlrie=[%SYSTEM%]\?ystem32\??rvices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uuumoshz="[%PROGRAM_FILES%]\?ssembly\?hkntfs.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uzucroq="[%PROGRAM_FILES%]\??sks\??anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oum="[%PROGRAM_FILES_COMMON%]\??sembly\w?aclt.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hsu="[%PROGRAM_FILES_COMMON%]\s?curity\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ixxjx="[%PERSONAL%]\?ecurity\n?lookup.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qlk=[%SYSTEM%]\??mbols\r?ndll.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mslygfn=[%SYSTEM%]\F?nts\n?lookup.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lod="[%PROGRAM_FILES%]\?dobe\s?rvices.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xqmcv="[%PERSONAL%]\s?mbols\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nftlyof="[%PROGRAM_FILES%]\??crosoft.NET\r?gedit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hzeiluc=[%SYSTEM%]\m?hta.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mbid="[%PROGRAM_FILES%]\S?mantec\regedit.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hfbm=[%WINDOWS%]\s?stem\l?ass.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sctqcvhc=[%SYSTEM%]\W?nSxS\n?tepad.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xwtc="[%PROGRAM_FILES%]\?ymantec\?hkdsk.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Kqduf=[%WINDOWS%]\??curity\?ti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sfwsq="[%PERSONAL%]\F?nts\w?crtupd.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ryyx=[%SYSTEM%]\a?sembly\r?ndll32.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nsw=[%WINDOWS%]\a?sembly\?srss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Kotbwz=[%SYSTEM%]\?asks\?ttrib.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Flzs=[%WINDOWS%]\?icrosoft.NET\n?pdb.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Koph="[%PROGRAM_FILES_COMMON%]\W?nSxS\w?nlogon.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Zrcno="[%PROGRAM_FILES%]\?icrosoft\??anregw.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qlojljlu=[%SYSTEM%]\?ystem\?ti2evxx.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jkokmnq="[%PERSONAL%]\?§еstem\m?hta.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uhaugg=[%SYSTEM%]\W?nSxS\?ervices.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bmuqmu="[%PROGRAM_FILES_COMMON%]\?dobe\m?iexec.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ughsopi="[%APPDATA%]\F?nts\m?dtc.exe"
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xotepm=[%SYSTEM%]\?ppPatch\?xplorer.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Poourjc=[%SYSTEM%]\??curity\c?rss.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uxeiiw="[%APPDATA%]\?asks\??erinit.exe"
Scan your system registry for FREE


CURIOLAB S.M.B.A., Amagertorv 15, 2, 1160 Copenhagen K, Denmark, +45.36965533
