Page 2 of 6 FirstFirst 123456 LastLast
Results 11 to 20 of 56

Thread: Computer locked with a FBI warning, cant use it at all

  1. #11
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default Hi

    It happened after running the Custom FRST. I am not sure it even ran. I did as you said, ran the FRST64, the flash drive was in the infected computer, then pressed the Fix button and nothing happened..
    Thanks for all your help.

  2. #12
    Security Expert-Emeritus Dakeyras's Avatar
    Join Date
    Sep 2008
    Location
    The Tundra
    Posts
    1,173

    Default

    Hi.

    Thanks for all your help.
    You're welcome!

    It happened after running the Custom FRST. I am not sure it even ran. I did as you said, ran the FRST64, the flash drive was in the infected computer, then pressed the Fix button and nothing happened..
    OK reboot(restart) the infected machine if you have not already done so and let myself know if still the original problem/symptoms as in the fake screen, the machine is non responsive etc.

    Also please check on your flash drive if a notepad file named Fixlog.txt is present, if it is post the contents in your next reply please.
    Mammuthus Hibernian Scouserus, member of ASAP and UNITE.

  3. #13
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default Ok..

    Hi... I am just now closing everything and rebooting the infected machine..On closing one screen it said "No fixlist.txt found. The fixlist.txt should be made and saved in the same directory the tool is located."

    When I rebooted the machine the fake screen is still there..

    Also there is a text box on the screen that says "Select a Video Device:".

    One other thing I should tell you the touch pad on the infected machine is not working at times I had to connect a mouse.



    I then opened the flash drive and found this:

    Start
    HKU\Shermqn Cooper\...\Run: [Conduit] rundll32.exe "C:\Users\Shermqn Cooper\AppData\Local\CrashDumps\Conduit\zdszhbmq.dll",RunNtServiceW [348672 2012-11-18] (The GTK developer
    HKU\Shermqn Cooper\...\Policies\system: [DisableRegedit] 0
    HKU\Shermqn Cooper\...\Policies\system: [DisableTaskMgr] 1
    HKLM\...\Winlogon: [Shell] explorer.exe, C:\Users\Shermqn Cooper\AppData\Roaming\_bd_uylzs [x ] ()
    2 AVGIDSAgent; "C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe" [x]
    3 X6va005; \??\C:\Users\SHERMQ~1\AppData\Local\Temp\005A236.tmp [x]
    3 X6va006; \??\C:\Users\SHERMQ~1\AppData\Local\Temp\0064119.tmp [x]
    3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [x]
    3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [x]
    2013-04-05 06:58 - 2012-12-30 16:31 - 00113664 ____A (Usip) C:\Users\Shermqn Cooper\AppData\Roaming\_bd_uylzs.exe
    2013-04-05 06:58 - 2012-12-30 16:15 - 00113664 ____A (Usip) C:\Users\Shermqn Cooper\AppData\Local\_bd_uylzs.exe
    2013-04-05 06:53 - 2012-12-30 16:15 - 00113664 ____A (Usip) C:\ProgramData\_bd_uylzs.exe
    Startup: C:\Users\Shermqn Cooper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fliptoast.lnk
    ShortcutTarget: fliptoast.lnk -> C:\Program Files (x86)\fliptoast\fliptoast.exe ()
    IMEO\a.exe: [Debugger] svchost.exe
    IMEO\aAvgApi.exe: [Debugger] svchost.exe
    IMEO\AAWTray.exe: [Debugger] svchost.exe
    IMEO\About.exe: [Debugger] svchost.exe
    IMEO\ackwin32.exe: [Debugger] svchost.exe
    IMEO\Ad-Aware.exe: [Debugger] svchost.exe
    IMEO\adaware.exe: [Debugger] svchost.exe
    IMEO\advxdwin.exe: [Debugger] svchost.exe
    IMEO\AdwarePrj.exe: [Debugger] svchost.exe
    IMEO\agent.exe: [Debugger] svchost.exe
    IMEO\agentsvr.exe: [Debugger] svchost.exe
    IMEO\agentw.exe: [Debugger] svchost.exe
    IMEO\alertsvc.exe: [Debugger] svchost.exe
    IMEO\alevir.exe: [Debugger] svchost.exe
    IMEO\alogserv.exe: [Debugger] svchost.exe
    IMEO\AlphaAV: [Debugger] svchost.exe
    IMEO\AlphaAV.exe: [Debugger] svchost.exe
    IMEO\AluSchedulerSvc.exe: [Debugger] svchost.exe
    IMEO\amon9x.exe: [Debugger] svchost.exe
    IMEO\anti-trojan.exe: [Debugger] svchost.exe
    IMEO\Anti-Virus Professional.exe: [Debugger] svchost.exe
    IMEO\AntispywarXP2009.exe: [Debugger] svchost.exe
    IMEO\antivirus.exe: [Debugger] svchost.exe
    IMEO\AntivirusPlus: [Debugger] svchost.exe
    IMEO\AntivirusPlus.exe: [Debugger] svchost.exe
    IMEO\AntivirusPro_2010.exe: [Debugger] svchost.exe
    IMEO\AntivirusXP: [Debugger] svchost.exe
    IMEO\AntivirusXP.exe: [Debugger] svchost.exe
    IMEO\antivirusxppro2009.exe: [Debugger] svchost.exe
    IMEO\AntiVirus_Pro.exe: [Debugger] svchost.exe
    IMEO\ants.exe: [Debugger] svchost.exe
    IMEO\apimonitor.exe: [Debugger] svchost.exe
    IMEO\aplica32.exe: [Debugger] svchost.exe
    IMEO\apvxdwin.exe: [Debugger] svchost.exe
    IMEO\arr.exe: [Debugger] svchost.exe
    IMEO\ashAvast.exe: [Debugger] svchost.exe
    IMEO\ashBug.exe: [Debugger] svchost.exe
    IMEO\ashChest.exe: [Debugger] svchost.exe
    IMEO\ashCnsnt.exe: [Debugger] svchost.exe
    IMEO\ashDisp.exe: [Debugger] svchost.exe
    IMEO\ashLogV.exe: [Debugger] svchost.exe
    IMEO\ashMaiSv.exe: [Debugger] svchost.exe
    IMEO\ashPopWz.exe: [Debugger] svchost.exe
    IMEO\ashQuick.exe: [Debugger] svchost.exe
    IMEO\ashServ.exe: [Debugger] svchost.exe
    IMEO\ashSimp2.exe: [Debugger] svchost.exe
    IMEO\ashSimpl.exe: [Debugger] svchost.exe
    IMEO\ashSkPcc.exe: [Debugger] svchost.exe
    IMEO\ashSkPck.exe: [Debugger] svchost.exe
    IMEO\ashUpd.exe: [Debugger] svchost.exe
    IMEO\ashWebSv.exe: [Debugger] svchost.exe
    IMEO\aswChLic.exe: [Debugger] svchost.exe
    IMEO\aswRegSvr.exe: [Debugger] svchost.exe
    IMEO\aswRunDll.exe: [Debugger] svchost.exe
    IMEO\aswUpdSv.exe: [Debugger] svchost.exe
    IMEO\atcon.exe: [Debugger] svchost.exe
    IMEO\atguard.exe: [Debugger] svchost.exe
    IMEO\atro55en.exe: [Debugger] svchost.exe
    IMEO\atupdater.exe: [Debugger] svchost.exe
    IMEO\atwatch.exe: [Debugger] svchost.exe
    IMEO\au.exe: [Debugger] svchost.exe
    IMEO\aupdate.exe: [Debugger] svchost.exe
    IMEO\auto-protect.nav80try.exe: [Debugger] svchost.exe
    IMEO\autodown.exe: [Debugger] svchost.exe
    IMEO\autotrace.exe: [Debugger] svchost.exe
    IMEO\autoupdate.exe: [Debugger] svchost.exe
    IMEO\av360.exe: [Debugger] svchost.exe
    IMEO\avadmin.exe: [Debugger] svchost.exe
    IMEO\avastSvc.exe: [Debugger] svchost.exe
    IMEO\avastUI.exe: [Debugger] svchost.exe
    IMEO\AVCare.exe: [Debugger] svchost.exe
    IMEO\avcenter.exe: [Debugger] svchost.exe
    IMEO\avciman.exe: [Debugger] svchost.exe
    IMEO\avconfig.exe: [Debugger] svchost.exe
    IMEO\avconsol.exe: [Debugger] svchost.exe
    IMEO\ave32.exe: [Debugger] svchost.exe
    IMEO\AVENGINE.EXE: [Debugger] svchost.exe
    IMEO\avgcc32.exe: [Debugger] svchost.exe
    IMEO\avgchk.exe: [Debugger] svchost.exe
    IMEO\avgcmgr.exe: [Debugger] svchost.exe
    IMEO\avgcsrvx.exe: [Debugger] svchost.exe
    IMEO\avgctrl.exe: [Debugger] svchost.exe
    IMEO\avgdumpx.exe: [Debugger] svchost.exe
    IMEO\avgemc.exe: [Debugger] svchost.exe
    IMEO\avgiproxy.exe: [Debugger] svchost.exe
    IMEO\avgnsx.exe: [Debugger] svchost.exe
    IMEO\avgnt.exe: [Debugger] svchost.exe
    IMEO\avgrsx.exe: [Debugger] svchost.exe
    IMEO\avgscanx.exe: [Debugger] svchost.exe
    IMEO\avgserv.exe: [Debugger] svchost.exe
    IMEO\avgserv9.exe: [Debugger] svchost.exe
    IMEO\avgsrmax.exe: [Debugger] svchost.exe
    IMEO\avgtray.exe: [Debugger] svchost.exe
    IMEO\avguard.exe: [Debugger] svchost.exe
    IMEO\avgui.exe: [Debugger] svchost.exe
    IMEO\avgupd.exe: [Debugger] svchost.exe
    IMEO\avgw.exe: [Debugger] svchost.exe
    IMEO\avgwdsvc.exe: [Debugger] svchost.exe
    IMEO\avkpop.exe: [Debugger] svchost.exe
    IMEO\avkserv.exe: [Debugger] svchost.exe
    IMEO\avkservice.exe: [Debugger] svchost.exe
    IMEO\avkwctl9.exe: [Debugger] svchost.exe
    IMEO\avltmain.exe: [Debugger] svchost.exe
    IMEO\avmailc.exe: [Debugger] svchost.exe
    IMEO\avmcdlg.exe: [Debugger] svchost.exe
    IMEO\avnotify.exe: [Debugger] svchost.exe
    IMEO\avnt.exe: [Debugger] svchost.exe
    IMEO\avp32.exe: [Debugger] svchost.exe
    IMEO\avpcc.exe: [Debugger] svchost.exe
    IMEO\avpdos32.exe: [Debugger] svchost.exe
    IMEO\avpm.exe: [Debugger] svchost.exe
    IMEO\avptc32.exe: [Debugger] svchost.exe
    IMEO\avpupd.exe: [Debugger] svchost.exe
    IMEO\avsched32.exe: [Debugger] svchost.exe
    IMEO\avshadow.exe: [Debugger] svchost.exe
    IMEO\avsynmgr.exe: [Debugger] svchost.exe
    IMEO\avupgsvc.exe: [Debugger] svchost.exe
    IMEO\AVWEBGRD.EXE: [Debugger] svchost.exe
    IMEO\avwin.exe: [Debugger] svchost.exe
    IMEO\avwin95.exe: [Debugger] svchost.exe
    IMEO\avwinnt.exe: [Debugger] svchost.exe
    IMEO\avwsc.exe: [Debugger] svchost.exe
    IMEO\avwupd.exe: [Debugger] svchost.exe
    IMEO\avwupd32.exe: [Debugger] svchost.exe
    IMEO\avwupsrv.exe: [Debugger] svchost.exe
    IMEO\avxmonitor9x.exe: [Debugger] svchost.exe
    IMEO\avxmonitornt.exe: [Debugger] svchost.exe
    IMEO\avxquar.exe: [Debugger] svchost.exe
    IMEO\b.exe: [Debugger] svchost.exe
    IMEO\backweb.exe: [Debugger] svchost.exe
    IMEO\bargains.exe: [Debugger] svchost.exe
    IMEO\bdfvcl.exe: [Debugger] svchost.exe
    IMEO\bdfvwiz.exe: [Debugger] svchost.exe
    IMEO\BDInProcPatch.exe: [Debugger] svchost.exe
    IMEO\bdmcon.exe: [Debugger] svchost.exe
    IMEO\BDMsnScan.exe: [Debugger] svchost.exe
    IMEO\BDSurvey.exe: [Debugger] svchost.exe
    IMEO\bd_professional.exe: [Debugger] svchost.exe
    IMEO\beagle.exe: [Debugger] svchost.exe
    IMEO\belt.exe: [Debugger] svchost.exe
    IMEO\bidef.exe: [Debugger] svchost.exe
    IMEO\bidserver.exe: [Debugger] svchost.exe
    IMEO\bipcp.exe: [Debugger] svchost.exe
    IMEO\bipcpevalsetup.exe: [Debugger] svchost.exe
    IMEO\bisp.exe: [Debugger] svchost.exe
    IMEO\blackd.exe: [Debugger] svchost.exe
    IMEO\blackice.exe: [Debugger] svchost.exe
    IMEO\blink.exe: [Debugger] svchost.exe
    IMEO\blss.exe: [Debugger] svchost.exe
    IMEO\bootconf.exe: [Debugger] svchost.exe
    IMEO\bootwarn.exe: [Debugger] svchost.exe
    IMEO\borg2.exe: [Debugger] svchost.exe
    IMEO\bpc.exe: [Debugger] svchost.exe
    IMEO\brasil.exe: [Debugger] svchost.exe
    IMEO\brastk.exe: [Debugger] svchost.exe
    IMEO\brw.exe: [Debugger] svchost.exe
    IMEO\bs120.exe: [Debugger] svchost.exe
    IMEO\bspatch.exe: [Debugger] svchost.exe
    IMEO\bundle.exe: [Debugger] svchost.exe
    IMEO\bvt.exe: [Debugger] svchost.exe
    IMEO\c.exe: [Debugger] svchost.exe
    IMEO\cavscan.exe: [Debugger] svchost.exe
    IMEO\ccapp.exe: [Debugger] svchost.exe
    IMEO\ccevtmgr.exe: [Debugger] svchost.exe
    IMEO\ccpxysvc.exe: [Debugger] svchost.exe
    IMEO\ccSvcHst.exe: [Debugger] svchost.exe
    IMEO\cdp.exe: [Debugger] svchost.exe
    IMEO\cfd.exe: [Debugger] svchost.exe
    IMEO\cfgwiz.exe: [Debugger] svchost.exe
    IMEO\cfiadmin.exe: [Debugger] svchost.exe
    IMEO\cfiaudit.exe: [Debugger] svchost.exe
    IMEO\cfinet.exe: [Debugger] svchost.exe
    IMEO\cfinet32.exe: [Debugger] svchost.exe
    IMEO\cfp.exe: [Debugger] svchost.exe
    IMEO\cfpconfg.exe: [Debugger] svchost.exe
    IMEO\cfplogvw.exe: [Debugger] svchost.exe
    IMEO\cfpupdat.exe: [Debugger] svchost.exe
    IMEO\claw95.exe: [Debugger] svchost.exe
    IMEO\claw95cf.exe: [Debugger] svchost.exe
    IMEO\clean.exe: [Debugger] svchost.exe
    IMEO\cleaner.exe: [Debugger] svchost.exe
    IMEO\cleaner3.exe: [Debugger] svchost.exe
    IMEO\cleanIELow.exe: [Debugger] svchost.exe
    IMEO\cleanpc.exe: [Debugger] svchost.exe
    IMEO\click.exe: [Debugger] svchost.exe
    IMEO\cmd32.exe: [Debugger] svchost.exe
    IMEO\cmdagent.exe: [Debugger] svchost.exe
    IMEO\cmesys.exe: [Debugger] svchost.exe
    IMEO\cmgrdian.exe: [Debugger] svchost.exe
    IMEO\cmon016.exe: [Debugger] svchost.exe
    IMEO\connectionmonitor.exe: [Debugger] svchost.exe
    IMEO\control: [Debugger] svchost.exe
    IMEO\cpd.exe: [Debugger] svchost.exe
    IMEO\cpf9x206.exe: [Debugger] svchost.exe
    IMEO\cpfnt206.exe: [Debugger] svchost.exe
    IMEO\crashrep.exe: [Debugger] svchost.exe
    IMEO\csc.exe: [Debugger] svchost.exe
    IMEO\cssconfg.exe: [Debugger] svchost.exe
    IMEO\cssupdat.exe: [Debugger] svchost.exe
    IMEO\cssurf.exe: [Debugger] svchost.exe
    IMEO\ctrl.exe: [Debugger] svchost.exe
    IMEO\cv.exe: [Debugger] svchost.exe
    IMEO\cwnb181.exe: [Debugger] svchost.exe
    IMEO\cwntdwmo.exe: [Debugger] svchost.exe
    IMEO\d.exe: [Debugger] svchost.exe
    IMEO\datemanager.exe: [Debugger] svchost.exe
    IMEO\dcomx.exe: [Debugger] svchost.exe
    IMEO\defalert.exe: [Debugger] svchost.exe
    IMEO\defscangui.exe: [Debugger] svchost.exe
    IMEO\defwatch.exe: [Debugger] svchost.exe
    IMEO\deloeminfs.exe: [Debugger] svchost.exe
    IMEO\deputy.exe: [Debugger] svchost.exe
    IMEO\divx.exe: [Debugger] svchost.exe
    IMEO\dllcache.exe: [Debugger] svchost.exe
    IMEO\dllreg.exe: [Debugger] svchost.exe
    IMEO\doors.exe: [Debugger] svchost.exe
    IMEO\dop.exe: [Debugger] svchost.exe
    IMEO\dpf.exe: [Debugger] svchost.exe
    IMEO\dpfsetup.exe: [Debugger] svchost.exe
    IMEO\dpps2.exe: [Debugger] svchost.exe
    IMEO\driverctrl.exe: [Debugger] svchost.exe
    IMEO\drwatson.exe: [Debugger] svchost.exe
    IMEO\drweb32.exe: [Debugger] svchost.exe
    IMEO\drwebupw.exe: [Debugger] svchost.exe
    IMEO\dssagent.exe: [Debugger] svchost.exe
    IMEO\dvp95.exe: [Debugger] svchost.exe
    IMEO\dvp95_0.exe: [Debugger] svchost.exe
    IMEO\ecengine.exe: [Debugger] svchost.exe
    IMEO\efpeadm.exe: [Debugger] svchost.exe
    IMEO\emsw.exe: [Debugger] svchost.exe
    IMEO\ent.exe: [Debugger] svchost.exe
    IMEO\esafe.exe: [Debugger] svchost.exe
    IMEO\escanhnt.exe: [Debugger] svchost.exe
    IMEO\escanv95.exe: [Debugger] svchost.exe
    IMEO\espwatch.exe: [Debugger] svchost.exe
    IMEO\ethereal.exe: [Debugger] svchost.exe
    IMEO\etrustcipe.exe: [Debugger] svchost.exe
    IMEO\evpn.exe: [Debugger] svchost.exe
    IMEO\exantivirus-cnet.exe: [Debugger] svchost.exe
    IMEO\exe.avxw.exe: [Debugger] svchost.exe
    IMEO\expert.exe: [Debugger] svchost.exe
    IMEO\explore.exe: [Debugger] svchost.exe
    IMEO\f-agnt95.exe: [Debugger] svchost.exe
    IMEO\f-prot.exe: [Debugger] svchost.exe
    IMEO\f-prot95.exe: [Debugger] svchost.exe
    IMEO\f-stopw.exe: [Debugger] svchost.exe
    IMEO\fact.exe: [Debugger] svchost.exe
    IMEO\fameh32.exe: [Debugger] svchost.exe
    IMEO\fast.exe: [Debugger] svchost.exe
    IMEO\fch32.exe: [Debugger] svchost.exe
    IMEO\fih32.exe: [Debugger] svchost.exe
    IMEO\findviru.exe: [Debugger] svchost.exe
    IMEO\firewall.exe: [Debugger] svchost.exe
    IMEO\fixcfg.exe: [Debugger] svchost.exe
    IMEO\fixfp.exe: [Debugger] svchost.exe
    IMEO\fnrb32.exe: [Debugger] svchost.exe
    IMEO\fp-win.exe: [Debugger] svchost.exe
    IMEO\fp-win_trial.exe: [Debugger] svchost.exe
    IMEO\fprot.exe: [Debugger] svchost.exe
    IMEO\frmwrk32.exe: [Debugger] svchost.exe
    IMEO\frw.exe: [Debugger] svchost.exe
    IMEO\fsaa.exe: [Debugger] svchost.exe
    IMEO\fsav.exe: [Debugger] svchost.exe
    IMEO\fsav32.exe: [Debugger] svchost.exe
    IMEO\fsav530stbyb.exe: [Debugger] svchost.exe
    IMEO\fsav530wtbyb.exe: [Debugger] svchost.exe
    IMEO\fsav95.exe: [Debugger] svchost.exe
    IMEO\fsgk32.exe: [Debugger] svchost.exe
    IMEO\fsm32.exe: [Debugger] svchost.exe
    IMEO\fsma32.exe: [Debugger] svchost.exe
    IMEO\fsmb32.exe: [Debugger] svchost.exe
    IMEO\gator.exe: [Debugger] svchost.exe
    IMEO\gav.exe: [Debugger] svchost.exe
    IMEO\gbmenu.exe: [Debugger] svchost.exe
    IMEO\gbn976rl.exe: [Debugger] svchost.exe
    IMEO\gbpoll.exe: [Debugger] svchost.exe
    IMEO\generics.exe: [Debugger] svchost.exe
    IMEO\gmt.exe: [Debugger] svchost.exe
    IMEO\guard.exe: [Debugger] svchost.exe
    IMEO\guarddog.exe: [Debugger] svchost.exe
    IMEO\guardgui.exe: [Debugger] svchost.exe
    IMEO\hacktracersetup.exe: [Debugger] svchost.exe
    IMEO\hbinst.exe: [Debugger] svchost.exe
    IMEO\hbsrv.exe: [Debugger] svchost.exe
    IMEO\History.exe: [Debugger] svchost.exe
    IMEO\homeav2010.exe: [Debugger] svchost.exe
    IMEO\hotactio.exe: [Debugger] svchost.exe
    IMEO\hotpatch.exe: [Debugger] svchost.exe
    IMEO\htlog.exe: [Debugger] svchost.exe
    IMEO\htpatch.exe: [Debugger] svchost.exe
    IMEO\hwpe.exe: [Debugger] svchost.exe
    IMEO\hxdl.exe: [Debugger] svchost.exe
    IMEO\hxiul.exe: [Debugger] svchost.exe
    IMEO\iamapp.exe: [Debugger] svchost.exe
    IMEO\iamserv.exe: [Debugger] svchost.exe
    IMEO\iamstats.exe: [Debugger] svchost.exe
    IMEO\ibmasn.exe: [Debugger] svchost.exe
    IMEO\ibmavsp.exe: [Debugger] svchost.exe
    IMEO\icload95.exe: [Debugger] svchost.exe
    IMEO\icloadnt.exe: [Debugger] svchost.exe
    IMEO\icmon.exe: [Debugger] svchost.exe
    IMEO\icsupp95.exe: [Debugger] svchost.exe
    IMEO\icsuppnt.exe: [Debugger] svchost.exe
    IMEO\Identity.exe: [Debugger] svchost.exe
    IMEO\idle.exe: [Debugger] svchost.exe
    IMEO\iedll.exe: [Debugger] svchost.exe
    IMEO\iedriver.exe: [Debugger] svchost.exe
    IMEO\IEShow.exe: [Debugger] svchost.exe
    IMEO\iface.exe: [Debugger] svchost.exe
    IMEO\ifw2000.exe: [Debugger] svchost.exe
    IMEO\inetlnfo.exe: [Debugger] svchost.exe
    IMEO\infus.exe: [Debugger] svchost.exe
    IMEO\infwin.exe: [Debugger] svchost.exe
    IMEO\init.exe: [Debugger] svchost.exe
    IMEO\init32.exe : [Debugger] svchost.exe
    IMEO\install[1].exe: [Debugger] svchost.exe
    IMEO\install[2].exe: [Debugger] svchost.exe
    IMEO\install[3].exe: [Debugger] svchost.exe
    IMEO\install[4].exe: [Debugger] svchost.exe
    IMEO\install[5].exe: [Debugger] svchost.exe
    IMEO\intdel.exe: [Debugger] svchost.exe
    IMEO\intren.exe: [Debugger] svchost.exe
    IMEO\iomon98.exe: [Debugger] svchost.exe
    IMEO\istsvc.exe: [Debugger] svchost.exe
    IMEO\jammer.exe: [Debugger] svchost.exe
    IMEO\jdbgmrg.exe: [Debugger] svchost.exe
    IMEO\jedi.exe: [Debugger] svchost.exe
    IMEO\JsRcGen.exe: [Debugger] svchost.exe
    IMEO\kavlite40eng.exe: [Debugger] svchost.exe
    IMEO\kavpers40eng.exe: [Debugger] svchost.exe
    IMEO\kavpf.exe: [Debugger] svchost.exe
    IMEO\kazza.exe: [Debugger] svchost.exe
    IMEO\keenvalue.exe: [Debugger] svchost.exe
    IMEO\kerio-pf-213-en-win.exe: [Debugger] svchost.exe
    IMEO\kerio-wrl-421-en-win.exe: [Debugger] svchost.exe
    IMEO\kerio-wrp-421-en-win.exe: [Debugger] svchost.exe
    IMEO\killprocesssetup161.exe: [Debugger] svchost.exe
    IMEO\ldnetmon.exe: [Debugger] svchost.exe
    IMEO\ldpro.exe: [Debugger] svchost.exe
    IMEO\ldpromenu.exe: [Debugger] svchost.exe
    IMEO\ldscan.exe: [Debugger] svchost.exe
    IMEO\licmgr.exe: [Debugger] svchost.exe
    IMEO\lnetinfo.exe: [Debugger] svchost.exe
    IMEO\loader.exe: [Debugger] svchost.exe
    IMEO\localnet.exe: [Debugger] svchost.exe
    IMEO\lockdown.exe: [Debugger] svchost.exe
    IMEO\lockdown2000.exe: [Debugger] svchost.exe
    IMEO\lookout.exe: [Debugger] svchost.exe
    IMEO\lordpe.exe: [Debugger] svchost.exe
    IMEO\lsetup.exe: [Debugger] svchost.exe
    IMEO\luall.exe: [Debugger] svchost.exe
    IMEO\luau.exe: [Debugger] svchost.exe
    IMEO\lucomserver.exe: [Debugger] svchost.exe
    IMEO\luinit.exe: [Debugger] svchost.exe
    IMEO\luspt.exe: [Debugger] svchost.exe
    IMEO\MalwareRemoval.exe: [Debugger] svchost.exe
    IMEO\mapisvc32.exe: [Debugger] svchost.exe
    IMEO\mbam.exe: [Debugger] svchost.exe
    IMEO\mbamgui.exe: [Debugger] svchost.exe
    IMEO\mbamservice.exe: [Debugger] svchost.exe
    IMEO\mcagent.exe: [Debugger] svchost.exe
    IMEO\mcmnhdlr.exe: [Debugger] svchost.exe
    IMEO\mcmpeng.exe: [Debugger] svchost.exe
    IMEO\mcmscsvc.exe: [Debugger] svchost.exe
    IMEO\mcnasvc.exe: [Debugger] svchost.exe
    IMEO\mcproxy.exe: [Debugger] svchost.exe
    IMEO\McSACore.exe: [Debugger] svchost.exe
    IMEO\mcshell.exe: [Debugger] svchost.exe
    IMEO\mcshield.exe: [Debugger] svchost.exe
    IMEO\mcsysmon.exe: [Debugger] svchost.exe
    IMEO\mctool.exe: [Debugger] svchost.exe
    IMEO\mcupdate.exe: [Debugger] svchost.exe
    IMEO\mcvsrte.exe: [Debugger] svchost.exe
    IMEO\mcvsshld.exe: [Debugger] svchost.exe
    IMEO\md.exe: [Debugger] svchost.exe
    IMEO\mfin32.exe: [Debugger] svchost.exe
    IMEO\mfw2en.exe: [Debugger] svchost.exe
    IMEO\mfweng3.02d30.exe: [Debugger] svchost.exe
    IMEO\mgavrtcl.exe: [Debugger] svchost.exe
    IMEO\mgavrte.exe: [Debugger] svchost.exe
    IMEO\mghtml.exe: [Debugger] svchost.exe
    IMEO\mgui.exe: [Debugger] svchost.exe
    IMEO\minilog.exe: [Debugger] svchost.exe
    IMEO\mmod.exe: [Debugger] svchost.exe
    IMEO\monitor.exe: [Debugger] svchost.exe
    IMEO\moolive.exe: [Debugger] svchost.exe
    IMEO\mostat.exe: [Debugger] svchost.exe
    IMEO\mpfagent.exe: [Debugger] svchost.exe
    IMEO\mpfservice.exe: [Debugger] svchost.exe
    IMEO\MPFSrv.exe: [Debugger] svchost.exe
    IMEO\mpftray.exe: [Debugger] svchost.exe
    IMEO\mrflux.exe: [Debugger] svchost.exe
    IMEO\mrt.exe: [Debugger] svchost.exe
    IMEO\msa.exe: [Debugger] svchost.exe
    IMEO\msapp.exe: [Debugger] svchost.exe
    IMEO\MSASCui.exe: [Debugger] svchost.exe
    IMEO\msbb.exe: [Debugger] svchost.exe
    IMEO\msblast.exe: [Debugger] svchost.exe
    IMEO\mscache.exe: [Debugger] svchost.exe
    IMEO\msccn32.exe: [Debugger] svchost.exe
    IMEO\mscman.exe: [Debugger] svchost.exe
    IMEO\msconfig: [Debugger] svchost.exe
    IMEO\msdm.exe: [Debugger] svchost.exe
    IMEO\msdos.exe: [Debugger] svchost.exe
    IMEO\msiexec16.exe: [Debugger] svchost.exe
    IMEO\mslaugh.exe: [Debugger] svchost.exe
    IMEO\msmgt.exe: [Debugger] svchost.exe
    IMEO\msmsgri32.exe: [Debugger] svchost.exe
    IMEO\msseces.exe: [Debugger] svchost.exe
    IMEO\mssmmc32.exe: [Debugger] svchost.exe
    IMEO\mssys.exe: [Debugger] svchost.exe
    IMEO\msvxd.exe: [Debugger] svchost.exe
    IMEO\mu0311ad.exe: [Debugger] svchost.exe
    IMEO\mwatch.exe: [Debugger] svchost.exe
    IMEO\n32scanw.exe: [Debugger] svchost.exe
    IMEO\nav.exe: [Debugger] svchost.exe
    IMEO\navap.navapsvc.exe: [Debugger] svchost.exe
    IMEO\navapsvc.exe: [Debugger] svchost.exe
    IMEO\navapw32.exe: [Debugger] svchost.exe
    IMEO\navdx.exe: [Debugger] svchost.exe
    IMEO\navlu32.exe: [Debugger] svchost.exe
    IMEO\navnt.exe: [Debugger] svchost.exe
    IMEO\navstub.exe: [Debugger] svchost.exe
    IMEO\navw32.exe: [Debugger] svchost.exe
    IMEO\navwnt.exe: [Debugger] svchost.exe
    IMEO\nc2000.exe: [Debugger] svchost.exe
    IMEO\ncinst4.exe: [Debugger] svchost.exe
    IMEO\ndd32.exe: [Debugger] svchost.exe
    IMEO\neomonitor.exe: [Debugger] svchost.exe
    IMEO\neowatchlog.exe: [Debugger] svchost.exe
    IMEO\netarmor.exe: [Debugger] svchost.exe
    IMEO\netd32.exe: [Debugger] svchost.exe
    IMEO\netinfo.exe: [Debugger] svchost.exe
    IMEO\netmon.exe: [Debugger] svchost.exe
    IMEO\netscanpro.exe: [Debugger] svchost.exe
    IMEO\netspyhunter-1.2.exe: [Debugger] svchost.exe
    IMEO\netutils.exe: [Debugger] svchost.exe
    IMEO\nisserv.exe: [Debugger] svchost.exe
    IMEO\nisum.exe: [Debugger] svchost.exe
    IMEO\nmain.exe: [Debugger] svchost.exe
    IMEO\nod32.exe: [Debugger] svchost.exe
    IMEO\normist.exe: [Debugger] svchost.exe
    IMEO\norton_internet_secu_3.0_407.exe: [Debugger] svchost.exe
    IMEO\notstart.exe: [Debugger] svchost.exe
    IMEO\npf40_tw_98_nt_me_2k.exe: [Debugger] svchost.exe
    IMEO\npfmessenger.exe: [Debugger] svchost.exe
    IMEO\nprotect.exe: [Debugger] svchost.exe
    IMEO\npscheck.exe: [Debugger] svchost.exe
    IMEO\npssvc.exe: [Debugger] svchost.exe
    IMEO\nsched32.exe: [Debugger] svchost.exe
    IMEO\nssys32.exe: [Debugger] svchost.exe
    IMEO\nstask32.exe: [Debugger] svchost.exe
    IMEO\nsupdate.exe: [Debugger] svchost.exe
    IMEO\nt.exe: [Debugger] svchost.exe
    IMEO\ntrtscan.exe: [Debugger] svchost.exe
    IMEO\ntvdm.exe: [Debugger] svchost.exe
    IMEO\ntxconfig.exe: [Debugger] svchost.exe
    IMEO\nui.exe: [Debugger] svchost.exe
    IMEO\nupgrade.exe: [Debugger] svchost.exe
    IMEO\nvarch16.exe: [Debugger] svchost.exe
    IMEO\nvc95.exe: [Debugger] svchost.exe
    IMEO\nvsvc32.exe: [Debugger] svchost.exe
    IMEO\nwinst4.exe: [Debugger] svchost.exe
    IMEO\nwservice.exe: [Debugger] svchost.exe
    IMEO\nwtool16.exe: [Debugger] svchost.exe
    IMEO\OAcat.exe: [Debugger] svchost.exe
    IMEO\OAhlp.exe: [Debugger] svchost.exe
    IMEO\OAReg.exe: [Debugger] svchost.exe
    IMEO\oasrv.exe: [Debugger] svchost.exe
    IMEO\oaui.exe: [Debugger] svchost.exe
    IMEO\oaview.exe: [Debugger] svchost.exe
    IMEO\ODSW.exe: [Debugger] svchost.exe
    IMEO\ollydbg.exe: [Debugger] svchost.exe
    IMEO\onsrvr.exe: [Debugger] svchost.exe
    IMEO\optimize.exe: [Debugger] svchost.exe
    IMEO\ostronet.exe: [Debugger] svchost.exe
    IMEO\otfix.exe: [Debugger] svchost.exe
    IMEO\outpost.exe: [Debugger] svchost.exe
    IMEO\outpostinstall.exe: [Debugger] svchost.exe
    IMEO\outpostproinstall.exe: [Debugger] svchost.exe
    IMEO\ozn695m5.exe: [Debugger] svchost.exe
    IMEO\padmin.exe: [Debugger] svchost.exe
    IMEO\panixk.exe: [Debugger] svchost.exe
    IMEO\patch.exe: [Debugger] svchost.exe
    IMEO\pav.exe: [Debugger] svchost.exe
    IMEO\pavcl.exe: [Debugger] svchost.exe
    IMEO\PavFnSvr.exe: [Debugger] svchost.exe
    IMEO\pavproxy.exe: [Debugger] svchost.exe
    IMEO\pavprsrv.exe: [Debugger] svchost.exe
    IMEO\pavsched.exe: [Debugger] svchost.exe
    IMEO\pavsrv51.exe: [Debugger] svchost.exe
    IMEO\pavw.exe: [Debugger] svchost.exe
    IMEO\pc.exe: [Debugger] svchost.exe
    IMEO\pccwin98.exe: [Debugger] svchost.exe
    IMEO\pcfwallicon.exe: [Debugger] svchost.exe
    IMEO\pcip10117_0.exe: [Debugger] svchost.exe
    IMEO\pcscan.exe: [Debugger] svchost.exe
    IMEO\pctsAuxs.exe: [Debugger] svchost.exe
    IMEO\pctsGui.exe: [Debugger] svchost.exe
    IMEO\pctsSvc.exe: [Debugger] svchost.exe
    IMEO\pctsTray.exe: [Debugger] svchost.exe
    IMEO\PC_Antispyware2010.exe: [Debugger] svchost.exe
    IMEO\pdfndr.exe: [Debugger] svchost.exe
    IMEO\pdsetup.exe: [Debugger] svchost.exe
    IMEO\PerAvir.exe: [Debugger] svchost.exe
    IMEO\periscope.exe: [Debugger] svchost.exe
    IMEO\persfw.exe: [Debugger] svchost.exe
    IMEO\personalguard: [Debugger] svchost.exe
    IMEO\personalguard.exe: [Debugger] svchost.exe
    IMEO\perswf.exe: [Debugger] svchost.exe
    IMEO\pf2.exe: [Debugger] svchost.exe
    IMEO\pfwadmin.exe: [Debugger] svchost.exe
    IMEO\pgmonitr.exe: [Debugger] svchost.exe
    IMEO\pingscan.exe: [Debugger] svchost.exe
    IMEO\platin.exe: [Debugger] svchost.exe
    IMEO\pop3trap.exe: [Debugger] svchost.exe
    IMEO\poproxy.exe: [Debugger] svchost.exe
    IMEO\popscan.exe: [Debugger] svchost.exe
    IMEO\portdetective.exe: [Debugger] svchost.exe
    IMEO\portmonitor.exe: [Debugger] svchost.exe
    IMEO\powerscan.exe: [Debugger] svchost.exe
    IMEO\ppinupdt.exe: [Debugger] svchost.exe
    IMEO\pptbc.exe: [Debugger] svchost.exe
    IMEO\ppvstop.exe: [Debugger] svchost.exe
    IMEO\prizesurfer.exe: [Debugger] svchost.exe
    IMEO\prmt.exe: [Debugger] svchost.exe
    IMEO\prmvr.exe: [Debugger] svchost.exe
    IMEO\procdump.exe: [Debugger] svchost.exe
    IMEO\processmonitor.exe: [Debugger] svchost.exe
    IMEO\procexplorerv1.0.exe: [Debugger] svchost.exe
    IMEO\programauditor.exe: [Debugger] svchost.exe
    IMEO\proport.exe: [Debugger] svchost.exe
    IMEO\protector.exe: [Debugger] svchost.exe
    IMEO\protectx.exe: [Debugger] svchost.exe
    IMEO\PSANCU.exe: [Debugger] svchost.exe
    IMEO\PSANHost.exe: [Debugger] svchost.exe
    IMEO\PSANToManager.exe: [Debugger] svchost.exe
    IMEO\PsCtrls.exe: [Debugger] svchost.exe
    IMEO\PsImSvc.exe: [Debugger] svchost.exe
    IMEO\PskSvc.exe: [Debugger] svchost.exe
    IMEO\pspf.exe: [Debugger] svchost.exe
    IMEO\PSUNMain.exe: [Debugger] svchost.exe
    IMEO\purge.exe: [Debugger] svchost.exe
    IMEO\qconsole.exe: [Debugger] svchost.exe
    IMEO\qh.exe: [Debugger] svchost.exe
    IMEO\qserver.exe: [Debugger] svchost.exe
    IMEO\Quick Heal.exe: [Debugger] svchost.exe
    IMEO\QuickHealCleaner.exe: [Debugger] svchost.exe
    IMEO\rapapp.exe: [Debugger] svchost.exe
    IMEO\rav7.exe: [Debugger] svchost.exe
    IMEO\rav7win.exe: [Debugger] svchost.exe
    IMEO\rav8win32eng.exe: [Debugger] svchost.exe
    IMEO\ray.exe: [Debugger] svchost.exe
    IMEO\rb32.exe: [Debugger] svchost.exe
    IMEO\rcsync.exe: [Debugger] svchost.exe
    IMEO\realmon.exe: [Debugger] svchost.exe
    IMEO\reged.exe: [Debugger] svchost.exe
    IMEO\regedt32.exe: [Debugger] svchost.exe
    IMEO\rescue.exe: [Debugger] svchost.exe
    IMEO\rescue32.exe: [Debugger] svchost.exe
    IMEO\rrguard.exe: [Debugger] svchost.exe
    IMEO\rscdwld.exe: [Debugger] svchost.exe
    IMEO\rshell.exe: [Debugger] svchost.exe
    IMEO\rtvscan.exe: [Debugger] svchost.exe
    IMEO\rtvscn95.exe: [Debugger] svchost.exe
    IMEO\rulaunch.exe: [Debugger] svchost.exe
    IMEO\rwg: [Debugger] svchost.exe
    IMEO\rwg.exe: [Debugger] svchost.exe
    IMEO\SafetyKeeper.exe: [Debugger] svchost.exe
    IMEO\safeweb.exe: [Debugger] svchost.exe
    IMEO\sahagent.exe: [Debugger] svchost.exe
    IMEO\Save.exe: [Debugger] svchost.exe
    IMEO\SaveArmor.exe: [Debugger] svchost.exe
    IMEO\SaveDefense.exe: [Debugger] svchost.exe
    IMEO\SaveKeep.exe: [Debugger] svchost.exe
    IMEO\savenow.exe: [Debugger] svchost.exe
    IMEO\sbserv.exe: [Debugger] svchost.exe
    IMEO\sc.exe: [Debugger] svchost.exe
    IMEO\scam32.exe: [Debugger] svchost.exe
    IMEO\scan32.exe: [Debugger] svchost.exe
    IMEO\scan95.exe: [Debugger] svchost.exe
    IMEO\scanpm.exe: [Debugger] svchost.exe
    IMEO\scrscan.exe: [Debugger] svchost.exe
    IMEO\Secure Veteran.exe: [Debugger] svchost.exe
    IMEO\secureveteran.exe: [Debugger] svchost.exe
    IMEO\Security Center.exe: [Debugger] svchost.exe
    IMEO\SecurityFighter.exe: [Debugger] svchost.exe
    IMEO\securitysoldier.exe: [Debugger] svchost.exe
    IMEO\serv95.exe: [Debugger] svchost.exe
    IMEO\setloadorder.exe: [Debugger] svchost.exe
    IMEO\setupvameeval.exe: [Debugger] svchost.exe
    IMEO\setup_flowprotector_us.exe: [Debugger] svchost.exe
    IMEO\sgssfw32.exe: [Debugger] svchost.exe
    IMEO\sh.exe: [Debugger] svchost.exe
    IMEO\shellspyinstall.exe: [Debugger] svchost.exe
    IMEO\shield.exe: [Debugger] svchost.exe
    IMEO\shn.exe: [Debugger] svchost.exe
    IMEO\showbehind.exe: [Debugger] svchost.exe
    IMEO\signcheck.exe: [Debugger] svchost.exe
    IMEO\smart.exe: [Debugger] svchost.exe
    IMEO\smartprotector.exe: [Debugger] svchost.exe
    IMEO\smc.exe: [Debugger] svchost.exe
    IMEO\smrtdefp.exe: [Debugger] svchost.exe
    IMEO\sms.exe: [Debugger] svchost.exe
    IMEO\smss32.exe: [Debugger] svchost.exe
    IMEO\snetcfg.exe: [Debugger] svchost.exe
    IMEO\soap.exe: [Debugger] svchost.exe
    IMEO\sofi.exe: [Debugger] svchost.exe
    IMEO\SoftSafeness.exe: [Debugger] svchost.exe
    IMEO\sperm.exe: [Debugger] svchost.exe
    IMEO\spf.exe: [Debugger] svchost.exe
    IMEO\sphinx.exe: [Debugger] svchost.exe
    IMEO\spoler.exe: [Debugger] svchost.exe
    IMEO\spoolcv.exe: [Debugger] svchost.exe
    IMEO\spoolsv32.exe: [Debugger] svchost.exe
    IMEO\spywarexpguard.exe: [Debugger] svchost.exe
    IMEO\spyxx.exe: [Debugger] svchost.exe
    IMEO\srexe.exe: [Debugger] svchost.exe
    IMEO\srng.exe: [Debugger] svchost.exe
    IMEO\ss3edit.exe: [Debugger] svchost.exe
    IMEO\ssgrate.exe: [Debugger] svchost.exe
    IMEO\ssg_4104.exe: [Debugger] svchost.exe
    IMEO\st2.exe: [Debugger] svchost.exe
    IMEO\start.exe: [Debugger] svchost.exe
    IMEO\stcloader.exe: [Debugger] svchost.exe
    IMEO\supftrl.exe: [Debugger] svchost.exe
    IMEO\support.exe: [Debugger] svchost.exe
    IMEO\supporter5.exe: [Debugger] svchost.exe
    IMEO\svc.exe: [Debugger] svchost.exe
    IMEO\svchostc.exe: [Debugger] svchost.exe
    IMEO\svchosts.exe: [Debugger] svchost.exe
    IMEO\svshost.exe: [Debugger] svchost.exe
    IMEO\sweep95.exe: [Debugger] svchost.exe
    IMEO\sweepnet.sweepsrv.sys.swnetsup.exe: [Debugger] svchost.exe
    IMEO\symlcsvc.exe: [Debugger] svchost.exe
    IMEO\symproxysvc.exe: [Debugger] svchost.exe
    IMEO\symtray.exe: [Debugger] svchost.exe
    IMEO\system.exe: [Debugger] svchost.exe
    IMEO\system32.exe: [Debugger] svchost.exe
    IMEO\sysupd.exe: [Debugger] svchost.exe
    IMEO\tapinstall.exe: [Debugger] svchost.exe
    IMEO\taumon.exe: [Debugger] svchost.exe
    IMEO\tbscan.exe: [Debugger] svchost.exe
    IMEO\tc.exe: [Debugger] svchost.exe
    IMEO\tca.exe: [Debugger] svchost.exe
    IMEO\tcm.exe: [Debugger] svchost.exe
    IMEO\tds-3.exe: [Debugger] svchost.exe
    IMEO\tds2-98.exe: [Debugger] svchost.exe
    IMEO\tds2-nt.exe: [Debugger] svchost.exe
    IMEO\teekids.exe: [Debugger] svchost.exe
    IMEO\tfak.exe: [Debugger] svchost.exe
    IMEO\tfak5.exe: [Debugger] svchost.exe
    IMEO\tgbob.exe: [Debugger] svchost.exe
    IMEO\titanin.exe: [Debugger] svchost.exe
    IMEO\titaninxp.exe: [Debugger] svchost.exe
    IMEO\TPSrv.exe: [Debugger] svchost.exe
    IMEO\trickler.exe: [Debugger] svchost.exe
    IMEO\trjscan.exe: [Debugger] svchost.exe
    IMEO\trjsetup.exe: [Debugger] svchost.exe
    IMEO\trojantrap3.exe: [Debugger] svchost.exe
    IMEO\TrustWarrior.exe: [Debugger] svchost.exe
    IMEO\tsadbot.exe: [Debugger] svchost.exe
    IMEO\tsc.exe: [Debugger] svchost.exe
    IMEO\tvmd.exe: [Debugger] svchost.exe
    IMEO\tvtmd.exe: [Debugger] svchost.exe
    IMEO\undoboot.exe: [Debugger] svchost.exe
    IMEO\updat.exe: [Debugger] svchost.exe
    IMEO\upgrad.exe: [Debugger] svchost.exe
    IMEO\utpost.exe: [Debugger] svchost.exe
    IMEO\vbcmserv.exe: [Debugger] svchost.exe
    IMEO\vbcons.exe: [Debugger] svchost.exe
    IMEO\vbust.exe: [Debugger] svchost.exe
    IMEO\vbwin9x.exe: [Debugger] svchost.exe
    IMEO\vbwinntw.exe: [Debugger] svchost.exe
    IMEO\vcsetup.exe: [Debugger] svchost.exe
    IMEO\vet32.exe: [Debugger] svchost.exe
    IMEO\vet95.exe: [Debugger] svchost.exe
    IMEO\vettray.exe: [Debugger] svchost.exe
    IMEO\vfsetup.exe: [Debugger] svchost.exe
    IMEO\vir-help.exe: [Debugger] svchost.exe
    IMEO\virusmdpersonalfirewall.exe: [Debugger] svchost.exe
    IMEO\VisthAux.exe: [Debugger] svchost.exe
    IMEO\VisthLic.exe: [Debugger] svchost.exe
    IMEO\VisthUpd.exe: [Debugger] svchost.exe
    IMEO\vnlan300.exe: [Debugger] svchost.exe
    IMEO\vnpc3000.exe: [Debugger] svchost.exe
    IMEO\vpc32.exe: [Debugger] svchost.exe
    IMEO\vpc42.exe: [Debugger] svchost.exe
    IMEO\vpfw30s.exe: [Debugger] svchost.exe
    IMEO\vptray.exe: [Debugger] svchost.exe
    IMEO\vscan40.exe: [Debugger] svchost.exe
    IMEO\vscenu6.02d30.exe: [Debugger] svchost.exe
    IMEO\vsched.exe: [Debugger] svchost.exe
    IMEO\vsecomr.exe: [Debugger] svchost.exe
    IMEO\vshwin32.exe: [Debugger] svchost.exe
    IMEO\vsisetup.exe: [Debugger] svchost.exe
    IMEO\vsmain.exe: [Debugger] svchost.exe
    IMEO\vsmon.exe: [Debugger] svchost.exe
    IMEO\vsstat.exe: [Debugger] svchost.exe
    IMEO\vswin9xe.exe: [Debugger] svchost.exe
    IMEO\vswinntse.exe: [Debugger] svchost.exe
    IMEO\vswinperse.exe: [Debugger] svchost.exe
    IMEO\w32dsm89.exe: [Debugger] svchost.exe
    IMEO\W3asbas.exe: [Debugger] svchost.exe
    IMEO\w9x.exe: [Debugger] svchost.exe
    IMEO\watchdog.exe: [Debugger] svchost.exe
    IMEO\webdav.exe: [Debugger] svchost.exe
    IMEO\WebProxy.exe: [Debugger] svchost.exe
    IMEO\webscanx.exe: [Debugger] svchost.exe
    IMEO\webtrap.exe: [Debugger] svchost.exe
    IMEO\wfindv32.exe: [Debugger] svchost.exe
    IMEO\whoswatchingme.exe: [Debugger] svchost.exe
    IMEO\wimmun32.exe: [Debugger] svchost.exe
    IMEO\win-bugsfix.exe: [Debugger] svchost.exe
    IMEO\win32.exe: [Debugger] svchost.exe
    IMEO\win32us.exe: [Debugger] svchost.exe
    IMEO\winactive.exe: [Debugger] svchost.exe
    IMEO\winav.exe: [Debugger] svchost.exe
    IMEO\windll32.exe: [Debugger] svchost.exe
    IMEO\window.exe: [Debugger] svchost.exe
    IMEO\windows Police Pro.exe: [Debugger] svchost.exe
    IMEO\windows.exe: [Debugger] svchost.exe
    IMEO\wininetd.exe: [Debugger] svchost.exe
    IMEO\wininitx.exe: [Debugger] svchost.exe
    IMEO\winlogin.exe: [Debugger] svchost.exe
    IMEO\winmain.exe: [Debugger] svchost.exe
    IMEO\winppr32.exe: [Debugger] svchost.exe
    IMEO\winrecon.exe: [Debugger] svchost.exe
    IMEO\winservn.exe: [Debugger] svchost.exe
    IMEO\winssk32.exe: [Debugger] svchost.exe
    IMEO\winstart.exe: [Debugger] svchost.exe
    IMEO\winstart001.exe: [Debugger] svchost.exe
    IMEO\wintsk32.exe: [Debugger] svchost.exe
    IMEO\winupdate.exe: [Debugger] svchost.exe
    IMEO\wkufind.exe: [Debugger] svchost.exe
    IMEO\wnad.exe: [Debugger] svchost.exe
    IMEO\wnt.exe: [Debugger] svchost.exe
    IMEO\wradmin.exe: [Debugger] svchost.exe
    IMEO\wrctrl.exe: [Debugger] svchost.exe
    IMEO\wsbgate.exe: [Debugger] svchost.exe
    IMEO\wscfxas.exe: [Debugger] svchost.exe
    IMEO\wscfxav.exe: [Debugger] svchost.exe
    IMEO\wscfxfw.exe: [Debugger] svchost.exe
    IMEO\wsctool.exe: [Debugger] svchost.exe
    IMEO\wupdater.exe: [Debugger] svchost.exe
    IMEO\wupdt.exe: [Debugger] svchost.exe
    IMEO\wyvernworksfirewall.exe: [Debugger] svchost.exe
    IMEO\xpdeluxe.exe: [Debugger] svchost.exe
    IMEO\xpf202en.exe: [Debugger] svchost.exe
    IMEO\xp_antispyware.exe: [Debugger] svchost.exe
    IMEO\zapro.exe: [Debugger] svchost.exe
    IMEO\zapsetup3001.exe: [Debugger] svchost.exe
    IMEO\zatutor.exe: [Debugger] svchost.exe
    IMEO\zonalm2601.exe: [Debugger] svchost.exe
    IMEO\zonealarm.exe: [Debugger] svchost.exe
    IMEO\_avp32.exe: [Debugger] svchost.exe
    IMEO\_avpcc.exe: [Debugger] svchost.exe
    IMEO\_avpm.exe: [Debugger] svchost.exe
    IMEO\~1.exe: [Debugger] svchost.exe
    IMEO\~2.exe: [Debugger] svchost.exe
    End

  4. #14
    Security Expert-Emeritus Dakeyras's Avatar
    Join Date
    Sep 2008
    Location
    The Tundra
    Posts
    1,173

    Default

    Hi.

    When I rebooted the machine the fake screen is still there..

    Also there is a text box on the screen that says "Select a Video Device:".

    One other thing I should tell you the touch pad on the infected machine is not working at times I had to connect a mouse.
    Acknowledged...

    On closing one screen it said "No fixlist.txt found. The fixlist.txt should be made and saved in the same directory the tool is located."
    OK we will take a slightly different approach with regard to running the Custom FRST Script and just that for now as follows...

    Custom FRST Script:

    Please empty your flash-drive as in delete everything that may be on it apart from frst64.exe.

    • Open notepad (Start >> All Programs >> Accessories >> Notepad). Please copy the entire contents of the code box below. (To do this highlight the contents of the box, right click on it and select copy. Right-click in the open notepad and select Paste).

    Code:
    Start
    HKU\Shermqn Cooper\...\Run: [Conduit] rundll32.exe "C:\Users\Shermqn Cooper\AppData\Local\CrashDumps\Conduit\zdszhbmq.dll",RunNtServiceW [348672 2012-11-18] (The GTK developer 
    HKU\Shermqn Cooper\...\Policies\system: [DisableRegedit] 0
    HKU\Shermqn Cooper\...\Policies\system: [DisableTaskMgr] 1
    HKLM\...\Winlogon: [Shell] explorer.exe, C:\Users\Shermqn Cooper\AppData\Roaming\_bd_uylzs [x ] ()
    2 AVGIDSAgent; "C:\Program Files (x86)\AVG\AVG2012\avgidsagent.exe" [x]
    3 X6va005; \??\C:\Users\SHERMQ~1\AppData\Local\Temp\005A236.tmp [x]
    3 X6va006; \??\C:\Users\SHERMQ~1\AppData\Local\Temp\0064119.tmp [x]
    3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [x]
    3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [x]
    2013-04-05 06:58 - 2012-12-30 16:31 - 00113664 ____A (Usip) C:\Users\Shermqn Cooper\AppData\Roaming\_bd_uylzs.exe
    2013-04-05 06:58 - 2012-12-30 16:15 - 00113664 ____A (Usip) C:\Users\Shermqn Cooper\AppData\Local\_bd_uylzs.exe
    2013-04-05 06:53 - 2012-12-30 16:15 - 00113664 ____A (Usip) C:\ProgramData\_bd_uylzs.exe
    Startup: C:\Users\Shermqn Cooper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fliptoast.lnk
    ShortcutTarget: fliptoast.lnk -> C:\Program Files (x86)\fliptoast\fliptoast.exe ()
    IMEO\a.exe: [Debugger] svchost.exe
    IMEO\aAvgApi.exe: [Debugger] svchost.exe
    IMEO\AAWTray.exe: [Debugger] svchost.exe
    IMEO\About.exe: [Debugger] svchost.exe
    IMEO\ackwin32.exe: [Debugger] svchost.exe
    IMEO\Ad-Aware.exe: [Debugger] svchost.exe
    IMEO\adaware.exe: [Debugger] svchost.exe
    IMEO\advxdwin.exe: [Debugger] svchost.exe
    IMEO\AdwarePrj.exe: [Debugger] svchost.exe
    IMEO\agent.exe: [Debugger] svchost.exe
    IMEO\agentsvr.exe: [Debugger] svchost.exe
    IMEO\agentw.exe: [Debugger] svchost.exe
    IMEO\alertsvc.exe: [Debugger] svchost.exe
    IMEO\alevir.exe: [Debugger] svchost.exe
    IMEO\alogserv.exe: [Debugger] svchost.exe
    IMEO\AlphaAV: [Debugger] svchost.exe
    IMEO\AlphaAV.exe: [Debugger] svchost.exe
    IMEO\AluSchedulerSvc.exe: [Debugger] svchost.exe
    IMEO\amon9x.exe: [Debugger] svchost.exe
    IMEO\anti-trojan.exe: [Debugger] svchost.exe
    IMEO\Anti-Virus Professional.exe: [Debugger] svchost.exe
    IMEO\AntispywarXP2009.exe: [Debugger] svchost.exe
    IMEO\antivirus.exe: [Debugger] svchost.exe
    IMEO\AntivirusPlus: [Debugger] svchost.exe
    IMEO\AntivirusPlus.exe: [Debugger] svchost.exe
    IMEO\AntivirusPro_2010.exe: [Debugger] svchost.exe
    IMEO\AntivirusXP: [Debugger] svchost.exe
    IMEO\AntivirusXP.exe: [Debugger] svchost.exe
    IMEO\antivirusxppro2009.exe: [Debugger] svchost.exe
    IMEO\AntiVirus_Pro.exe: [Debugger] svchost.exe
    IMEO\ants.exe: [Debugger] svchost.exe
    IMEO\apimonitor.exe: [Debugger] svchost.exe
    IMEO\aplica32.exe: [Debugger] svchost.exe
    IMEO\apvxdwin.exe: [Debugger] svchost.exe
    IMEO\arr.exe: [Debugger] svchost.exe
    IMEO\ashAvast.exe: [Debugger] svchost.exe
    IMEO\ashBug.exe: [Debugger] svchost.exe
    IMEO\ashChest.exe: [Debugger] svchost.exe
    IMEO\ashCnsnt.exe: [Debugger] svchost.exe
    IMEO\ashDisp.exe: [Debugger] svchost.exe
    IMEO\ashLogV.exe: [Debugger] svchost.exe
    IMEO\ashMaiSv.exe: [Debugger] svchost.exe
    IMEO\ashPopWz.exe: [Debugger] svchost.exe
    IMEO\ashQuick.exe: [Debugger] svchost.exe
    IMEO\ashServ.exe: [Debugger] svchost.exe
    IMEO\ashSimp2.exe: [Debugger] svchost.exe
    IMEO\ashSimpl.exe: [Debugger] svchost.exe
    IMEO\ashSkPcc.exe: [Debugger] svchost.exe
    IMEO\ashSkPck.exe: [Debugger] svchost.exe
    IMEO\ashUpd.exe: [Debugger] svchost.exe
    IMEO\ashWebSv.exe: [Debugger] svchost.exe
    IMEO\aswChLic.exe: [Debugger] svchost.exe
    IMEO\aswRegSvr.exe: [Debugger] svchost.exe
    IMEO\aswRunDll.exe: [Debugger] svchost.exe
    IMEO\aswUpdSv.exe: [Debugger] svchost.exe
    IMEO\atcon.exe: [Debugger] svchost.exe
    IMEO\atguard.exe: [Debugger] svchost.exe
    IMEO\atro55en.exe: [Debugger] svchost.exe
    IMEO\atupdater.exe: [Debugger] svchost.exe
    IMEO\atwatch.exe: [Debugger] svchost.exe
    IMEO\au.exe: [Debugger] svchost.exe
    IMEO\aupdate.exe: [Debugger] svchost.exe
    IMEO\auto-protect.nav80try.exe: [Debugger] svchost.exe
    IMEO\autodown.exe: [Debugger] svchost.exe
    IMEO\autotrace.exe: [Debugger] svchost.exe
    IMEO\autoupdate.exe: [Debugger] svchost.exe
    IMEO\av360.exe: [Debugger] svchost.exe
    IMEO\avadmin.exe: [Debugger] svchost.exe
    IMEO\avastSvc.exe: [Debugger] svchost.exe
    IMEO\avastUI.exe: [Debugger] svchost.exe
    IMEO\AVCare.exe: [Debugger] svchost.exe
    IMEO\avcenter.exe: [Debugger] svchost.exe
    IMEO\avciman.exe: [Debugger] svchost.exe
    IMEO\avconfig.exe: [Debugger] svchost.exe
    IMEO\avconsol.exe: [Debugger] svchost.exe
    IMEO\ave32.exe: [Debugger] svchost.exe
    IMEO\AVENGINE.EXE: [Debugger] svchost.exe
    IMEO\avgcc32.exe: [Debugger] svchost.exe
    IMEO\avgchk.exe: [Debugger] svchost.exe
    IMEO\avgcmgr.exe: [Debugger] svchost.exe
    IMEO\avgcsrvx.exe: [Debugger] svchost.exe
    IMEO\avgctrl.exe: [Debugger] svchost.exe
    IMEO\avgdumpx.exe: [Debugger] svchost.exe
    IMEO\avgemc.exe: [Debugger] svchost.exe
    IMEO\avgiproxy.exe: [Debugger] svchost.exe
    IMEO\avgnsx.exe: [Debugger] svchost.exe
    IMEO\avgnt.exe: [Debugger] svchost.exe
    IMEO\avgrsx.exe: [Debugger] svchost.exe
    IMEO\avgscanx.exe: [Debugger] svchost.exe
    IMEO\avgserv.exe: [Debugger] svchost.exe
    IMEO\avgserv9.exe: [Debugger] svchost.exe
    IMEO\avgsrmax.exe: [Debugger] svchost.exe
    IMEO\avgtray.exe: [Debugger] svchost.exe
    IMEO\avguard.exe: [Debugger] svchost.exe
    IMEO\avgui.exe: [Debugger] svchost.exe
    IMEO\avgupd.exe: [Debugger] svchost.exe
    IMEO\avgw.exe: [Debugger] svchost.exe
    IMEO\avgwdsvc.exe: [Debugger] svchost.exe
    IMEO\avkpop.exe: [Debugger] svchost.exe
    IMEO\avkserv.exe: [Debugger] svchost.exe
    IMEO\avkservice.exe: [Debugger] svchost.exe
    IMEO\avkwctl9.exe: [Debugger] svchost.exe
    IMEO\avltmain.exe: [Debugger] svchost.exe
    IMEO\avmailc.exe: [Debugger] svchost.exe
    IMEO\avmcdlg.exe: [Debugger] svchost.exe
    IMEO\avnotify.exe: [Debugger] svchost.exe
    IMEO\avnt.exe: [Debugger] svchost.exe
    IMEO\avp32.exe: [Debugger] svchost.exe
    IMEO\avpcc.exe: [Debugger] svchost.exe
    IMEO\avpdos32.exe: [Debugger] svchost.exe
    IMEO\avpm.exe: [Debugger] svchost.exe
    IMEO\avptc32.exe: [Debugger] svchost.exe
    IMEO\avpupd.exe: [Debugger] svchost.exe
    IMEO\avsched32.exe: [Debugger] svchost.exe
    IMEO\avshadow.exe: [Debugger] svchost.exe
    IMEO\avsynmgr.exe: [Debugger] svchost.exe
    IMEO\avupgsvc.exe: [Debugger] svchost.exe
    IMEO\AVWEBGRD.EXE: [Debugger] svchost.exe
    IMEO\avwin.exe: [Debugger] svchost.exe
    IMEO\avwin95.exe: [Debugger] svchost.exe
    IMEO\avwinnt.exe: [Debugger] svchost.exe
    IMEO\avwsc.exe: [Debugger] svchost.exe
    IMEO\avwupd.exe: [Debugger] svchost.exe
    IMEO\avwupd32.exe: [Debugger] svchost.exe
    IMEO\avwupsrv.exe: [Debugger] svchost.exe
    IMEO\avxmonitor9x.exe: [Debugger] svchost.exe
    IMEO\avxmonitornt.exe: [Debugger] svchost.exe
    IMEO\avxquar.exe: [Debugger] svchost.exe
    IMEO\b.exe: [Debugger] svchost.exe
    IMEO\backweb.exe: [Debugger] svchost.exe
    IMEO\bargains.exe: [Debugger] svchost.exe
    IMEO\bdfvcl.exe: [Debugger] svchost.exe
    IMEO\bdfvwiz.exe: [Debugger] svchost.exe
    IMEO\BDInProcPatch.exe: [Debugger] svchost.exe
    IMEO\bdmcon.exe: [Debugger] svchost.exe
    IMEO\BDMsnScan.exe: [Debugger] svchost.exe
    IMEO\BDSurvey.exe: [Debugger] svchost.exe
    IMEO\bd_professional.exe: [Debugger] svchost.exe
    IMEO\beagle.exe: [Debugger] svchost.exe
    IMEO\belt.exe: [Debugger] svchost.exe
    IMEO\bidef.exe: [Debugger] svchost.exe
    IMEO\bidserver.exe: [Debugger] svchost.exe
    IMEO\bipcp.exe: [Debugger] svchost.exe
    IMEO\bipcpevalsetup.exe: [Debugger] svchost.exe
    IMEO\bisp.exe: [Debugger] svchost.exe
    IMEO\blackd.exe: [Debugger] svchost.exe
    IMEO\blackice.exe: [Debugger] svchost.exe
    IMEO\blink.exe: [Debugger] svchost.exe
    IMEO\blss.exe: [Debugger] svchost.exe
    IMEO\bootconf.exe: [Debugger] svchost.exe
    IMEO\bootwarn.exe: [Debugger] svchost.exe
    IMEO\borg2.exe: [Debugger] svchost.exe
    IMEO\bpc.exe: [Debugger] svchost.exe
    IMEO\brasil.exe: [Debugger] svchost.exe
    IMEO\brastk.exe: [Debugger] svchost.exe
    IMEO\brw.exe: [Debugger] svchost.exe
    IMEO\bs120.exe: [Debugger] svchost.exe
    IMEO\bspatch.exe: [Debugger] svchost.exe
    IMEO\bundle.exe: [Debugger] svchost.exe
    IMEO\bvt.exe: [Debugger] svchost.exe
    IMEO\c.exe: [Debugger] svchost.exe
    IMEO\cavscan.exe: [Debugger] svchost.exe
    IMEO\ccapp.exe: [Debugger] svchost.exe
    IMEO\ccevtmgr.exe: [Debugger] svchost.exe
    IMEO\ccpxysvc.exe: [Debugger] svchost.exe
    IMEO\ccSvcHst.exe: [Debugger] svchost.exe
    IMEO\cdp.exe: [Debugger] svchost.exe
    IMEO\cfd.exe: [Debugger] svchost.exe
    IMEO\cfgwiz.exe: [Debugger] svchost.exe
    IMEO\cfiadmin.exe: [Debugger] svchost.exe
    IMEO\cfiaudit.exe: [Debugger] svchost.exe
    IMEO\cfinet.exe: [Debugger] svchost.exe
    IMEO\cfinet32.exe: [Debugger] svchost.exe
    IMEO\cfp.exe: [Debugger] svchost.exe
    IMEO\cfpconfg.exe: [Debugger] svchost.exe
    IMEO\cfplogvw.exe: [Debugger] svchost.exe
    IMEO\cfpupdat.exe: [Debugger] svchost.exe
    IMEO\claw95.exe: [Debugger] svchost.exe
    IMEO\claw95cf.exe: [Debugger] svchost.exe
    IMEO\clean.exe: [Debugger] svchost.exe
    IMEO\cleaner.exe: [Debugger] svchost.exe
    IMEO\cleaner3.exe: [Debugger] svchost.exe
    IMEO\cleanIELow.exe: [Debugger] svchost.exe
    IMEO\cleanpc.exe: [Debugger] svchost.exe
    IMEO\click.exe: [Debugger] svchost.exe
    IMEO\cmd32.exe: [Debugger] svchost.exe
    IMEO\cmdagent.exe: [Debugger] svchost.exe
    IMEO\cmesys.exe: [Debugger] svchost.exe
    IMEO\cmgrdian.exe: [Debugger] svchost.exe
    IMEO\cmon016.exe: [Debugger] svchost.exe
    IMEO\connectionmonitor.exe: [Debugger] svchost.exe
    IMEO\control: [Debugger] svchost.exe
    IMEO\cpd.exe: [Debugger] svchost.exe
    IMEO\cpf9x206.exe: [Debugger] svchost.exe
    IMEO\cpfnt206.exe: [Debugger] svchost.exe
    IMEO\crashrep.exe: [Debugger] svchost.exe
    IMEO\csc.exe: [Debugger] svchost.exe
    IMEO\cssconfg.exe: [Debugger] svchost.exe
    IMEO\cssupdat.exe: [Debugger] svchost.exe
    IMEO\cssurf.exe: [Debugger] svchost.exe
    IMEO\ctrl.exe: [Debugger] svchost.exe
    IMEO\cv.exe: [Debugger] svchost.exe
    IMEO\cwnb181.exe: [Debugger] svchost.exe
    IMEO\cwntdwmo.exe: [Debugger] svchost.exe
    IMEO\d.exe: [Debugger] svchost.exe
    IMEO\datemanager.exe: [Debugger] svchost.exe
    IMEO\dcomx.exe: [Debugger] svchost.exe
    IMEO\defalert.exe: [Debugger] svchost.exe
    IMEO\defscangui.exe: [Debugger] svchost.exe
    IMEO\defwatch.exe: [Debugger] svchost.exe
    IMEO\deloeminfs.exe: [Debugger] svchost.exe
    IMEO\deputy.exe: [Debugger] svchost.exe
    IMEO\divx.exe: [Debugger] svchost.exe
    IMEO\dllcache.exe: [Debugger] svchost.exe
    IMEO\dllreg.exe: [Debugger] svchost.exe
    IMEO\doors.exe: [Debugger] svchost.exe
    IMEO\dop.exe: [Debugger] svchost.exe
    IMEO\dpf.exe: [Debugger] svchost.exe
    IMEO\dpfsetup.exe: [Debugger] svchost.exe
    IMEO\dpps2.exe: [Debugger] svchost.exe
    IMEO\driverctrl.exe: [Debugger] svchost.exe
    IMEO\drwatson.exe: [Debugger] svchost.exe
    IMEO\drweb32.exe: [Debugger] svchost.exe
    IMEO\drwebupw.exe: [Debugger] svchost.exe
    IMEO\dssagent.exe: [Debugger] svchost.exe
    IMEO\dvp95.exe: [Debugger] svchost.exe
    IMEO\dvp95_0.exe: [Debugger] svchost.exe
    IMEO\ecengine.exe: [Debugger] svchost.exe
    IMEO\efpeadm.exe: [Debugger] svchost.exe
    IMEO\emsw.exe: [Debugger] svchost.exe
    IMEO\ent.exe: [Debugger] svchost.exe
    IMEO\esafe.exe: [Debugger] svchost.exe
    IMEO\escanhnt.exe: [Debugger] svchost.exe
    IMEO\escanv95.exe: [Debugger] svchost.exe
    IMEO\espwatch.exe: [Debugger] svchost.exe
    IMEO\ethereal.exe: [Debugger] svchost.exe
    IMEO\etrustcipe.exe: [Debugger] svchost.exe
    IMEO\evpn.exe: [Debugger] svchost.exe
    IMEO\exantivirus-cnet.exe: [Debugger] svchost.exe
    IMEO\exe.avxw.exe: [Debugger] svchost.exe
    IMEO\expert.exe: [Debugger] svchost.exe
    IMEO\explore.exe: [Debugger] svchost.exe
    IMEO\f-agnt95.exe: [Debugger] svchost.exe
    IMEO\f-prot.exe: [Debugger] svchost.exe
    IMEO\f-prot95.exe: [Debugger] svchost.exe
    IMEO\f-stopw.exe: [Debugger] svchost.exe
    IMEO\fact.exe: [Debugger] svchost.exe
    IMEO\fameh32.exe: [Debugger] svchost.exe
    IMEO\fast.exe: [Debugger] svchost.exe
    IMEO\fch32.exe: [Debugger] svchost.exe
    IMEO\fih32.exe: [Debugger] svchost.exe
    IMEO\findviru.exe: [Debugger] svchost.exe
    IMEO\firewall.exe: [Debugger] svchost.exe
    IMEO\fixcfg.exe: [Debugger] svchost.exe
    IMEO\fixfp.exe: [Debugger] svchost.exe
    IMEO\fnrb32.exe: [Debugger] svchost.exe
    IMEO\fp-win.exe: [Debugger] svchost.exe
    IMEO\fp-win_trial.exe: [Debugger] svchost.exe
    IMEO\fprot.exe: [Debugger] svchost.exe
    IMEO\frmwrk32.exe: [Debugger] svchost.exe
    IMEO\frw.exe: [Debugger] svchost.exe
    IMEO\fsaa.exe: [Debugger] svchost.exe
    IMEO\fsav.exe: [Debugger] svchost.exe
    IMEO\fsav32.exe: [Debugger] svchost.exe
    IMEO\fsav530stbyb.exe: [Debugger] svchost.exe
    IMEO\fsav530wtbyb.exe: [Debugger] svchost.exe
    IMEO\fsav95.exe: [Debugger] svchost.exe
    IMEO\fsgk32.exe: [Debugger] svchost.exe
    IMEO\fsm32.exe: [Debugger] svchost.exe
    IMEO\fsma32.exe: [Debugger] svchost.exe
    IMEO\fsmb32.exe: [Debugger] svchost.exe
    IMEO\gator.exe: [Debugger] svchost.exe
    IMEO\gav.exe: [Debugger] svchost.exe
    IMEO\gbmenu.exe: [Debugger] svchost.exe
    IMEO\gbn976rl.exe: [Debugger] svchost.exe
    IMEO\gbpoll.exe: [Debugger] svchost.exe
    IMEO\generics.exe: [Debugger] svchost.exe
    IMEO\gmt.exe: [Debugger] svchost.exe
    IMEO\guard.exe: [Debugger] svchost.exe
    IMEO\guarddog.exe: [Debugger] svchost.exe
    IMEO\guardgui.exe: [Debugger] svchost.exe
    IMEO\hacktracersetup.exe: [Debugger] svchost.exe
    IMEO\hbinst.exe: [Debugger] svchost.exe
    IMEO\hbsrv.exe: [Debugger] svchost.exe
    IMEO\History.exe: [Debugger] svchost.exe
    IMEO\homeav2010.exe: [Debugger] svchost.exe
    IMEO\hotactio.exe: [Debugger] svchost.exe
    IMEO\hotpatch.exe: [Debugger] svchost.exe
    IMEO\htlog.exe: [Debugger] svchost.exe
    IMEO\htpatch.exe: [Debugger] svchost.exe
    IMEO\hwpe.exe: [Debugger] svchost.exe
    IMEO\hxdl.exe: [Debugger] svchost.exe
    IMEO\hxiul.exe: [Debugger] svchost.exe
    IMEO\iamapp.exe: [Debugger] svchost.exe
    IMEO\iamserv.exe: [Debugger] svchost.exe
    IMEO\iamstats.exe: [Debugger] svchost.exe
    IMEO\ibmasn.exe: [Debugger] svchost.exe
    IMEO\ibmavsp.exe: [Debugger] svchost.exe
    IMEO\icload95.exe: [Debugger] svchost.exe
    IMEO\icloadnt.exe: [Debugger] svchost.exe
    IMEO\icmon.exe: [Debugger] svchost.exe
    IMEO\icsupp95.exe: [Debugger] svchost.exe
    IMEO\icsuppnt.exe: [Debugger] svchost.exe
    IMEO\Identity.exe: [Debugger] svchost.exe
    IMEO\idle.exe: [Debugger] svchost.exe
    IMEO\iedll.exe: [Debugger] svchost.exe
    IMEO\iedriver.exe: [Debugger] svchost.exe
    IMEO\IEShow.exe: [Debugger] svchost.exe
    IMEO\iface.exe: [Debugger] svchost.exe
    IMEO\ifw2000.exe: [Debugger] svchost.exe
    IMEO\inetlnfo.exe: [Debugger] svchost.exe
    IMEO\infus.exe: [Debugger] svchost.exe
    IMEO\infwin.exe: [Debugger] svchost.exe
    IMEO\init.exe: [Debugger] svchost.exe
    IMEO\init32.exe : [Debugger] svchost.exe
    IMEO\install[1].exe: [Debugger] svchost.exe
    IMEO\install[2].exe: [Debugger] svchost.exe
    IMEO\install[3].exe: [Debugger] svchost.exe
    IMEO\install[4].exe: [Debugger] svchost.exe
    IMEO\install[5].exe: [Debugger] svchost.exe
    IMEO\intdel.exe: [Debugger] svchost.exe
    IMEO\intren.exe: [Debugger] svchost.exe
    IMEO\iomon98.exe: [Debugger] svchost.exe
    IMEO\istsvc.exe: [Debugger] svchost.exe
    IMEO\jammer.exe: [Debugger] svchost.exe
    IMEO\jdbgmrg.exe: [Debugger] svchost.exe
    IMEO\jedi.exe: [Debugger] svchost.exe
    IMEO\JsRcGen.exe: [Debugger] svchost.exe
    IMEO\kavlite40eng.exe: [Debugger] svchost.exe
    IMEO\kavpers40eng.exe: [Debugger] svchost.exe
    IMEO\kavpf.exe: [Debugger] svchost.exe
    IMEO\kazza.exe: [Debugger] svchost.exe
    IMEO\keenvalue.exe: [Debugger] svchost.exe
    IMEO\kerio-pf-213-en-win.exe: [Debugger] svchost.exe
    IMEO\kerio-wrl-421-en-win.exe: [Debugger] svchost.exe
    IMEO\kerio-wrp-421-en-win.exe: [Debugger] svchost.exe
    IMEO\killprocesssetup161.exe: [Debugger] svchost.exe
    IMEO\ldnetmon.exe: [Debugger] svchost.exe
    IMEO\ldpro.exe: [Debugger] svchost.exe
    IMEO\ldpromenu.exe: [Debugger] svchost.exe
    IMEO\ldscan.exe: [Debugger] svchost.exe
    IMEO\licmgr.exe: [Debugger] svchost.exe
    IMEO\lnetinfo.exe: [Debugger] svchost.exe
    IMEO\loader.exe: [Debugger] svchost.exe
    IMEO\localnet.exe: [Debugger] svchost.exe
    IMEO\lockdown.exe: [Debugger] svchost.exe
    IMEO\lockdown2000.exe: [Debugger] svchost.exe
    IMEO\lookout.exe: [Debugger] svchost.exe
    IMEO\lordpe.exe: [Debugger] svchost.exe
    IMEO\lsetup.exe: [Debugger] svchost.exe
    IMEO\luall.exe: [Debugger] svchost.exe
    IMEO\luau.exe: [Debugger] svchost.exe
    IMEO\lucomserver.exe: [Debugger] svchost.exe
    IMEO\luinit.exe: [Debugger] svchost.exe
    IMEO\luspt.exe: [Debugger] svchost.exe
    IMEO\MalwareRemoval.exe: [Debugger] svchost.exe
    IMEO\mapisvc32.exe: [Debugger] svchost.exe
    IMEO\mbam.exe: [Debugger] svchost.exe
    IMEO\mbamgui.exe: [Debugger] svchost.exe
    IMEO\mbamservice.exe: [Debugger] svchost.exe
    IMEO\mcagent.exe: [Debugger] svchost.exe
    IMEO\mcmnhdlr.exe: [Debugger] svchost.exe
    IMEO\mcmpeng.exe: [Debugger] svchost.exe
    IMEO\mcmscsvc.exe: [Debugger] svchost.exe
    IMEO\mcnasvc.exe: [Debugger] svchost.exe
    IMEO\mcproxy.exe: [Debugger] svchost.exe
    IMEO\McSACore.exe: [Debugger] svchost.exe
    IMEO\mcshell.exe: [Debugger] svchost.exe
    IMEO\mcshield.exe: [Debugger] svchost.exe
    IMEO\mcsysmon.exe: [Debugger] svchost.exe
    IMEO\mctool.exe: [Debugger] svchost.exe
    IMEO\mcupdate.exe: [Debugger] svchost.exe
    IMEO\mcvsrte.exe: [Debugger] svchost.exe
    IMEO\mcvsshld.exe: [Debugger] svchost.exe
    IMEO\md.exe: [Debugger] svchost.exe
    IMEO\mfin32.exe: [Debugger] svchost.exe
    IMEO\mfw2en.exe: [Debugger] svchost.exe
    IMEO\mfweng3.02d30.exe: [Debugger] svchost.exe
    IMEO\mgavrtcl.exe: [Debugger] svchost.exe
    IMEO\mgavrte.exe: [Debugger] svchost.exe
    IMEO\mghtml.exe: [Debugger] svchost.exe
    IMEO\mgui.exe: [Debugger] svchost.exe
    IMEO\minilog.exe: [Debugger] svchost.exe
    IMEO\mmod.exe: [Debugger] svchost.exe
    IMEO\monitor.exe: [Debugger] svchost.exe
    IMEO\moolive.exe: [Debugger] svchost.exe
    IMEO\mostat.exe: [Debugger] svchost.exe
    IMEO\mpfagent.exe: [Debugger] svchost.exe
    IMEO\mpfservice.exe: [Debugger] svchost.exe
    IMEO\MPFSrv.exe: [Debugger] svchost.exe
    IMEO\mpftray.exe: [Debugger] svchost.exe
    IMEO\mrflux.exe: [Debugger] svchost.exe
    IMEO\mrt.exe: [Debugger] svchost.exe
    IMEO\msa.exe: [Debugger] svchost.exe
    IMEO\msapp.exe: [Debugger] svchost.exe
    IMEO\MSASCui.exe: [Debugger] svchost.exe
    IMEO\msbb.exe: [Debugger] svchost.exe
    IMEO\msblast.exe: [Debugger] svchost.exe
    IMEO\mscache.exe: [Debugger] svchost.exe
    IMEO\msccn32.exe: [Debugger] svchost.exe
    IMEO\mscman.exe: [Debugger] svchost.exe
    IMEO\msconfig: [Debugger] svchost.exe
    IMEO\msdm.exe: [Debugger] svchost.exe
    IMEO\msdos.exe: [Debugger] svchost.exe
    IMEO\msiexec16.exe: [Debugger] svchost.exe
    IMEO\mslaugh.exe: [Debugger] svchost.exe
    IMEO\msmgt.exe: [Debugger] svchost.exe
    IMEO\msmsgri32.exe: [Debugger] svchost.exe
    IMEO\msseces.exe: [Debugger] svchost.exe
    IMEO\mssmmc32.exe: [Debugger] svchost.exe
    IMEO\mssys.exe: [Debugger] svchost.exe
    IMEO\msvxd.exe: [Debugger] svchost.exe
    IMEO\mu0311ad.exe: [Debugger] svchost.exe
    IMEO\mwatch.exe: [Debugger] svchost.exe
    IMEO\n32scanw.exe: [Debugger] svchost.exe
    IMEO\nav.exe: [Debugger] svchost.exe
    IMEO\navap.navapsvc.exe: [Debugger] svchost.exe
    IMEO\navapsvc.exe: [Debugger] svchost.exe
    IMEO\navapw32.exe: [Debugger] svchost.exe
    IMEO\navdx.exe: [Debugger] svchost.exe
    IMEO\navlu32.exe: [Debugger] svchost.exe
    IMEO\navnt.exe: [Debugger] svchost.exe
    IMEO\navstub.exe: [Debugger] svchost.exe
    IMEO\navw32.exe: [Debugger] svchost.exe
    IMEO\navwnt.exe: [Debugger] svchost.exe
    IMEO\nc2000.exe: [Debugger] svchost.exe
    IMEO\ncinst4.exe: [Debugger] svchost.exe
    IMEO\ndd32.exe: [Debugger] svchost.exe
    IMEO\neomonitor.exe: [Debugger] svchost.exe
    IMEO\neowatchlog.exe: [Debugger] svchost.exe
    IMEO\netarmor.exe: [Debugger] svchost.exe
    IMEO\netd32.exe: [Debugger] svchost.exe
    IMEO\netinfo.exe: [Debugger] svchost.exe
    IMEO\netmon.exe: [Debugger] svchost.exe
    IMEO\netscanpro.exe: [Debugger] svchost.exe
    IMEO\netspyhunter-1.2.exe: [Debugger] svchost.exe
    IMEO\netutils.exe: [Debugger] svchost.exe
    IMEO\nisserv.exe: [Debugger] svchost.exe
    IMEO\nisum.exe: [Debugger] svchost.exe
    IMEO\nmain.exe: [Debugger] svchost.exe
    IMEO\nod32.exe: [Debugger] svchost.exe
    IMEO\normist.exe: [Debugger] svchost.exe
    IMEO\norton_internet_secu_3.0_407.exe: [Debugger] svchost.exe
    IMEO\notstart.exe: [Debugger] svchost.exe
    IMEO\npf40_tw_98_nt_me_2k.exe: [Debugger] svchost.exe
    IMEO\npfmessenger.exe: [Debugger] svchost.exe
    IMEO\nprotect.exe: [Debugger] svchost.exe
    IMEO\npscheck.exe: [Debugger] svchost.exe
    IMEO\npssvc.exe: [Debugger] svchost.exe
    IMEO\nsched32.exe: [Debugger] svchost.exe
    IMEO\nssys32.exe: [Debugger] svchost.exe
    IMEO\nstask32.exe: [Debugger] svchost.exe
    IMEO\nsupdate.exe: [Debugger] svchost.exe
    IMEO\nt.exe: [Debugger] svchost.exe
    IMEO\ntrtscan.exe: [Debugger] svchost.exe
    IMEO\ntvdm.exe: [Debugger] svchost.exe
    IMEO\ntxconfig.exe: [Debugger] svchost.exe
    IMEO\nui.exe: [Debugger] svchost.exe
    IMEO\nupgrade.exe: [Debugger] svchost.exe
    IMEO\nvarch16.exe: [Debugger] svchost.exe
    IMEO\nvc95.exe: [Debugger] svchost.exe
    IMEO\nvsvc32.exe: [Debugger] svchost.exe
    IMEO\nwinst4.exe: [Debugger] svchost.exe
    IMEO\nwservice.exe: [Debugger] svchost.exe
    IMEO\nwtool16.exe: [Debugger] svchost.exe
    IMEO\OAcat.exe: [Debugger] svchost.exe
    IMEO\OAhlp.exe: [Debugger] svchost.exe
    IMEO\OAReg.exe: [Debugger] svchost.exe
    IMEO\oasrv.exe: [Debugger] svchost.exe
    IMEO\oaui.exe: [Debugger] svchost.exe
    IMEO\oaview.exe: [Debugger] svchost.exe
    IMEO\ODSW.exe: [Debugger] svchost.exe
    IMEO\ollydbg.exe: [Debugger] svchost.exe
    IMEO\onsrvr.exe: [Debugger] svchost.exe
    IMEO\optimize.exe: [Debugger] svchost.exe
    IMEO\ostronet.exe: [Debugger] svchost.exe
    IMEO\otfix.exe: [Debugger] svchost.exe
    IMEO\outpost.exe: [Debugger] svchost.exe
    IMEO\outpostinstall.exe: [Debugger] svchost.exe
    IMEO\outpostproinstall.exe: [Debugger] svchost.exe
    IMEO\ozn695m5.exe: [Debugger] svchost.exe
    IMEO\padmin.exe: [Debugger] svchost.exe
    IMEO\panixk.exe: [Debugger] svchost.exe
    IMEO\patch.exe: [Debugger] svchost.exe
    IMEO\pav.exe: [Debugger] svchost.exe
    IMEO\pavcl.exe: [Debugger] svchost.exe
    IMEO\PavFnSvr.exe: [Debugger] svchost.exe
    IMEO\pavproxy.exe: [Debugger] svchost.exe
    IMEO\pavprsrv.exe: [Debugger] svchost.exe
    IMEO\pavsched.exe: [Debugger] svchost.exe
    IMEO\pavsrv51.exe: [Debugger] svchost.exe
    IMEO\pavw.exe: [Debugger] svchost.exe
    IMEO\pc.exe: [Debugger] svchost.exe
    IMEO\pccwin98.exe: [Debugger] svchost.exe
    IMEO\pcfwallicon.exe: [Debugger] svchost.exe
    IMEO\pcip10117_0.exe: [Debugger] svchost.exe
    IMEO\pcscan.exe: [Debugger] svchost.exe
    IMEO\pctsAuxs.exe: [Debugger] svchost.exe
    IMEO\pctsGui.exe: [Debugger] svchost.exe
    IMEO\pctsSvc.exe: [Debugger] svchost.exe
    IMEO\pctsTray.exe: [Debugger] svchost.exe
    IMEO\PC_Antispyware2010.exe: [Debugger] svchost.exe
    IMEO\pdfndr.exe: [Debugger] svchost.exe
    IMEO\pdsetup.exe: [Debugger] svchost.exe
    IMEO\PerAvir.exe: [Debugger] svchost.exe
    IMEO\periscope.exe: [Debugger] svchost.exe
    IMEO\persfw.exe: [Debugger] svchost.exe
    IMEO\personalguard: [Debugger] svchost.exe
    IMEO\personalguard.exe: [Debugger] svchost.exe
    IMEO\perswf.exe: [Debugger] svchost.exe
    IMEO\pf2.exe: [Debugger] svchost.exe
    IMEO\pfwadmin.exe: [Debugger] svchost.exe
    IMEO\pgmonitr.exe: [Debugger] svchost.exe
    IMEO\pingscan.exe: [Debugger] svchost.exe
    IMEO\platin.exe: [Debugger] svchost.exe
    IMEO\pop3trap.exe: [Debugger] svchost.exe
    IMEO\poproxy.exe: [Debugger] svchost.exe
    IMEO\popscan.exe: [Debugger] svchost.exe
    IMEO\portdetective.exe: [Debugger] svchost.exe
    IMEO\portmonitor.exe: [Debugger] svchost.exe
    IMEO\powerscan.exe: [Debugger] svchost.exe
    IMEO\ppinupdt.exe: [Debugger] svchost.exe
    IMEO\pptbc.exe: [Debugger] svchost.exe
    IMEO\ppvstop.exe: [Debugger] svchost.exe
    IMEO\prizesurfer.exe: [Debugger] svchost.exe
    IMEO\prmt.exe: [Debugger] svchost.exe
    IMEO\prmvr.exe: [Debugger] svchost.exe
    IMEO\procdump.exe: [Debugger] svchost.exe
    IMEO\processmonitor.exe: [Debugger] svchost.exe
    IMEO\procexplorerv1.0.exe: [Debugger] svchost.exe
    IMEO\programauditor.exe: [Debugger] svchost.exe
    IMEO\proport.exe: [Debugger] svchost.exe
    IMEO\protector.exe: [Debugger] svchost.exe
    IMEO\protectx.exe: [Debugger] svchost.exe
    IMEO\PSANCU.exe: [Debugger] svchost.exe
    IMEO\PSANHost.exe: [Debugger] svchost.exe
    IMEO\PSANToManager.exe: [Debugger] svchost.exe
    IMEO\PsCtrls.exe: [Debugger] svchost.exe
    IMEO\PsImSvc.exe: [Debugger] svchost.exe
    IMEO\PskSvc.exe: [Debugger] svchost.exe
    IMEO\pspf.exe: [Debugger] svchost.exe
    IMEO\PSUNMain.exe: [Debugger] svchost.exe
    IMEO\purge.exe: [Debugger] svchost.exe
    IMEO\qconsole.exe: [Debugger] svchost.exe
    IMEO\qh.exe: [Debugger] svchost.exe
    IMEO\qserver.exe: [Debugger] svchost.exe
    IMEO\Quick Heal.exe: [Debugger] svchost.exe
    IMEO\QuickHealCleaner.exe: [Debugger] svchost.exe
    IMEO\rapapp.exe: [Debugger] svchost.exe
    IMEO\rav7.exe: [Debugger] svchost.exe
    IMEO\rav7win.exe: [Debugger] svchost.exe
    IMEO\rav8win32eng.exe: [Debugger] svchost.exe
    IMEO\ray.exe: [Debugger] svchost.exe
    IMEO\rb32.exe: [Debugger] svchost.exe
    IMEO\rcsync.exe: [Debugger] svchost.exe
    IMEO\realmon.exe: [Debugger] svchost.exe
    IMEO\reged.exe: [Debugger] svchost.exe
    IMEO\regedt32.exe: [Debugger] svchost.exe
    IMEO\rescue.exe: [Debugger] svchost.exe
    IMEO\rescue32.exe: [Debugger] svchost.exe
    IMEO\rrguard.exe: [Debugger] svchost.exe
    IMEO\rscdwld.exe: [Debugger] svchost.exe
    IMEO\rshell.exe: [Debugger] svchost.exe
    IMEO\rtvscan.exe: [Debugger] svchost.exe
    IMEO\rtvscn95.exe: [Debugger] svchost.exe
    IMEO\rulaunch.exe: [Debugger] svchost.exe
    IMEO\rwg: [Debugger] svchost.exe
    IMEO\rwg.exe: [Debugger] svchost.exe
    IMEO\SafetyKeeper.exe: [Debugger] svchost.exe
    IMEO\safeweb.exe: [Debugger] svchost.exe
    IMEO\sahagent.exe: [Debugger] svchost.exe
    IMEO\Save.exe: [Debugger] svchost.exe
    IMEO\SaveArmor.exe: [Debugger] svchost.exe
    IMEO\SaveDefense.exe: [Debugger] svchost.exe
    IMEO\SaveKeep.exe: [Debugger] svchost.exe
    IMEO\savenow.exe: [Debugger] svchost.exe
    IMEO\sbserv.exe: [Debugger] svchost.exe
    IMEO\sc.exe: [Debugger] svchost.exe
    IMEO\scam32.exe: [Debugger] svchost.exe
    IMEO\scan32.exe: [Debugger] svchost.exe
    IMEO\scan95.exe: [Debugger] svchost.exe
    IMEO\scanpm.exe: [Debugger] svchost.exe
    IMEO\scrscan.exe: [Debugger] svchost.exe
    IMEO\Secure Veteran.exe: [Debugger] svchost.exe
    IMEO\secureveteran.exe: [Debugger] svchost.exe
    IMEO\Security Center.exe: [Debugger] svchost.exe
    IMEO\SecurityFighter.exe: [Debugger] svchost.exe
    IMEO\securitysoldier.exe: [Debugger] svchost.exe
    IMEO\serv95.exe: [Debugger] svchost.exe
    IMEO\setloadorder.exe: [Debugger] svchost.exe
    IMEO\setupvameeval.exe: [Debugger] svchost.exe
    IMEO\setup_flowprotector_us.exe: [Debugger] svchost.exe
    IMEO\sgssfw32.exe: [Debugger] svchost.exe
    IMEO\sh.exe: [Debugger] svchost.exe
    IMEO\shellspyinstall.exe: [Debugger] svchost.exe
    IMEO\shield.exe: [Debugger] svchost.exe
    IMEO\shn.exe: [Debugger] svchost.exe
    IMEO\showbehind.exe: [Debugger] svchost.exe
    IMEO\signcheck.exe: [Debugger] svchost.exe
    IMEO\smart.exe: [Debugger] svchost.exe
    IMEO\smartprotector.exe: [Debugger] svchost.exe
    IMEO\smc.exe: [Debugger] svchost.exe
    IMEO\smrtdefp.exe: [Debugger] svchost.exe
    IMEO\sms.exe: [Debugger] svchost.exe
    IMEO\smss32.exe: [Debugger] svchost.exe
    IMEO\snetcfg.exe: [Debugger] svchost.exe
    IMEO\soap.exe: [Debugger] svchost.exe
    IMEO\sofi.exe: [Debugger] svchost.exe
    IMEO\SoftSafeness.exe: [Debugger] svchost.exe
    IMEO\sperm.exe: [Debugger] svchost.exe
    IMEO\spf.exe: [Debugger] svchost.exe
    IMEO\sphinx.exe: [Debugger] svchost.exe
    IMEO\spoler.exe: [Debugger] svchost.exe
    IMEO\spoolcv.exe: [Debugger] svchost.exe
    IMEO\spoolsv32.exe: [Debugger] svchost.exe
    IMEO\spywarexpguard.exe: [Debugger] svchost.exe
    IMEO\spyxx.exe: [Debugger] svchost.exe
    IMEO\srexe.exe: [Debugger] svchost.exe
    IMEO\srng.exe: [Debugger] svchost.exe
    IMEO\ss3edit.exe: [Debugger] svchost.exe
    IMEO\ssgrate.exe: [Debugger] svchost.exe
    IMEO\ssg_4104.exe: [Debugger] svchost.exe
    IMEO\st2.exe: [Debugger] svchost.exe
    IMEO\start.exe: [Debugger] svchost.exe
    IMEO\stcloader.exe: [Debugger] svchost.exe
    IMEO\supftrl.exe: [Debugger] svchost.exe
    IMEO\support.exe: [Debugger] svchost.exe
    IMEO\supporter5.exe: [Debugger] svchost.exe
    IMEO\svc.exe: [Debugger] svchost.exe
    IMEO\svchostc.exe: [Debugger] svchost.exe
    IMEO\svchosts.exe: [Debugger] svchost.exe
    IMEO\svshost.exe: [Debugger] svchost.exe
    IMEO\sweep95.exe: [Debugger] svchost.exe
    IMEO\sweepnet.sweepsrv.sys.swnetsup.exe: [Debugger] svchost.exe
    IMEO\symlcsvc.exe: [Debugger] svchost.exe
    IMEO\symproxysvc.exe: [Debugger] svchost.exe
    IMEO\symtray.exe: [Debugger] svchost.exe
    IMEO\system.exe: [Debugger] svchost.exe
    IMEO\system32.exe: [Debugger] svchost.exe
    IMEO\sysupd.exe: [Debugger] svchost.exe
    IMEO\tapinstall.exe: [Debugger] svchost.exe
    IMEO\taumon.exe: [Debugger] svchost.exe
    IMEO\tbscan.exe: [Debugger] svchost.exe
    IMEO\tc.exe: [Debugger] svchost.exe
    IMEO\tca.exe: [Debugger] svchost.exe
    IMEO\tcm.exe: [Debugger] svchost.exe
    IMEO\tds-3.exe: [Debugger] svchost.exe
    IMEO\tds2-98.exe: [Debugger] svchost.exe
    IMEO\tds2-nt.exe: [Debugger] svchost.exe
    IMEO\teekids.exe: [Debugger] svchost.exe
    IMEO\tfak.exe: [Debugger] svchost.exe
    IMEO\tfak5.exe: [Debugger] svchost.exe
    IMEO\tgbob.exe: [Debugger] svchost.exe
    IMEO\titanin.exe: [Debugger] svchost.exe
    IMEO\titaninxp.exe: [Debugger] svchost.exe
    IMEO\TPSrv.exe: [Debugger] svchost.exe
    IMEO\trickler.exe: [Debugger] svchost.exe
    IMEO\trjscan.exe: [Debugger] svchost.exe
    IMEO\trjsetup.exe: [Debugger] svchost.exe
    IMEO\trojantrap3.exe: [Debugger] svchost.exe
    IMEO\TrustWarrior.exe: [Debugger] svchost.exe
    IMEO\tsadbot.exe: [Debugger] svchost.exe
    IMEO\tsc.exe: [Debugger] svchost.exe
    IMEO\tvmd.exe: [Debugger] svchost.exe
    IMEO\tvtmd.exe: [Debugger] svchost.exe
    IMEO\undoboot.exe: [Debugger] svchost.exe
    IMEO\updat.exe: [Debugger] svchost.exe
    IMEO\upgrad.exe: [Debugger] svchost.exe
    IMEO\utpost.exe: [Debugger] svchost.exe
    IMEO\vbcmserv.exe: [Debugger] svchost.exe
    IMEO\vbcons.exe: [Debugger] svchost.exe
    IMEO\vbust.exe: [Debugger] svchost.exe
    IMEO\vbwin9x.exe: [Debugger] svchost.exe
    IMEO\vbwinntw.exe: [Debugger] svchost.exe
    IMEO\vcsetup.exe: [Debugger] svchost.exe
    IMEO\vet32.exe: [Debugger] svchost.exe
    IMEO\vet95.exe: [Debugger] svchost.exe
    IMEO\vettray.exe: [Debugger] svchost.exe
    IMEO\vfsetup.exe: [Debugger] svchost.exe
    IMEO\vir-help.exe: [Debugger] svchost.exe
    IMEO\virusmdpersonalfirewall.exe: [Debugger] svchost.exe
    IMEO\VisthAux.exe: [Debugger] svchost.exe
    IMEO\VisthLic.exe: [Debugger] svchost.exe
    IMEO\VisthUpd.exe: [Debugger] svchost.exe
    IMEO\vnlan300.exe: [Debugger] svchost.exe
    IMEO\vnpc3000.exe: [Debugger] svchost.exe
    IMEO\vpc32.exe: [Debugger] svchost.exe
    IMEO\vpc42.exe: [Debugger] svchost.exe
    IMEO\vpfw30s.exe: [Debugger] svchost.exe
    IMEO\vptray.exe: [Debugger] svchost.exe
    IMEO\vscan40.exe: [Debugger] svchost.exe
    IMEO\vscenu6.02d30.exe: [Debugger] svchost.exe
    IMEO\vsched.exe: [Debugger] svchost.exe
    IMEO\vsecomr.exe: [Debugger] svchost.exe
    IMEO\vshwin32.exe: [Debugger] svchost.exe
    IMEO\vsisetup.exe: [Debugger] svchost.exe
    IMEO\vsmain.exe: [Debugger] svchost.exe
    IMEO\vsmon.exe: [Debugger] svchost.exe
    IMEO\vsstat.exe: [Debugger] svchost.exe
    IMEO\vswin9xe.exe: [Debugger] svchost.exe
    IMEO\vswinntse.exe: [Debugger] svchost.exe
    IMEO\vswinperse.exe: [Debugger] svchost.exe
    IMEO\w32dsm89.exe: [Debugger] svchost.exe
    IMEO\W3asbas.exe: [Debugger] svchost.exe
    IMEO\w9x.exe: [Debugger] svchost.exe
    IMEO\watchdog.exe: [Debugger] svchost.exe
    IMEO\webdav.exe: [Debugger] svchost.exe
    IMEO\WebProxy.exe: [Debugger] svchost.exe
    IMEO\webscanx.exe: [Debugger] svchost.exe
    IMEO\webtrap.exe: [Debugger] svchost.exe
    IMEO\wfindv32.exe: [Debugger] svchost.exe
    IMEO\whoswatchingme.exe: [Debugger] svchost.exe
    IMEO\wimmun32.exe: [Debugger] svchost.exe
    IMEO\win-bugsfix.exe: [Debugger] svchost.exe
    IMEO\win32.exe: [Debugger] svchost.exe
    IMEO\win32us.exe: [Debugger] svchost.exe
    IMEO\winactive.exe: [Debugger] svchost.exe
    IMEO\winav.exe: [Debugger] svchost.exe
    IMEO\windll32.exe: [Debugger] svchost.exe
    IMEO\window.exe: [Debugger] svchost.exe
    IMEO\windows Police Pro.exe: [Debugger] svchost.exe
    IMEO\windows.exe: [Debugger] svchost.exe
    IMEO\wininetd.exe: [Debugger] svchost.exe
    IMEO\wininitx.exe: [Debugger] svchost.exe
    IMEO\winlogin.exe: [Debugger] svchost.exe
    IMEO\winmain.exe: [Debugger] svchost.exe
    IMEO\winppr32.exe: [Debugger] svchost.exe
    IMEO\winrecon.exe: [Debugger] svchost.exe
    IMEO\winservn.exe: [Debugger] svchost.exe
    IMEO\winssk32.exe: [Debugger] svchost.exe
    IMEO\winstart.exe: [Debugger] svchost.exe
    IMEO\winstart001.exe: [Debugger] svchost.exe
    IMEO\wintsk32.exe: [Debugger] svchost.exe
    IMEO\winupdate.exe: [Debugger] svchost.exe
    IMEO\wkufind.exe: [Debugger] svchost.exe
    IMEO\wnad.exe: [Debugger] svchost.exe
    IMEO\wnt.exe: [Debugger] svchost.exe
    IMEO\wradmin.exe: [Debugger] svchost.exe
    IMEO\wrctrl.exe: [Debugger] svchost.exe
    IMEO\wsbgate.exe: [Debugger] svchost.exe
    IMEO\wscfxas.exe: [Debugger] svchost.exe
    IMEO\wscfxav.exe: [Debugger] svchost.exe
    IMEO\wscfxfw.exe: [Debugger] svchost.exe
    IMEO\wsctool.exe: [Debugger] svchost.exe
    IMEO\wupdater.exe: [Debugger] svchost.exe
    IMEO\wupdt.exe: [Debugger] svchost.exe
    IMEO\wyvernworksfirewall.exe: [Debugger] svchost.exe
    IMEO\xpdeluxe.exe: [Debugger] svchost.exe
    IMEO\xpf202en.exe: [Debugger] svchost.exe
    IMEO\xp_antispyware.exe: [Debugger] svchost.exe
    IMEO\zapro.exe: [Debugger] svchost.exe
    IMEO\zapsetup3001.exe: [Debugger] svchost.exe
    IMEO\zatutor.exe: [Debugger] svchost.exe
    IMEO\zonalm2601.exe: [Debugger] svchost.exe
    IMEO\zonealarm.exe: [Debugger] svchost.exe
    IMEO\_avp32.exe: [Debugger] svchost.exe
    IMEO\_avpcc.exe: [Debugger] svchost.exe
    IMEO\_avpm.exe: [Debugger] svchost.exe
    IMEO\~1.exe: [Debugger] svchost.exe
    IMEO\~2.exe: [Debugger] svchost.exe
    End
    • Save it on the flashdrive as fixlist.txt
    • Now please enter System Recovery Options then select Command Prompt.
    • Run FRST64 again as outlined in my prior post and then press the Fix button just once and wait.
    • The tool will make a log on the flashdrive (Fixlog.txt). Please copy and paste the contents of the aforementioned notepad file in your next reply
    • Reboot your machine back into Normal Mode.

    Note: This above custom script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system.
    Mammuthus Hibernian Scouserus, member of ASAP and UNITE.

  5. #15
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default complete

    Ok! The fix worked, and the computer booted up properly.
    Here is the log from the flash drive. I will have to do it in 2 posts because it is too long.

    Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-03-2013
    Ran by SYSTEM at 2013-04-07 11:38:44 Run:1
    Running from H:\

    ==============================================

    HKEY_USERS\Shermqn Cooper\Software\Microsoft\Windows\CurrentVersion\Run\\Conduit Value deleted successfully.
    HKEY_USERS\Shermqn Cooper\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableRegedit Value deleted successfully.
    HKEY_USERS\Shermqn Cooper\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableTaskMgr Value deleted successfully.
    HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell Value was restored successfully .
    AVGIDSAgent service deleted successfully.
    X6va005 service deleted successfully.
    X6va006 service deleted successfully.
    X6va009 service deleted successfully.
    X6va011 service deleted successfully.
    C:\Users\Shermqn Cooper\AppData\Roaming\_bd_uylzs.exe moved successfully.
    C:\Users\Shermqn Cooper\AppData\Local\_bd_uylzs.exe moved successfully.
    C:\ProgramData\_bd_uylzs.exe moved successfully.
    C:\Users\Shermqn Cooper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\fliptoast.lnk moved successfully.
    C:\Program Files (x86)\fliptoast\fliptoast.exe moved successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\a.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aAvgApi.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AAWTray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\About.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ackwin32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Ad-Aware.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\adaware.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\advxdwin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AdwarePrj.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\agent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\agentsvr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\agentw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\alertsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\alevir.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\alogserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AlphaAV Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AlphaAV.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AluSchedulerSvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\amon9x.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\anti-trojan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Anti-Virus Professional.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntispywarXP2009.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\antivirus.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntivirusPlus Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntivirusPlus.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntivirusPro_2010.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntivirusXP Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntivirusXP.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\antivirusxppro2009.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AntiVirus_Pro.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ants.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\apimonitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aplica32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\apvxdwin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\arr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashAvast.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashBug.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashChest.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashCnsnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashDisp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashLogV.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashMaiSv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashPopWz.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashQuick.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashServ.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashSimp2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashSimpl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashSkPcc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashSkPck.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashUpd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ashWebSv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aswChLic.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aswRegSvr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aswRunDll.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aswUpdSv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\atcon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\atguard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\atro55en.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\atupdater.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\atwatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\au.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\aupdate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\auto-protect.nav80try.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\autodown.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\autotrace.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\autoupdate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\av360.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avadmin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avastSvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avastUI.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AVCare.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avcenter.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avciman.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avconfig.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avconsol.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ave32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AVENGINE.EXE Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgcc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgchk.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgcmgr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgcsrvx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgctrl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgdumpx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgemc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgiproxy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgnsx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgrsx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgscanx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgserv9.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgsrmax.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgtray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avguard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgupd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avgwdsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avkpop.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avkserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avkservice.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avkwctl9.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avltmain.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avmailc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avmcdlg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avnotify.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avp32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avpcc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avpdos32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avpm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avptc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avpupd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avsched32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avshadow.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avsynmgr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avupgsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\AVWEBGRD.EXE Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwin95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwinnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwsc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwupd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwupd32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avwupsrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avxmonitor9x.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avxmonitornt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\avxquar.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\b.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\backweb.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bargains.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bdfvcl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bdfvwiz.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\BDInProcPatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bdmcon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\BDMsnScan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\BDSurvey.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bd_professional.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\beagle.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\belt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bidef.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bidserver.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bipcp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bipcpevalsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bisp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\blackd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\blackice.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\blink.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\blss.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bootconf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bootwarn.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\borg2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bpc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\brasil.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\brastk.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\brw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bs120.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bspatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bundle.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\bvt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\c.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cavscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ccapp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ccevtmgr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ccpxysvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ccSvcHst.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cdp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfgwiz.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfiadmin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfiaudit.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfinet.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfinet32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfpconfg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfplogvw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cfpupdat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\claw95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\claw95cf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\clean.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cleaner.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cleaner3.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cleanIELow.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cleanpc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\click.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cmd32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cmdagent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cmesys.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cmgrdian.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cmon016.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\connectionmonitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\control Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cpd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cpf9x206.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cpfnt206.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\crashrep.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\csc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cssconfg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cssupdat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cssurf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ctrl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cwnb181.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\cwntdwmo.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\d.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\datemanager.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dcomx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\defalert.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\defscangui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\defwatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\deloeminfs.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\deputy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\divx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dllcache.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dllreg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\doors.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dop.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dpf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dpfsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dpps2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\driverctrl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\drwatson.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\drweb32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\drwebupw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dssagent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dvp95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\dvp95_0.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ecengine.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\efpeadm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\emsw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\esafe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\escanhnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\escanv95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\espwatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ethereal.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\etrustcipe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\evpn.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\exantivirus-cnet.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\exe.avxw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\expert.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\explore.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\f-agnt95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\f-prot.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\f-prot95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\f-stopw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fact.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fameh32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fast.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fch32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fih32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\findviru.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\firewall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fixcfg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fixfp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fnrb32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fp-win.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fp-win_trial.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fprot.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\frmwrk32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\frw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsaa.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsav32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsav530stbyb.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsav530wtbyb.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsav95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsgk32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsm32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsma32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\fsmb32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gator.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gbmenu.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gbn976rl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gbpoll.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\generics.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\gmt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\guard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\guarddog.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\guardgui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hacktracersetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hbinst.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hbsrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\History.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\homeav2010.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hotactio.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hotpatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\htlog.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\htpatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hwpe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hxdl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\hxiul.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iamapp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iamserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iamstats.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ibmasn.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ibmavsp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\icload95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\icloadnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\icmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\icsupp95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\icsuppnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Identity.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\idle.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iedll.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iedriver.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\IEShow.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iface.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ifw2000.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\inetlnfo.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\infus.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\infwin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\init.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\init32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\install[1].exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\install[2].exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\install[3].exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\install[4].exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\install[5].exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\intdel.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\intren.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\iomon98.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\istsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\jammer.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\jdbgmrg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\jedi.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\JsRcGen.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kavlite40eng.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kavpers40eng.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kavpf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kazza.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\keenvalue.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kerio-pf-213-en-win.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kerio-wrl-421-en-win.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\kerio-wrp-421-en-win.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\killprocesssetup161.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ldnetmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ldpro.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ldpromenu.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ldscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\licmgr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lnetinfo.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\loader.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\localnet.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lockdown.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lockdown2000.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lookout.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lordpe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\luall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\luau.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\lucomserver.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\luinit.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\luspt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MalwareRemoval.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mapisvc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mbam.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion

  6. #16
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default pt. 2

    \Image File Execution Options\mbamgui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mbamservice.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcagent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcmnhdlr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcmpeng.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcmscsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcnasvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcproxy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\McSACore.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcshell.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcshield.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcsysmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mctool.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcupdate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcvsrte.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mcvsshld.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\md.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mfin32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mfw2en.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mfweng3.02d30.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mgavrtcl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mgavrte.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mghtml.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mgui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\minilog.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mmod.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\monitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\moolive.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mostat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mpfagent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mpfservice.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MPFSrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mpftray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mrflux.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mrt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msa.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msapp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MSASCui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msbb.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msblast.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mscache.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msccn32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mscman.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msconfig Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msdm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msdos.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msiexec16.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mslaugh.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msmgt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msmsgri32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msseces.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mssmmc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mssys.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\msvxd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mu0311ad.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\mwatch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\n32scanw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navap.navapsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navapsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navapw32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navdx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navlu32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navstub.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navw32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\navwnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nc2000.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ncinst4.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ndd32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\neomonitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\neowatchlog.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netarmor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netd32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netinfo.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netscanpro.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netspyhunter-1.2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\netutils.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nisserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nisum.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nmain.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nod32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\normist.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\norton_internet_secu_3.0_407.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\notstart.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\npf40_tw_98_nt_me_2k.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\npfmessenger.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nprotect.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\npscheck.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\npssvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nsched32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nssys32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nstask32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nsupdate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ntrtscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ntvdm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ntxconfig.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nupgrade.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nvarch16.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nvc95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nvsvc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nwinst4.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nwservice.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\nwtool16.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\OAcat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\OAhlp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\OAReg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\oasrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\oaui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\oaview.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ODSW.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ollydbg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\onsrvr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\optimize.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ostronet.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\otfix.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\outpost.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\outpostinstall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\outpostproinstall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ozn695m5.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\padmin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\panixk.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\patch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavcl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PavFnSvr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavproxy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavprsrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavsched.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavsrv51.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pavw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pccwin98.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pcfwallicon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pcip10117_0.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pcscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pctsAuxs.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pctsGui.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pctsSvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pctsTray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PC_Antispyware2010.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pdfndr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pdsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PerAvir.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\periscope.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\persfw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\personalguard Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\personalguard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\perswf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pf2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pfwadmin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pgmonitr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pingscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\platin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pop3trap.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\poproxy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\popscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\portdetective.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\portmonitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\powerscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ppinupdt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pptbc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ppvstop.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\prizesurfer.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\prmt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\prmvr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\procdump.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\processmonitor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\procexplorerv1.0.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\programauditor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\proport.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\protector.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\protectx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PSANCU.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PSANHost.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PSANToManager.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PsCtrls.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PsImSvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PskSvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\pspf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\PSUNMain.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\purge.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\qconsole.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\qh.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\qserver.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Quick Heal.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\QuickHealCleaner.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rapapp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rav7.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rav7win.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rav8win32eng.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rb32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rcsync.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\realmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\reged.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\regedt32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rescue.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rescue32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rrguard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rscdwld.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rshell.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rtvscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rtvscn95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rulaunch.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rwg Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\rwg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SafetyKeeper.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\safeweb.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sahagent.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Save.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SaveArmor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SaveDefense.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SaveKeep.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\savenow.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sbserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\scam32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\scan32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\scan95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\scanpm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\scrscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Secure Veteran.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\secureveteran.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\Security Center.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SecurityFighter.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\securitysoldier.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\serv95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\setloadorder.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\setupvameeval.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\setup_flowprotector_us.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sgssfw32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sh.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\shellspyinstall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\shield.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\shn.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\showbehind.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\signcheck.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\smart.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\smartprotector.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\smc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\smrtdefp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sms.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\smss32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\snetcfg.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\soap.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sofi.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\SoftSafeness.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sperm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spf.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sphinx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spoler.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spoolcv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spoolsv32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spywarexpguard.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\spyxx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\srexe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\srng.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ss3edit.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ssgrate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\ssg_4104.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\st2.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\start.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\stcloader.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\supftrl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\support.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\supporter5.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\svc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\svchostc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\svchosts.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\svshost.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sweep95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sweepnet.sweepsrv.sys.swnetsup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\symlcsvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\symproxysvc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\symtray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\system.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\system32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\sysupd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tapinstall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\taumon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tbscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tca.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tcm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tds-3.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tds2-98.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tds2-nt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\teekids.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tfak.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tfak5.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tgbob.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\titanin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\titaninxp.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\TPSrv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\trickler.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\trjscan.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\trjsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\trojantrap3.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\TrustWarrior.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tsadbot.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tsc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tvmd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\tvtmd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\undoboot.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\updat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\upgrad.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\utpost.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vbcmserv.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vbcons.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vbust.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vbwin9x.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vbwinntw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vcsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vet32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vet95.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vettray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vfsetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vir-help.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\virusmdpersonalfirewall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\VisthAux.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\VisthLic.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\VisthUpd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vnlan300.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vnpc3000.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vpc32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vpc42.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vpfw30s.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vptray.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vscan40.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vscenu6.02d30.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsched.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsecomr.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vshwin32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsisetup.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsmain.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsmon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vsstat.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vswin9xe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vswinntse.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\vswinperse.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\w32dsm89.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\W3asbas.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\w9x.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\watchdog.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\webdav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\WebProxy.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\webscanx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\webtrap.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wfindv32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\whoswatchingme.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wimmun32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\win-bugsfix.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\win32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\win32us.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winactive.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\windll32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\window.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\windows Police Pro.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\windows.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wininetd.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wininitx.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winlogin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winmain.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winppr32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winrecon.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winservn.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winssk32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winstart.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winstart001.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wintsk32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\winupdate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wkufind.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wnad.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wnt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wradmin.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wrctrl.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wsbgate.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wscfxas.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wscfxav.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wscfxfw.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wsctool.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wupdater.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wupdt.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\wyvernworksfirewall.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\xpdeluxe.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\xpf202en.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\xp_antispyware.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\zapro.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\zapsetup3001.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\zatutor.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\zonalm2601.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\zonealarm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\_avp32.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\_avpcc.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\_avpm.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\~1.exe Key deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\~2.exe Key deleted successfully.

    ==== End of Fixlog ====

  7. #17
    Security Expert-Emeritus Dakeyras's Avatar
    Join Date
    Sep 2008
    Location
    The Tundra
    Posts
    1,173

    Default

    Hi.

    Ok! The fix worked, and the computer booted up properly.
    Good...

    OK we are going to take a slightly different approach again to what I had planned originally and it would best to limit online activity with the machine for the time being also.

    All of the below can now be done on the infected machine, any problems downloading anything merely stop what you are doing and inform myself please.

    Malwarebytes Anti-Malware:

    Please download the installer for Malwarebytes' Anti-Malware to the desktop.

    Note: The installer will be randomly named, say for example something like 549od2jqai.exe

    • Right-click on the randomly named exe file and select Run as Administrator, then follow the prompts to install the program.
    • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    • If an update is found, it will download and install the latest version.
    When the program loads, Decline the Malwarebytes' Anti-Malware Trial (You can activate this when we've finished, if you so wish)
    • Once the program has loaded, select Perform quick scan, then click Scan.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Be sure that everything is checked, and click Remove Selected.
    • When completed, a log will open in Notepad. Please post that log in your next reply.

    The log can also be found here:

    • Launch Malwarebytes' Anti-Malware
    • Click on the Logs radio tab.

    Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.

    Scan with OTL:

    Please download OTL and save it to the Desktop.

    Alternate downloads are here and here.

    • Right-click on OTL.exe and select Run as Administrator to start OTL.
    • Ensure Include 64bit Scans is selected.
    • Under Output, ensure that Standard Output is selected.
    • Under Extra Registry section, select Use SafeList.
    • Click the Scan All Users checkbox.
    • Under the Custom Scan/Fixes box cut & paste this in:-

    netsvcs
    baseservices
    %systemdrive%\*.exe
    /md5start
    services.*
    iastor.sys
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    winsock.*
    /md5stop
    CreateRestorePoint

    • Now click on Run Scan at the top left hand corner.
    • When done, two Notepad files will open.
      • OTL.txt <-- Will be opened
      • Extra.txt <-- Will be minimized
    • Please post the contents of these two Notepad files in your next reply.

    Next:

    When completed the above, please post back the following in the order asked for:

    • How is the computer performing now, any further symptoms and or problems encountered?
    • Malwarebytes' Anti-Malware Log.
    • Both OTL logs. <-- Post them individually please, IE: one Log per post/reply.
    Mammuthus Hibernian Scouserus, member of ASAP and UNITE.

  8. #18
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default Hello

    Each time I try the download, Malwarebytes, I get this message:
    Download error
    C:\Users\Shermqm Cooper\Downloads\yl74m858lo.exe.part could not be saved, because the source file could not be read.

  9. #19
    Security Expert-Emeritus Dakeyras's Avatar
    Join Date
    Sep 2008
    Location
    The Tundra
    Posts
    1,173

    Default

    Hi.

    Are you using Mozilla Firefox to download ? If so use Internet Explorer instead and we can address the Mozilla Firefox issue later on.
    Last edited by Dakeyras; 2013-04-08 at 15:40.
    Mammuthus Hibernian Scouserus, member of ASAP and UNITE.

  10. #20
    Senior Member
    Join Date
    Jan 2009
    Posts
    151

    Default ok

    Yes I am using Firefox. I will try IE now...Thank you.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •