- Connects to the internet without permission
- Shows commercial adverts
- Slow internet connection
- System crashes
- Annoying Pop-up's
- Slow Computer
Trojan.Crypt.XPACKTrojan.Crypt.XPACK is a malicious application which is extremely harmful to all system is encounters. Trojan.Crypt.XPACK is not only installed under deceptive pretences, infiltrating the user’s PC without their approval or knowledge. Trojan.Crypt.XPACK is particularly damaging to a computer system, once it has fully embedded itself within the PC’s system, therefore it is given a high priority security risk status by many computer analysts. The fact that Trojan.Crypt.XPACK can easily enter any PC system via security exploits and flaws, most times without the user’s interaction, means that it is that much easier for Trojan.Crypt.XPACK to enter the system and ensure the system’s security is immensely compromised. Risks which may affect the PC’s system functions include: the opening of illicit network connections, the use of polymorphic tactics to self-mutate, the disabling of already installed security software, modification of system files, and not forgetting the installation of additional malware. The best way to deal with the threat of Trojan.Crypt.XPACK is to simply remove it from the affected PC system. |
Download Spyware Removal Tool to Remove*
Trojan.Crypt.XPACK
|
|
How to manually remove Trojan.Crypt.XPACK
Files associated with Trojan.Crypt.XPACK infection:
ActivationCRK.exe
SearchSettingsProtection.exe
msmmsgr.exe
tasklist32.exe
tmp1298.exe
96656396.exe
16646404.exe
~tmp1174.exe
yrepair.dll
winamp.exe
vlc.exe
utilinfoset.dll
upc.exe
svcnost.exe
svchost.exe:ext.exe
rudwlczy.exe
realplayer.exe
net.net
lupybklk.exe
jcbilele.exe
iifcCsSi.dll
hridoun.exe
gtqdshdz.exe
firewall.exe
d3davilibrary.dll
ctlodbcmulti.dll
comapi.dll
avast!Antivirus.exe
amvo1.dll
1[2].exe, wininet.exe
02.exe
msindeo.dll
wscsvc32.exe
mscdexnt.exe
Nvsvc32.exe
MSWINSCK.exe
msmsgs.exe
UpdateExplorer.dll
mspdb12.dll
protectgb.exe
quogoucoo.exe
jatepaj.exe
scvhost.exe
fyphmedqaf.exe
cmmon64x.exe
mgmrwmrv.exe
lpcywinp.exe
rxjddnvj.exe
encoder.exe
servis.exe
mnZaWWcQ.exe
mspdb22.dll
winupdate.exe.exe
wpv961260022577.exe
~TM15.tmp
extrac64_cab.exe
winlogon32.exe
~TM17.tmp
~TM18.tmp
ctfmon.exe
xmrpj.exe
~TMFC.tmp
~TMD.tmp
mMEDrFDkAQ.dll
winmsr32.exe
~TMC.tmp
photo_id.exe
yyysiudq.dll
jtfdprhe.dll
xjpu4at.exe
wsivs.exe
wanrs.exe
wanps.exe
winupdate.exe
14.exe
winred.exe
msconfig.exe
irclass32.dll
swprv32.dll
dfrgres32.dll
svohost.exe
seres.exe
quikywuv.exe
fff.exe
svchast.exe
restorer32_a.exe
nvscv32.exe
bibudoo.exe
DIL3E5.tmp
winlock.exe
qtseekng.dll
10krj.exe
qritgtsl.exe
hcbsrkfg.exe
pqhynarm.exe
lcbypsji.exe
olabkrkf.exe
rgzkzkte.exe
utcnmfix.exe
wrwtaxuv.exe
gbsvyxcj.exe
kfsbklkx.exe
procgdwa32.exe
__c00FFCBE.dat
lkugsgfj.dll
kgvidlkb.dll
cftmon.exe
e0ffa5f0.core.dll
fuzjepkj.exe
hpmom.exe
juns.exe
sgeaaaaa.exe
spooll.exe
userinit.exe
mljhFuTn.dll
hgGxUoOG.dll
nnnkKASL.dll
Crypt16.exe
services.exe
Bsqxita.exe
msn.exe
System.exe
KEYBOARD.exe
imglog.exe
flz.exe
winlogonn.exe
stm.exe dm=http://winanonymous.com ad=http://winanonymous.com sd=http://ilp.winanonymous.com
lsass.exe
avpo0.dll
ctfmona.exe
smss.exe
internt.exe
wmsdkns.exe
sbwltbxa.exe
it_pl.dll
k01vzx1l4j.exe
sysguard.exe
portsv.exe
svchost.exe
itunes.exe
99358426.exe
setup[1].exe
ntdll64.dll
BN9.tmp
98562806.exe
wininet.exe
1[2].exe
ctfmon_lr.exe
edcbwzov.exe
643fbdfhpfbdfa.exe
lvqkjig.exe
nmdfgds0.dll
664.exe
ld08.exe
30153_upw.exe
InternetExplorer.dll
se.exe
spool22.exe
amvo.exe
cbqratop.exe
lobwpmzo.exe
xafwdmpg.exe
pgtalcbm.exe
vixkdwru.exe
qhgzkhsb.exe
wfgbghep.exe
qzwpezkh.exe
erqfsvih.exe
ilgxobox.exe
ohgjqdop.exe
dyrylwlw.exe
nqpkdwpq.exe
xotgxazq.exe
azstkvmd.exe
onkzcfab.exe
ovutcnkx.exe
nglinqvc.exe
cpucooler.exe
nypwrqjm.exe
jsjyxmtk.exe
rwpkvong.exe
fnwovxda.dll
hwhczwvo.exe
cssrss.exe
Sys9.exe
fygamm.dll
yurtloqi.dll
oiwvjxef.dll
dbudnkiq.dll
twtqqryl.dll
zofuncvc.exe
qjopkrqr.exe
qxinghqj.exe
bebszczc.exe
srktcvsf.exe
cpmhqrsz.exe
jcbchcra.exe
pojsjato.exe
olwxgdkf.exe
tifsvyju.exe
bixkzifa.exe
qjojepux.exe
wtmfcpyv.exe
oxengdsl.exe
mnihepcp.exe
qfgnabsv.exe
mtopkvut.exe
jstefsfc.exe
inynatob.exe
zujgtufa.exe
servicelayer.exe
uzcx.exe
winlogon.exe
regmech.exe
mousehook.dll
ypjovqlh.dll
__c0011025.dat
lphcerbj0ee9e.exe
udkgne.dll
ekdjbt.dll
fenggv.dll
2052n.exe
lphcp19j0e3ac.exe
lphclfkj0e90t.exe
lphcnuoj0e3e1.exe
lphcgn6j0ec3j.exe
lphc7o9j0e5d1.exe
ddcApqNe.dll
accesse.exe
ljJccBqp.dll
braviax.exe
WinNt32.dll
GameJackal.exe
efcYRLFy.dll
nnnnKcBs.dll
72.exe
58.exe
obkdetgl.exe
BndDrive7.dll
scchk32.exe
kavo0.dll
ssqRIBRj.dll
hmdqjiha.exe
uhajgtmx.exe
edcbwzov.exe
Trojan.Crypt.XPACK DLL's to remove:
utilinfoset.dll
iifcCsSi.dll
d3davilibrary.dll
ctlodbcmulti.dll
comapi.dll
amvo1.dll
msindeo.dll
UpdateExplorer.dll
mspdb12.dll
mspdb22.dll
mMEDrFDkAQ.dll
yyysiudq.dll
jtfdprhe.dll
irclass32.dll
swprv32.dll
dfrgres32.dll
qtseekng.dll
lkugsgfj.dll
kgvidlkb.dll
e0ffa5f0.core.dll
mljhFuTn.dll
hgGxUoOG.dll
nnnkKASL.dll
avpo0.dll
it_pl.dll
ntdll64.dll
nmdfgds0.dll
InternetExplorer.dll
fnwovxda.dll
fygamm.dll
yurtloqi.dll
oiwvjxef.dll
dbudnkiq.dll
twtqqryl.dll
mousehook.dll
ypjovqlh.dll
udkgne.dll
ekdjbt.dll
fenggv.dll
ddcApqNe.dll
ljJccBqp.dll
WinNt32.dll
efcYRLFy.dll
nnnnKcBs.dll
BndDrive7.dll
kavo0.dll
ssqRIBRj.dll
Trojan.Crypt.XPACK processes to kill:
ActivationCRK.exe
msmmsgr.exe
SearchSettingsProtection.exe
tasklist32.exe
tmp1298.exe
96656396.exe
16646404.exe
~tmp1174.exe
winamp.exe
vlc.exe
upc.exe
svcnost.exe
svchost.exe:ext.exe
rudwlczy.exe
realplayer.exe
lupybklk.exe
jcbilele.exe
hridoun.exe
gtqdshdz.exe
firewall.exe
avast!Antivirus.exe
1[2].exe, wininet.exe
02.exe
wscsvc32.exe
mscdexnt.exe
Nvsvc32.exe
MSWINSCK.exe
msmsgs.exe
protectgb.exe
quogoucoo.exe
jatepaj.exe
scvhost.exe
fyphmedqaf.exe
cmmon64x.exe
mgmrwmrv.exe
lpcywinp.exe
rxjddnvj.exe
encoder.exe
servis.exe
mnZaWWcQ.exe
winupdate.exe.exe
wpv961260022577.exe
extrac64_cab.exe
winlogon32.exe
ctfmon.exe
xmrpj.exe
winmsr32.exe
photo_id.exe
xjpu4at.exe
wsivs.exe
wanrs.exe
wanps.exe
winupdate.exe
14.exe
winred.exe
msconfig.exe
svohost.exe
seres.exe
quikywuv.exe
fff.exe
svchast.exe
restorer32_a.exe
nvscv32.exe
bibudoo.exe
winlock.exe
10krj.exe
qritgtsl.exe
hcbsrkfg.exe
pqhynarm.exe
lcbypsji.exe
olabkrkf.exe
rgzkzkte.exe
utcnmfix.exe
wrwtaxuv.exe
gbsvyxcj.exe
kfsbklkx.exe
procgdwa32.exe
cftmon.exe
fuzjepkj.exe
hpmom.exe
juns.exe
sgeaaaaa.exe
spooll.exe
userinit.exe
Crypt16.exe
services.exe
Bsqxita.exe
msn.exe
System.exe
KEYBOARD.exe
imglog.exe
flz.exe
winlogonn.exe
lsass.exe
ctfmona.exe
smss.exe
internt.exe
wmsdkns.exe
sbwltbxa.exe
k01vzx1l4j.exe
sysguard.exe
portsv.exe
svchost.exe
itunes.exe
99358426.exe
setup[1].exe
98562806.exe
wininet.exe
1[2].exe
ctfmon_lr.exe
edcbwzov.exe
643fbdfhpfbdfa.exe
lvqkjig.exe
664.exe
ld08.exe
30153_upw.exe
se.exe
spool22.exe
amvo.exe
cbqratop.exe
lobwpmzo.exe
xafwdmpg.exe
pgtalcbm.exe
vixkdwru.exe
qhgzkhsb.exe
wfgbghep.exe
qzwpezkh.exe
erqfsvih.exe
ilgxobox.exe
ohgjqdop.exe
dyrylwlw.exe
nqpkdwpq.exe
xotgxazq.exe
azstkvmd.exe
onkzcfab.exe
ovutcnkx.exe
nglinqvc.exe
cpucooler.exe
nypwrqjm.exe
jsjyxmtk.exe
rwpkvong.exe
hwhczwvo.exe
cssrss.exe
Sys9.exe
zofuncvc.exe
qjopkrqr.exe
qxinghqj.exe
bebszczc.exe
srktcvsf.exe
cpmhqrsz.exe
jcbchcra.exe
pojsjato.exe
olwxgdkf.exe
tifsvyju.exe
bixkzifa.exe
qjojepux.exe
wtmfcpyv.exe
oxengdsl.exe
mnihepcp.exe
qfgnabsv.exe
mtopkvut.exe
jstefsfc.exe
inynatob.exe
zujgtufa.exe
servicelayer.exe
uzcx.exe
winlogon.exe
regmech.exe
lphcerbj0ee9e.exe
2052n.exe
lphcp19j0e3ac.exe
lphclfkj0e90t.exe
lphcnuoj0e3e1.exe
lphcgn6j0ec3j.exe
lphc7o9j0e5d1.exe
accesse.exe
braviax.exe
GameJackal.exe
72.exe
58.exe
obkdetgl.exe
scchk32.exe
hmdqjiha.exe
uhajgtmx.exe
edcbwzov.exe
Remove Trojan.Crypt.XPACK registry entries:
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Aim6 Data = Name = yvywxaqv
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ amva
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ asg984jgkfmgasi8ug98jgkfgfb
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ bqhgahsc
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ caajbmmr
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cpkslpmp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cpucooler
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ extrac64_cab.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ fff.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ gxpigjhn
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ jflohpmf
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ kfpjfeuk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ kniwiooe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ksojitjn
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ktxaewfp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lnujnfkm
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mserv
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ mswindows restore service
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSWINSCK.exe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MSWUpdate
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ njqmybcl
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ nzfugkll
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ otvbmfnk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ pfyuatuz
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ prbbhcjp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ qdydzdva
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ qhqegleq
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ rnonnlgp
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ rryvlibj
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sacgnsih
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SVCHOST.EXE
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sxvbxxfj
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ system tool
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ tgntfpcb
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ tkjgoyfl
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ txhoqvpt
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vjxhwgzk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vlxjaucf
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vmqzxdqi
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vpjknijv
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ VxSSciJjPs
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ wbnwfyhy
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ wgtaajpb
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ wskyyile
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xktmnplk
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xsndcbxg
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ xvhqwbcl
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yfsxyxdx
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ygua8e7yhuiesfha876yfauy8fe
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ yptoqzfy
HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ytfgpyxo
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINDOWS\APPINIT_DLLS\ AppInit_DLLs
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\88d00bd668
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\88d00bd6687
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\ddcApqNe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c0011025
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\__c00FFCBE
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\USERINIT\ userinit
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F916321-2E01-4127-B6A9-28EF4B177475}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8ABA9A9C-8791-4d61-8D5B-BCC9448EA573}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{85A1F751-A106-49EE-9E28-C2739E485B46}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{CA88F8ED-50C7-415A-B1B4-7026B804DDCf}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{D2200AA9-207D-4451-A4F6-A32C9807F4D8}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser HelperObjects\{E2BFE352-A303-4EA8-88FE-CE35361D7E8B}
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{D032570A-5F63-4812-A094-87D007C23012}
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 0wl
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 10krj
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 32.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 98562806
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ 99358426
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ act0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ AutoInclude
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ autoload
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ braviax
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Bsqxita
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ CFmon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ cocugym
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmona
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ fuzjepkj
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GlobalFlagimglog
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ guvu
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ IE Redir
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ IEUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ InfoDb
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ iut75
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ jifoun
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ joogyf
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Jun Software
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Local Machine
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ longon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphc7o9j0e5d1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcerbj0ee9e
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcgn6j0ec3j
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphclfkj0e90t
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcnuoj0e3e1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ lphcp19j0e3ac
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ LSA Shell
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Maplom
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Micro Office
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft Defender
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Modulo_Ad_Autorizador
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ MS Office
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ NvGraphicsInterface
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ photo_id
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Protector GB
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ RegistryMechanic
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ restorer32_a
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ runwinlogon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Salestart
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ servicelayer
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sgeaaaaa
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ smss
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ SymantecFilterCheck
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysgif32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ sysldtray
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ system
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ UpdateWin
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ vkk.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ win
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows Messenger
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ WindowsUpdate
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winlogon
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Winofficial
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ winupdate.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\SC2
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\AdbUpd
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\AntiPol
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Darkness
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Plug and Play (RPC)
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENSTlntSvr
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WANPS
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WANRS
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WDefend
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catal
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WINSOCK2\PARAMETERS\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000023
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSIVS
RUNNING PROGRAM\664.exe
RUNNING PROGRAM\BN9.tmp
RUNNING PROGRAM\cbqratop.exe
RUNNING PROGRAM\cmmon64x.exe
RUNNING PROGRAM\cssrss.exe
RUNNING PROGRAM\dyrylwlw.exe
RUNNING PROGRAM\explorer.exe
RUNNING PROGRAM\gbsvyxcj.exe
RUNNING PROGRAM\hpmom.exe
RUNNING PROGRAM\hwhczwvo.exe
RUNNING PROGRAM\ilgxobox.exe
RUNNING PROGRAM\inynatob.exe
RUNNING PROGRAM\itunes.exe
RUNNING PROGRAM\lobwpmzo.exe
RUNNING PROGRAM\lvqkjig.exe
RUNNING PROGRAM\mscdexnt.exe
RUNNING PROGRAM\nglinqvc.exe
RUNNING PROGRAM\ohgjqdop.exe
RUNNING PROGRAM\pgtalcbm.exe
RUNNING PROGRAM\pojsjato.exe
RUNNING PROGRAM\procgdwa32.exe
RUNNING PROGRAM\services.exe
RUNNING PROGRAM\setup[1].exe
RUNNING PROGRAM\spool22.exe
RUNNING PROGRAM\svchast.exe
RUNNING PROGRAM\svchost.exe
RUNNING PROGRAM\Sys9.exe
RUNNING PROGRAM\utcnmfix.exe
RUNNING PROGRAM\winlogon.exe
RUNNING PROGRAM\wscsvc32.exe
RUNNING PROGRAM\xafwdmpg.exe
RUNNING PROGRAM\xotgxazq.exe
SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run "9eRroX92aY"
Post comment — WE NEED YOUR OPINION!