Підтримка
Цілодобова підтримка | Правила звернення

Зателефонуйте

Глобальна підтримка:
+7 (495) 789-45-86

Поширені запитання |  Форум |  Бот самопідтримки Telegram

Ваші запити

  • Всі: -
  • Незакриті: -
  • Останій: -

Зателефонуйте

Глобальна підтримка:
+7 (495) 789-45-86

Зв'яжіться з нами Незакриті запити: 

Профіль

Профіль

Trojan.Inject4.5526

Добавлен в вирусную базу Dr.Web: 2020-11-21

Описание добавлено:

Technical Information

Modifies file system
Creates the following files
  • %WINDIR%\syswow64\skayon.exe
  • %WINDIR%\syswow64\rsgfje.exe
  • %WINDIR%\syswow64\jvcqlo.exe
  • %WINDIR%\syswow64\ywnvpz.exe
  • %WINDIR%\syswow64\vmtvig.exe
  • %WINDIR%\syswow64\sneiej.exe
  • %WINDIR%\syswow64\mqjyec.exe
  • %WINDIR%\syswow64\yqefjp.exe
  • %WINDIR%\syswow64\uuhfqf.exe
  • %WINDIR%\syswow64\gdvsmj.exe
  • %WINDIR%\syswow64\zmnqdg.exe
  • %WINDIR%\syswow64\xgjlti.exe
  • %WINDIR%\syswow64\wysvvv.exe
  • %WINDIR%\syswow64\ojvydv.exe
  • %WINDIR%\syswow64\iplbxl.exe
  • %WINDIR%\syswow64\ffsbys.exe
  • %WINDIR%\syswow64\gklydr.exe
  • %WINDIR%\syswow64\dhsyey.exe
  • %WINDIR%\syswow64\crwgjh.exe
  • %WINDIR%\syswow64\cczbrz.exe
  • %WINDIR%\syswow64\pfpmjx.exe
  • %WINDIR%\syswow64\qmpgmr.exe
  • %WINDIR%\syswow64\qbmldh.exe
  • %WINDIR%\syswow64\kzdoyf.exe
  • %WINDIR%\syswow64\cocddt.exe
  • %WINDIR%\syswow64\zhmrhw.exe
  • %WINDIR%\syswow64\jlfhmu.exe
  • %WINDIR%\syswow64\qjzdkl.exe
  • %WINDIR%\syswow64\gmpuif.exe
  • %WINDIR%\syswow64\yzvjbr.exe
  • %WINDIR%\syswow64\ciawez.exe
  • %WINDIR%\syswow64\woqrhx.exe
  • %WINDIR%\syswow64\qjvhzq.exe
  • %WINDIR%\syswow64\lpmcco.exe
  • %WINDIR%\syswow64\abjhfw.exe
  • %WINDIR%\syswow64\yolgsz.exe
  • %WINDIR%\syswow64\qdkexn.exe
  • %WINDIR%\syswow64\hovgeg.exe
  • %WINDIR%\syswow64\xiztcl.exe
  • %WINDIR%\syswow64\webbrn.exe
  • %WINDIR%\syswow64\fgpefn.exe
  • %WINDIR%\syswow64\wceybr.exe
  • %WINDIR%\syswow64\qautwh.exe
  • %WINDIR%\syswow64\lglwze.exe
  • %WINDIR%\syswow64\hhdbcq.exe
  • %WINDIR%\syswow64\uciruj.exe
  • %WINDIR%\syswow64\klkoft.exe
  • %WINDIR%\syswow64\opnmdp.exe
  • %WINDIR%\syswow64\cwoeyu.exe
  • %WINDIR%\syswow64\flkhzm.exe
  • %WINDIR%\syswow64\zgqhta.exe
  • %WINDIR%\syswow64\tirpyu.exe
  • %WINDIR%\syswow64\rcnkpw.exe
  • %WINDIR%\syswow64\ngicvm.exe
  • %WINDIR%\syswow64\ktexmg.exe
  • %WINDIR%\syswow64\ivdhgn.exe
  • %WINDIR%\syswow64\twkqaf.exe
  • %WINDIR%\syswow64\cffcpo.exe
  • %WINDIR%\syswow64\yyuvyi.exe
  • %WINDIR%\syswow64\hgjtqp.exe
  • %WINDIR%\syswow64\sujmmh.exe
  • %WINDIR%\syswow64\mipugn.exe
  • %WINDIR%\syswow64\eoojlb.exe
  • %WINDIR%\syswow64\bphxhm.exe
  • %WINDIR%\syswow64\ynoxil.exe
  • %WINDIR%\syswow64\klerdj.exe
  • %WINDIR%\syswow64\evxzil.exe
  • %WINDIR%\syswow64\zmzcfa.exe
  • %WINDIR%\syswow64\pkqmfg.exe
  • %WINDIR%\syswow64\wkycyh.exe
  • %WINDIR%\syswow64\almaiu.exe
  • %WINDIR%\syswow64\rsmxni.exe
  • %WINDIR%\syswow64\jspvmo.exe
  • %WINDIR%\syswow64\ydvaqw.exe
  • %WINDIR%\syswow64\poxdxp.exe
  • %WINDIR%\syswow64\hdxacd.exe
  • %WINDIR%\syswow64\tihqoi.exe
  • %WINDIR%\syswow64\lzhvfm.exe
  • %WINDIR%\syswow64\qypijc.exe
  • %WINDIR%\syswow64\wsaqnb.exe
  • %WINDIR%\syswow64\wazxto.exe
  • %WINDIR%\syswow64\cxuptv.exe
  • %WINDIR%\syswow64\mveadf.exe
  • %WINDIR%\syswow64\fudvnf.exe
  • %WINDIR%\syswow64\dqllyy.exe
  • %WINDIR%\syswow64\srgotp.exe
  • %WINDIR%\syswow64\gzqyco.exe
  • %WINDIR%\syswow64\xpyugm.exe
  • %WINDIR%\syswow64\ouajlg.exe
  • %WINDIR%\syswow64\vwesew.exe
  • %WINDIR%\syswow64\aueywu.exe
  • %WINDIR%\syswow64\jzzkpb.exe
  • %WINDIR%\syswow64\yauusk.exe
  • %WINDIR%\syswow64\xlwxgr.exe
  • %WINDIR%\syswow64\tepuep.exe
  • %WINDIR%\syswow64\ivxnrj.exe
  • %WINDIR%\syswow64\keszca.exe
  • %WINDIR%\syswow64\yfkuxm.exe
  • %WINDIR%\syswow64\mjjrci.exe
  • %WINDIR%\syswow64\gpxehd.exe
  • %WINDIR%\syswow64\xmabnx.exe
  • %WINDIR%\syswow64\lzoxma.exe
  • %WINDIR%\syswow64\zfxqwi.exe
  • %WINDIR%\syswow64\yqimec.exe
  • %WINDIR%\syswow64\jhjjos.exe
  • %WINDIR%\syswow64\trxjvy.exe
  • %WINDIR%\syswow64\sdfuxm.exe
  • %WINDIR%\syswow64\dqvexy.exe
  • %WINDIR%\syswow64\sxfpfp.exe
  • %WINDIR%\syswow64\dpriit.exe
  • %WINDIR%\syswow64\beqcjr.exe
  • %WINDIR%\syswow64\hiwifn.exe
  • %WINDIR%\syswow64\wjssae.exe
  • %WINDIR%\syswow64\knyqgz.exe
  • %WINDIR%\syswow64\rjhyra.exe
  • %WINDIR%\syswow64\ibloks.exe
  • %WINDIR%\syswow64\sfijgx.exe
  • %WINDIR%\syswow64\gnztgw.exe
  • %WINDIR%\syswow64\qmznjr.exe
  • %WINDIR%\syswow64\fcffri.exe
  • %WINDIR%\syswow64\vtrhiw.exe
  • %WINDIR%\syswow64\ldkaur.exe
  • %WINDIR%\syswow64\bitoxl.exe
  • %WINDIR%\syswow64\rnamzp.exe
  • %WINDIR%\syswow64\lxctfr.exe
  • %WINDIR%\syswow64\injuyq.exe
  • %WINDIR%\syswow64\xcsmed.exe
  • %WINDIR%\syswow64\uarmfc.exe
  • %WINDIR%\syswow64\vbhwbq.exe
  • %WINDIR%\syswow64\jlwrjk.exe
  • %WINDIR%\syswow64\umqzve.exe
  • %WINDIR%\syswow64\gqtxbz.exe
  • %WINDIR%\syswow64\ujomed.exe
  • %WINDIR%\syswow64\oiephb.exe
  • %WINDIR%\syswow64\lflpaa.exe
  • %WINDIR%\syswow64\igdcel.exe
  • %WINDIR%\syswow64\feccxk.exe
  • %WINDIR%\syswow64\gngefv.exe
  • %WINDIR%\syswow64\bxffim.exe
  • %WINDIR%\syswow64\xiehas.exe
  • %WINDIR%\syswow64\kmfbey.exe
  • %WINDIR%\syswow64\brgovw.exe
  • %WINDIR%\syswow64\efkbxt.exe
  • %WINDIR%\syswow64\indjul.exe
  • %WINDIR%\syswow64\morzeh.exe
  • %WINDIR%\syswow64\dkgcad.exe
  • %WINDIR%\syswow64\pmjuzs.exe
  • %WINDIR%\syswow64\jzxcty.exe
  • %WINDIR%\syswow64\yddszt.exe
  • %WINDIR%\syswow64\fpaizn.exe
  • %WINDIR%\syswow64\rcufwd.exe
  • %WINDIR%\syswow64\dilqpj.exe
  • %WINDIR%\syswow64\xcqxpd.exe
  • %WINDIR%\syswow64\sagasa.exe
  • %WINDIR%\syswow64\gyplzf.exe
  • %WINDIR%\syswow64\btuazy.exe
  • %WINDIR%\syswow64\vrkvtw.exe
  • %WINDIR%\syswow64\mjvgbo.exe
  • %WINDIR%\syswow64\tiyaly.exe
  • %WINDIR%\syswow64\khcgcv.exe
  • %WINDIR%\syswow64\otlodq.exe
  • %WINDIR%\syswow64\caefkp.exe
Sets the 'hidden' attribute to the following files
  • %WINDIR%\syswow64\skayon.exe
  • %WINDIR%\syswow64\rsgfje.exe
  • %WINDIR%\syswow64\jvcqlo.exe
  • %WINDIR%\syswow64\ywnvpz.exe
  • %WINDIR%\syswow64\vmtvig.exe
  • %WINDIR%\syswow64\sneiej.exe
  • %WINDIR%\syswow64\mqjyec.exe
  • %WINDIR%\syswow64\yqefjp.exe
  • %WINDIR%\syswow64\uuhfqf.exe
  • %WINDIR%\syswow64\gdvsmj.exe
  • %WINDIR%\syswow64\zmnqdg.exe
  • %WINDIR%\syswow64\xgjlti.exe
  • %WINDIR%\syswow64\wysvvv.exe
  • %WINDIR%\syswow64\ojvydv.exe
  • %WINDIR%\syswow64\iplbxl.exe
  • %WINDIR%\syswow64\ffsbys.exe
  • %WINDIR%\syswow64\gklydr.exe
  • %WINDIR%\syswow64\dhsyey.exe
  • %WINDIR%\syswow64\crwgjh.exe
  • %WINDIR%\syswow64\cczbrz.exe
  • %WINDIR%\syswow64\pfpmjx.exe
  • %WINDIR%\syswow64\qmpgmr.exe
  • %WINDIR%\syswow64\qbmldh.exe
  • %WINDIR%\syswow64\kzdoyf.exe
  • %WINDIR%\syswow64\cocddt.exe
  • %WINDIR%\syswow64\zhmrhw.exe
  • %WINDIR%\syswow64\jlfhmu.exe
  • %WINDIR%\syswow64\qjzdkl.exe
  • %WINDIR%\syswow64\gmpuif.exe
  • %WINDIR%\syswow64\yzvjbr.exe
  • %WINDIR%\syswow64\ciawez.exe
  • %WINDIR%\syswow64\woqrhx.exe
  • %WINDIR%\syswow64\qjvhzq.exe
  • %WINDIR%\syswow64\lpmcco.exe
  • %WINDIR%\syswow64\abjhfw.exe
  • %WINDIR%\syswow64\yolgsz.exe
  • %WINDIR%\syswow64\qdkexn.exe
  • %WINDIR%\syswow64\hovgeg.exe
  • %WINDIR%\syswow64\xiztcl.exe
  • %WINDIR%\syswow64\webbrn.exe
  • %WINDIR%\syswow64\fgpefn.exe
  • %WINDIR%\syswow64\wceybr.exe
  • %WINDIR%\syswow64\qautwh.exe
  • %WINDIR%\syswow64\lglwze.exe
  • %WINDIR%\syswow64\hhdbcq.exe
  • %WINDIR%\syswow64\uciruj.exe
  • %WINDIR%\syswow64\klkoft.exe
  • %WINDIR%\syswow64\opnmdp.exe
  • %WINDIR%\syswow64\cwoeyu.exe
  • %WINDIR%\syswow64\flkhzm.exe
  • %WINDIR%\syswow64\zgqhta.exe
  • %WINDIR%\syswow64\tirpyu.exe
  • %WINDIR%\syswow64\rcnkpw.exe
  • %WINDIR%\syswow64\ngicvm.exe
  • %WINDIR%\syswow64\ktexmg.exe
  • %WINDIR%\syswow64\ivdhgn.exe
  • %WINDIR%\syswow64\twkqaf.exe
  • %WINDIR%\syswow64\cffcpo.exe
  • %WINDIR%\syswow64\yyuvyi.exe
  • %WINDIR%\syswow64\hgjtqp.exe
  • %WINDIR%\syswow64\sujmmh.exe
  • %WINDIR%\syswow64\mipugn.exe
  • %WINDIR%\syswow64\eoojlb.exe
  • %WINDIR%\syswow64\bphxhm.exe
  • %WINDIR%\syswow64\ynoxil.exe
  • %WINDIR%\syswow64\klerdj.exe
  • %WINDIR%\syswow64\evxzil.exe
  • %WINDIR%\syswow64\zmzcfa.exe
  • %WINDIR%\syswow64\pkqmfg.exe
  • %WINDIR%\syswow64\wkycyh.exe
  • %WINDIR%\syswow64\almaiu.exe
  • %WINDIR%\syswow64\rsmxni.exe
  • %WINDIR%\syswow64\jspvmo.exe
  • %WINDIR%\syswow64\ydvaqw.exe
  • %WINDIR%\syswow64\poxdxp.exe
  • %WINDIR%\syswow64\hdxacd.exe
  • %WINDIR%\syswow64\tihqoi.exe
  • %WINDIR%\syswow64\lzhvfm.exe
  • %WINDIR%\syswow64\qypijc.exe
  • %WINDIR%\syswow64\wsaqnb.exe
  • %WINDIR%\syswow64\wazxto.exe
  • %WINDIR%\syswow64\cxuptv.exe
  • %WINDIR%\syswow64\mveadf.exe
  • %WINDIR%\syswow64\fudvnf.exe
  • %WINDIR%\syswow64\dqllyy.exe
  • %WINDIR%\syswow64\srgotp.exe
  • %WINDIR%\syswow64\gzqyco.exe
  • %WINDIR%\syswow64\xpyugm.exe
  • %WINDIR%\syswow64\ouajlg.exe
  • %WINDIR%\syswow64\vwesew.exe
  • %WINDIR%\syswow64\aueywu.exe
  • %WINDIR%\syswow64\jzzkpb.exe
  • %WINDIR%\syswow64\yauusk.exe
  • %WINDIR%\syswow64\xlwxgr.exe
  • %WINDIR%\syswow64\tepuep.exe
  • %WINDIR%\syswow64\ivxnrj.exe
  • %WINDIR%\syswow64\keszca.exe
  • %WINDIR%\syswow64\yfkuxm.exe
  • %WINDIR%\syswow64\mjjrci.exe
  • %WINDIR%\syswow64\gpxehd.exe
  • %WINDIR%\syswow64\xmabnx.exe
  • %WINDIR%\syswow64\lzoxma.exe
  • %WINDIR%\syswow64\zfxqwi.exe
  • %WINDIR%\syswow64\yqimec.exe
  • %WINDIR%\syswow64\jhjjos.exe
  • %WINDIR%\syswow64\trxjvy.exe
  • %WINDIR%\syswow64\sdfuxm.exe
  • %WINDIR%\syswow64\dqvexy.exe
  • %WINDIR%\syswow64\sxfpfp.exe
  • %WINDIR%\syswow64\dpriit.exe
  • %WINDIR%\syswow64\beqcjr.exe
  • %WINDIR%\syswow64\hiwifn.exe
  • %WINDIR%\syswow64\wjssae.exe
  • %WINDIR%\syswow64\knyqgz.exe
  • %WINDIR%\syswow64\rjhyra.exe
  • %WINDIR%\syswow64\ibloks.exe
  • %WINDIR%\syswow64\sfijgx.exe
  • %WINDIR%\syswow64\gnztgw.exe
  • %WINDIR%\syswow64\qmznjr.exe
  • %WINDIR%\syswow64\fcffri.exe
  • %WINDIR%\syswow64\vtrhiw.exe
  • %WINDIR%\syswow64\ldkaur.exe
  • %WINDIR%\syswow64\bitoxl.exe
  • %WINDIR%\syswow64\rnamzp.exe
  • %WINDIR%\syswow64\lxctfr.exe
  • %WINDIR%\syswow64\injuyq.exe
  • %WINDIR%\syswow64\xcsmed.exe
  • %WINDIR%\syswow64\uarmfc.exe
  • %WINDIR%\syswow64\vbhwbq.exe
  • %WINDIR%\syswow64\jlwrjk.exe
  • %WINDIR%\syswow64\umqzve.exe
  • %WINDIR%\syswow64\gqtxbz.exe
  • %WINDIR%\syswow64\ujomed.exe
  • %WINDIR%\syswow64\oiephb.exe
  • %WINDIR%\syswow64\lflpaa.exe
  • %WINDIR%\syswow64\igdcel.exe
  • %WINDIR%\syswow64\feccxk.exe
  • %WINDIR%\syswow64\gngefv.exe
  • %WINDIR%\syswow64\bxffim.exe
  • %WINDIR%\syswow64\xiehas.exe
  • %WINDIR%\syswow64\kmfbey.exe
  • %WINDIR%\syswow64\brgovw.exe
  • %WINDIR%\syswow64\efkbxt.exe
  • %WINDIR%\syswow64\indjul.exe
  • %WINDIR%\syswow64\morzeh.exe
  • %WINDIR%\syswow64\dkgcad.exe
  • %WINDIR%\syswow64\pmjuzs.exe
  • %WINDIR%\syswow64\jzxcty.exe
  • %WINDIR%\syswow64\yddszt.exe
  • %WINDIR%\syswow64\fpaizn.exe
  • %WINDIR%\syswow64\rcufwd.exe
  • %WINDIR%\syswow64\dilqpj.exe
  • %WINDIR%\syswow64\xcqxpd.exe
  • %WINDIR%\syswow64\sagasa.exe
  • %WINDIR%\syswow64\gyplzf.exe
  • %WINDIR%\syswow64\btuazy.exe
  • %WINDIR%\syswow64\vrkvtw.exe
  • %WINDIR%\syswow64\mjvgbo.exe
  • %WINDIR%\syswow64\tiyaly.exe
  • %WINDIR%\syswow64\khcgcv.exe
  • %WINDIR%\syswow64\otlodq.exe
  • %WINDIR%\syswow64\caefkp.exe
Miscellaneous
Creates and executes the following
  • '%WINDIR%\syswow64\skayon.exe' 416 "<Full path to file>"
  • '%WINDIR%\syswow64\lpmcco.exe'
  • '%WINDIR%\syswow64\iplbxl.exe'
  • '%WINDIR%\syswow64\jlfhmu.exe'
  • '%WINDIR%\syswow64\jlfhmu.exe' 416 "%WINDIR%\SysWOW64\pfpmjx.EXE"
  • '%WINDIR%\syswow64\pfpmjx.exe'
  • '%WINDIR%\syswow64\pfpmjx.exe' 416 "%WINDIR%\SysWOW64\abjhfw.EXE"
  • '%WINDIR%\syswow64\abjhfw.exe'
  • '%WINDIR%\syswow64\qdkexn.exe'
  • '%WINDIR%\syswow64\abjhfw.exe' 416 "%WINDIR%\SysWOW64\lpmcco.EXE"
  • '%WINDIR%\syswow64\hovgeg.exe' 416 "%WINDIR%\SysWOW64\qdkexn.EXE"
  • '%WINDIR%\syswow64\qjvhzq.exe'
  • '%WINDIR%\syswow64\gmpuif.exe' 416 "%WINDIR%\SysWOW64\jlfhmu.EXE"
  • '%WINDIR%\syswow64\qjvhzq.exe' 416 "%WINDIR%\SysWOW64\woqrhx.EXE"
  • '%WINDIR%\syswow64\woqrhx.exe' 416 "%WINDIR%\SysWOW64\ciawez.EXE"
  • '%WINDIR%\syswow64\ciawez.exe'
  • '%WINDIR%\syswow64\ciawez.exe' 416 "%WINDIR%\SysWOW64\hovgeg.EXE"
  • '%WINDIR%\syswow64\lpmcco.exe' 416 "%WINDIR%\SysWOW64\qjvhzq.EXE"
  • '%WINDIR%\syswow64\hovgeg.exe'
  • '%WINDIR%\syswow64\qdkexn.exe' 416 "%WINDIR%\SysWOW64\yolgsz.EXE"
  • '%WINDIR%\syswow64\ywnvpz.exe'
  • '%WINDIR%\syswow64\yolgsz.exe' 416 "%WINDIR%\SysWOW64\yzvjbr.EXE"
  • '%WINDIR%\syswow64\woqrhx.exe'
  • '%WINDIR%\syswow64\yzvjbr.exe'
  • '%WINDIR%\syswow64\gmpuif.exe'
  • '%WINDIR%\syswow64\yqefjp.exe'
  • '%WINDIR%\syswow64\dhsyey.exe'
  • '%WINDIR%\syswow64\dhsyey.exe' 416 "%WINDIR%\SysWOW64\gklydr.EXE"
  • '%WINDIR%\syswow64\yolgsz.exe'
  • '%WINDIR%\syswow64\gklydr.exe'
  • '%WINDIR%\syswow64\gdvsmj.exe'
  • '%WINDIR%\syswow64\gdvsmj.exe' 416 "%WINDIR%\SysWOW64\mqjyec.EXE"
  • '%WINDIR%\syswow64\mqjyec.exe'
  • '%WINDIR%\syswow64\mqjyec.exe' 416 "%WINDIR%\SysWOW64\sneiej.EXE"
  • '%WINDIR%\syswow64\sneiej.exe'
  • '%WINDIR%\syswow64\yqefjp.exe' 416 "%WINDIR%\SysWOW64\gmpuif.EXE"
  • '%WINDIR%\syswow64\sneiej.exe' 416 "%WINDIR%\SysWOW64\vmtvig.EXE"
  • '%WINDIR%\syswow64\gklydr.exe' 416 "%WINDIR%\SysWOW64\gdvsmj.EXE"
  • '%WINDIR%\syswow64\ywnvpz.exe' 416 "%WINDIR%\SysWOW64\jvcqlo.EXE"
  • '%WINDIR%\syswow64\jvcqlo.exe'
  • '%WINDIR%\syswow64\jvcqlo.exe' 416 "%WINDIR%\SysWOW64\rsgfje.EXE"
  • '%WINDIR%\syswow64\rsgfje.exe' 416 "%WINDIR%\SysWOW64\uuhfqf.EXE"
  • '%WINDIR%\syswow64\uuhfqf.exe'
  • '%WINDIR%\syswow64\uuhfqf.exe' 416 "%WINDIR%\SysWOW64\yqefjp.EXE"
  • '%WINDIR%\syswow64\vmtvig.exe'
  • '%WINDIR%\syswow64\yzvjbr.exe' 416 "%WINDIR%\SysWOW64\zhmrhw.EXE"
  • '%WINDIR%\syswow64\zhmrhw.exe'
  • '%WINDIR%\syswow64\zhmrhw.exe' 416 "%WINDIR%\SysWOW64\cocddt.EXE"
  • '%WINDIR%\syswow64\oiephb.exe'
  • '%WINDIR%\syswow64\oiephb.exe' 416 "%WINDIR%\SysWOW64\ujomed.EXE"
  • '%WINDIR%\syswow64\ujomed.exe'
  • '%WINDIR%\syswow64\ujomed.exe' 416 "%WINDIR%\SysWOW64\xiehas.EXE"
  • '%WINDIR%\syswow64\xiehas.exe'
  • '%WINDIR%\syswow64\xiehas.exe' 416 "%WINDIR%\SysWOW64\gqtxbz.EXE"
  • '%WINDIR%\syswow64\gqtxbz.exe'
  • '%WINDIR%\syswow64\gqtxbz.exe' 416 "%WINDIR%\SysWOW64\gngefv.EXE"
  • '%WINDIR%\syswow64\gngefv.exe'
  • '%WINDIR%\syswow64\lflpaa.exe' 416 "%WINDIR%\SysWOW64\oiephb.EXE"
  • '%WINDIR%\syswow64\rsgfje.exe'
  • '%WINDIR%\syswow64\gngefv.exe' 416 "%WINDIR%\SysWOW64\jlwrjk.EXE"
  • '%WINDIR%\syswow64\uarmfc.exe'
  • '%WINDIR%\syswow64\jlwrjk.exe'
  • '%WINDIR%\syswow64\uarmfc.exe' 416 "%WINDIR%\SysWOW64\xcsmed.EXE"
  • '%WINDIR%\syswow64\xcsmed.exe'
  • '%WINDIR%\syswow64\xcsmed.exe' 416 "%WINDIR%\SysWOW64\injuyq.EXE"
  • '%WINDIR%\syswow64\injuyq.exe'
  • '%WINDIR%\syswow64\injuyq.exe' 416 "%WINDIR%\SysWOW64\lxctfr.EXE"
  • '%WINDIR%\syswow64\lxctfr.exe'
  • '%WINDIR%\syswow64\lxctfr.exe' 416 "%WINDIR%\SysWOW64\rnamzp.EXE"
  • '%WINDIR%\syswow64\lflpaa.exe'
  • '%WINDIR%\syswow64\jlwrjk.exe' 416 "%WINDIR%\SysWOW64\uarmfc.EXE"
  • '%WINDIR%\syswow64\igdcel.exe' 416 "%WINDIR%\SysWOW64\lflpaa.EXE"
  • '%WINDIR%\syswow64\igdcel.exe'
  • '%WINDIR%\syswow64\cocddt.exe'
  • '%WINDIR%\syswow64\cocddt.exe' 416 "%WINDIR%\SysWOW64\kzdoyf.EXE"
  • '%WINDIR%\syswow64\kzdoyf.exe'
  • '%WINDIR%\syswow64\kzdoyf.exe' 416 "%WINDIR%\SysWOW64\qbmldh.EXE"
  • '%WINDIR%\syswow64\qbmldh.exe'
  • '%WINDIR%\syswow64\qbmldh.exe' 416 "%WINDIR%\SysWOW64\qmpgmr.EXE"
  • '%WINDIR%\syswow64\qmpgmr.exe'
  • '%WINDIR%\syswow64\vmtvig.exe' 416 "%WINDIR%\SysWOW64\ywnvpz.EXE"
  • '%WINDIR%\syswow64\qypijc.exe' 416 "%WINDIR%\SysWOW64\qjzdkl.EXE"
  • '%WINDIR%\syswow64\qjzdkl.exe'
  • '%WINDIR%\syswow64\qjzdkl.exe' 416 "%WINDIR%\SysWOW64\tihqoi.EXE"
  • '%WINDIR%\syswow64\uciruj.exe'
  • '%WINDIR%\syswow64\tihqoi.exe'
  • '%WINDIR%\syswow64\tihqoi.exe' 416 "%WINDIR%\SysWOW64\wsaqnb.EXE"
  • '%WINDIR%\syswow64\wsaqnb.exe'
  • '%WINDIR%\syswow64\wsaqnb.exe' 416 "%WINDIR%\SysWOW64\wazxto.EXE"
  • '%WINDIR%\syswow64\lglwze.exe'
  • '%WINDIR%\syswow64\wazxto.exe'
  • '%WINDIR%\syswow64\cxuptv.exe'
  • '%WINDIR%\syswow64\cxuptv.exe' 416 "%WINDIR%\SysWOW64\feccxk.EXE"
  • '%WINDIR%\syswow64\feccxk.exe' 416 "%WINDIR%\SysWOW64\igdcel.EXE"
  • '%WINDIR%\syswow64\zmnqdg.exe' 416 "%WINDIR%\SysWOW64\dhsyey.EXE"
  • '%WINDIR%\syswow64\zmnqdg.exe'
  • '%WINDIR%\syswow64\xgjlti.exe' 416 "%WINDIR%\SysWOW64\zmnqdg.EXE"
  • '%WINDIR%\syswow64\xgjlti.exe'
  • '%WINDIR%\syswow64\wazxto.exe' 416 "%WINDIR%\SysWOW64\cxuptv.EXE"
  • '%WINDIR%\syswow64\lglwze.exe' 416 "%WINDIR%\SysWOW64\qautwh.EXE"
  • '%WINDIR%\syswow64\feccxk.exe'
  • '%WINDIR%\syswow64\qautwh.exe'
  • '%WINDIR%\syswow64\klkoft.exe'
  • '%WINDIR%\syswow64\wceybr.exe' 416 "%WINDIR%\SysWOW64\cwoeyu.EXE"
  • '%WINDIR%\syswow64\cwoeyu.exe'
  • '%WINDIR%\syswow64\cwoeyu.exe' 416 "%WINDIR%\SysWOW64\fgpefn.EXE"
  • '%WINDIR%\syswow64\hhdbcq.exe'
  • '%WINDIR%\syswow64\wceybr.exe'
  • '%WINDIR%\syswow64\fgpefn.exe'
  • '%WINDIR%\syswow64\qautwh.exe' 416 "%WINDIR%\SysWOW64\wceybr.EXE"
  • '%WINDIR%\syswow64\twkqaf.exe' 416 "%WINDIR%\SysWOW64\yyuvyi.EXE"
  • '%WINDIR%\syswow64\klkoft.exe' 416 "%WINDIR%\SysWOW64\twkqaf.EXE"
  • '%WINDIR%\syswow64\twkqaf.exe'
  • '%WINDIR%\syswow64\yyuvyi.exe'
  • '%WINDIR%\syswow64\yyuvyi.exe' 416 "%WINDIR%\SysWOW64\hgjtqp.EXE"
  • '%WINDIR%\syswow64\hgjtqp.exe'
  • '%WINDIR%\syswow64\hgjtqp.exe' 416 "%WINDIR%\SysWOW64\hdxacd.EXE"
  • '%WINDIR%\syswow64\hdxacd.exe'
  • '%WINDIR%\syswow64\fgpefn.exe' 416 "%WINDIR%\SysWOW64\klkoft.EXE"
  • '%WINDIR%\syswow64\hhdbcq.exe' 416 "%WINDIR%\SysWOW64\lglwze.EXE"
  • '%WINDIR%\syswow64\ffsbys.exe' 416 "%WINDIR%\SysWOW64\iplbxl.EXE"
  • '%WINDIR%\syswow64\uciruj.exe' 416 "%WINDIR%\SysWOW64\hhdbcq.EXE"
  • '%WINDIR%\syswow64\opnmdp.exe' 416 "%WINDIR%\SysWOW64\uciruj.EXE"
  • '%WINDIR%\syswow64\rcnkpw.exe'
  • '%WINDIR%\syswow64\caefkp.exe' 416 "%WINDIR%\SysWOW64\fcffri.EXE"
  • '%WINDIR%\syswow64\fcffri.exe'
  • '%WINDIR%\syswow64\fcffri.exe' 416 "%WINDIR%\SysWOW64\ktexmg.EXE"
  • '%WINDIR%\syswow64\ktexmg.exe'
  • '%WINDIR%\syswow64\ktexmg.exe' 416 "%WINDIR%\SysWOW64\ngicvm.EXE"
  • '%WINDIR%\syswow64\ngicvm.exe'
  • '%WINDIR%\syswow64\ivdhgn.exe' 416 "%WINDIR%\SysWOW64\opnmdp.EXE"
  • '%WINDIR%\syswow64\rcnkpw.exe' 416 "%WINDIR%\SysWOW64\tirpyu.EXE"
  • '%WINDIR%\syswow64\tirpyu.exe'
  • '%WINDIR%\syswow64\tirpyu.exe' 416 "%WINDIR%\SysWOW64\zgqhta.EXE"
  • '%WINDIR%\syswow64\zgqhta.exe'
  • '%WINDIR%\syswow64\zgqhta.exe' 416 "%WINDIR%\SysWOW64\cffcpo.EXE"
  • '%WINDIR%\syswow64\cffcpo.exe'
  • '%WINDIR%\syswow64\cffcpo.exe' 416 "%WINDIR%\SysWOW64\flkhzm.EXE"
  • '%WINDIR%\syswow64\flkhzm.exe'
  • '%WINDIR%\syswow64\flkhzm.exe' 416 "%WINDIR%\SysWOW64\ivdhgn.EXE"
  • '%WINDIR%\syswow64\opnmdp.exe'
  • '%WINDIR%\syswow64\hdxacd.exe' 416 "%WINDIR%\SysWOW64\poxdxp.EXE"
  • '%WINDIR%\syswow64\ffsbys.exe'
  • '%WINDIR%\syswow64\caefkp.exe'
  • '%WINDIR%\syswow64\rnamzp.exe'
  • '%WINDIR%\syswow64\poxdxp.exe'
  • '%WINDIR%\syswow64\ydvaqw.exe'
  • '%WINDIR%\syswow64\pkqmfg.exe'
  • '%WINDIR%\syswow64\pkqmfg.exe' 416 "%WINDIR%\SysWOW64\sujmmh.EXE"
  • '%WINDIR%\syswow64\sujmmh.exe'
  • '%WINDIR%\syswow64\sujmmh.exe' 416 "%WINDIR%\SysWOW64\vtrhiw.EXE"
  • '%WINDIR%\syswow64\vtrhiw.exe'
  • '%WINDIR%\syswow64\vtrhiw.exe' 416 "%WINDIR%\SysWOW64\webbrn.EXE"
  • '%WINDIR%\syswow64\webbrn.exe'
  • '%WINDIR%\syswow64\webbrn.exe' 416 "%WINDIR%\SysWOW64\crwgjh.EXE"
  • '%WINDIR%\syswow64\crwgjh.exe'
  • '%WINDIR%\syswow64\mipugn.exe' 416 "%WINDIR%\SysWOW64\pkqmfg.EXE"
  • '%WINDIR%\syswow64\crwgjh.exe' 416 "%WINDIR%\SysWOW64\cczbrz.EXE"
  • '%WINDIR%\syswow64\cczbrz.exe' 416 "%WINDIR%\SysWOW64\ffsbys.EXE"
  • '%WINDIR%\syswow64\qmpgmr.exe' 416 "%WINDIR%\SysWOW64\qypijc.EXE"
  • '%WINDIR%\syswow64\ivdhgn.exe'
  • '%WINDIR%\syswow64\sfijgx.exe'
  • '%WINDIR%\syswow64\ngicvm.exe' 416 "%WINDIR%\SysWOW64\rcnkpw.EXE"
  • '%WINDIR%\syswow64\dpriit.exe' 416 "%WINDIR%\SysWOW64\skayon.EXE"
  • '%WINDIR%\syswow64\ydvaqw.exe' 416 "%WINDIR%\SysWOW64\jspvmo.EXE"
  • '%WINDIR%\syswow64\ojvydv.exe' 416 "%WINDIR%\SysWOW64\wysvvv.EXE"
  • '%WINDIR%\syswow64\wysvvv.exe'
  • '%WINDIR%\syswow64\wysvvv.exe' 416 "%WINDIR%\SysWOW64\xgjlti.EXE"
  • '%WINDIR%\syswow64\cczbrz.exe'
  • '%WINDIR%\syswow64\mipugn.exe'
  • '%WINDIR%\syswow64\eoojlb.exe' 416 "%WINDIR%\SysWOW64\mipugn.EXE"
  • '%WINDIR%\syswow64\wkycyh.exe' 416 "%WINDIR%\SysWOW64\zmzcfa.EXE"
  • '%WINDIR%\syswow64\eoojlb.exe'
  • '%WINDIR%\syswow64\wkycyh.exe'
  • '%WINDIR%\syswow64\jspvmo.exe' 416 "%WINDIR%\SysWOW64\rsmxni.EXE"
  • '%WINDIR%\syswow64\rsmxni.exe'
  • '%WINDIR%\syswow64\rsmxni.exe' 416 "%WINDIR%\SysWOW64\almaiu.EXE"
  • '%WINDIR%\syswow64\almaiu.exe'
  • '%WINDIR%\syswow64\almaiu.exe' 416 "%WINDIR%\SysWOW64\lzhvfm.EXE"
  • '%WINDIR%\syswow64\lzhvfm.exe'
  • '%WINDIR%\syswow64\jspvmo.exe'
  • '%WINDIR%\syswow64\lzhvfm.exe' 416 "%WINDIR%\SysWOW64\wkycyh.EXE"
  • '%WINDIR%\syswow64\zmzcfa.exe'
  • '%WINDIR%\syswow64\ivxnrj.exe'
  • '%WINDIR%\syswow64\evxzil.exe'
  • '%WINDIR%\syswow64\evxzil.exe' 416 "%WINDIR%\SysWOW64\klerdj.EXE"
  • '%WINDIR%\syswow64\klerdj.exe'
  • '%WINDIR%\syswow64\klerdj.exe' 416 "%WINDIR%\SysWOW64\ynoxil.EXE"
  • '%WINDIR%\syswow64\ynoxil.exe'
  • '%WINDIR%\syswow64\ynoxil.exe' 416 "%WINDIR%\SysWOW64\bphxhm.EXE"
  • '%WINDIR%\syswow64\bphxhm.exe'
  • '%WINDIR%\syswow64\zmzcfa.exe' 416 "%WINDIR%\SysWOW64\evxzil.EXE"
  • '%WINDIR%\syswow64\bphxhm.exe' 416 "%WINDIR%\SysWOW64\eoojlb.EXE"
  • '%WINDIR%\syswow64\rnamzp.exe' 416 "%WINDIR%\SysWOW64\umqzve.EXE"
  • '%WINDIR%\syswow64\qypijc.exe'
  • '%WINDIR%\syswow64\keszca.exe' 416 "%WINDIR%\SysWOW64\aueywu.EXE"
  • '%WINDIR%\syswow64\ldkaur.exe' 416 "%WINDIR%\SysWOW64\lzoxma.EXE"
  • '%WINDIR%\syswow64\lzoxma.exe'
  • '%WINDIR%\syswow64\qmznjr.exe' 416 "%WINDIR%\SysWOW64\beqcjr.EXE"
  • '%WINDIR%\syswow64\lzoxma.exe' 416 "%WINDIR%\SysWOW64\ivxnrj.EXE"
  • '%WINDIR%\syswow64\poxdxp.exe' 416 "%WINDIR%\SysWOW64\ydvaqw.EXE"
  • '%WINDIR%\syswow64\qmznjr.exe'
  • '%WINDIR%\syswow64\hiwifn.exe' 416 "%WINDIR%\SysWOW64\qmznjr.EXE"
  • '%WINDIR%\syswow64\beqcjr.exe'
  • '%WINDIR%\syswow64\hiwifn.exe'
  • '%WINDIR%\syswow64\xlwxgr.exe'
  • '%WINDIR%\syswow64\wjssae.exe' 416 "%WINDIR%\SysWOW64\hiwifn.EXE"
  • '%WINDIR%\syswow64\xlwxgr.exe' 416 "%WINDIR%\SysWOW64\yauusk.EXE"
  • '%WINDIR%\syswow64\yauusk.exe'
  • '%WINDIR%\syswow64\yauusk.exe' 416 "%WINDIR%\SysWOW64\jzzkpb.EXE"
  • '%WINDIR%\syswow64\ldkaur.exe'
  • '%WINDIR%\syswow64\tepuep.exe' 416 "%WINDIR%\SysWOW64\xlwxgr.EXE"
  • '%WINDIR%\syswow64\dqvexy.exe' 416 "%WINDIR%\SysWOW64\sdfuxm.EXE"
  • '%WINDIR%\syswow64\beqcjr.exe' 416 "%WINDIR%\SysWOW64\sxfpfp.EXE"
  • '%WINDIR%\syswow64\sdfuxm.exe' 416 "%WINDIR%\SysWOW64\trxjvy.EXE"
  • '%WINDIR%\syswow64\morzeh.exe'
  • '%WINDIR%\syswow64\morzeh.exe' 416 "%WINDIR%\SysWOW64\indjul.EXE"
  • '%WINDIR%\syswow64\indjul.exe'
  • '%WINDIR%\syswow64\sdfuxm.exe'
  • '%WINDIR%\syswow64\iplbxl.exe' 416 "%WINDIR%\SysWOW64\ojvydv.EXE"
  • '%WINDIR%\syswow64\xiztcl.exe' 416 "%WINDIR%\SysWOW64\ldkaur.EXE"
  • '%WINDIR%\syswow64\tepuep.exe'
  • '%WINDIR%\syswow64\ivxnrj.exe' 416 "%WINDIR%\SysWOW64\tepuep.EXE"
  • '%WINDIR%\syswow64\indjul.exe' 416 "%WINDIR%\SysWOW64\bitoxl.EXE"
  • '%WINDIR%\syswow64\xiztcl.exe'
  • '%WINDIR%\syswow64\gpxehd.exe'
  • '%WINDIR%\syswow64\sxfpfp.exe' 416 "%WINDIR%\SysWOW64\dqvexy.EXE"
  • '%WINDIR%\syswow64\fpaizn.exe' 416 "%WINDIR%\SysWOW64\otlodq.EXE"
  • '%WINDIR%\syswow64\otlodq.exe'
  • '%WINDIR%\syswow64\sxfpfp.exe'
  • '%WINDIR%\syswow64\otlodq.exe' 416 "%WINDIR%\SysWOW64\xiztcl.EXE"
  • '%WINDIR%\syswow64\wjssae.exe'
  • '%WINDIR%\syswow64\bitoxl.exe'
  • '%WINDIR%\syswow64\dkgcad.exe' 416 "%WINDIR%\SysWOW64\morzeh.EXE"
  • '%WINDIR%\syswow64\jzzkpb.exe'
  • '%WINDIR%\syswow64\jzzkpb.exe' 416 "%WINDIR%\SysWOW64\mjjrci.EXE"
  • '%WINDIR%\syswow64\dqllyy.exe' 416 "%WINDIR%\SysWOW64\fudvnf.EXE"
  • '%WINDIR%\syswow64\fudvnf.exe'
  • '%WINDIR%\syswow64\gnztgw.exe'
  • '%WINDIR%\syswow64\fudvnf.exe' 416 "%WINDIR%\SysWOW64\mveadf.EXE"
  • '%WINDIR%\syswow64\dqvexy.exe'
  • '%WINDIR%\syswow64\mveadf.exe'
  • '%WINDIR%\syswow64\xmabnx.exe' 416 "%WINDIR%\SysWOW64\gnztgw.EXE"
  • '%WINDIR%\syswow64\bitoxl.exe' 416 "%WINDIR%\SysWOW64\fpaizn.EXE"
  • '%WINDIR%\syswow64\gnztgw.exe' 416 "%WINDIR%\SysWOW64\sfijgx.EXE"
  • '%WINDIR%\syswow64\vwesew.exe'
  • '%WINDIR%\syswow64\vwesew.exe' 416 "%WINDIR%\SysWOW64\bxffim.EXE"
  • '%WINDIR%\syswow64\bxffim.exe'
  • '%WINDIR%\syswow64\ouajlg.exe' 416 "%WINDIR%\SysWOW64\xmabnx.EXE"
  • '%WINDIR%\syswow64\bxffim.exe' 416 "%WINDIR%\SysWOW64\xpyugm.EXE"
  • '%WINDIR%\syswow64\xpyugm.exe'
  • '%WINDIR%\syswow64\ouajlg.exe'
  • '%WINDIR%\syswow64\xpyugm.exe' 416 "%WINDIR%\SysWOW64\gpxehd.EXE"
  • '%WINDIR%\syswow64\xmabnx.exe'
  • '%WINDIR%\syswow64\dqllyy.exe'
  • '%WINDIR%\syswow64\srgotp.exe' 416 "%WINDIR%\SysWOW64\dqllyy.EXE"
  • '%WINDIR%\syswow64\mjjrci.exe'
  • '%WINDIR%\syswow64\knyqgz.exe'
  • '%WINDIR%\syswow64\mjjrci.exe' 416 "%WINDIR%\SysWOW64\yfkuxm.EXE"
  • '%WINDIR%\syswow64\yfkuxm.exe'
  • '%WINDIR%\syswow64\rjhyra.exe' 416 "%WINDIR%\SysWOW64\knyqgz.EXE"
  • '%WINDIR%\syswow64\yfkuxm.exe' 416 "%WINDIR%\SysWOW64\keszca.EXE"
  • '%WINDIR%\syswow64\rjhyra.exe'
  • '%WINDIR%\syswow64\umqzve.exe'
  • '%WINDIR%\syswow64\xcqxpd.exe'
  • '%WINDIR%\syswow64\ibloks.exe' 416 "%WINDIR%\SysWOW64\rjhyra.EXE"
  • '%WINDIR%\syswow64\mveadf.exe' 416 "%WINDIR%\SysWOW64\vwesew.EXE"
  • '%WINDIR%\syswow64\aueywu.exe'
  • '%WINDIR%\syswow64\aueywu.exe' 416 "%WINDIR%\SysWOW64\gzqyco.EXE"
  • '%WINDIR%\syswow64\gzqyco.exe'
  • '%WINDIR%\syswow64\ibloks.exe'
  • '%WINDIR%\syswow64\gzqyco.exe' 416 "%WINDIR%\SysWOW64\srgotp.EXE"
  • '%WINDIR%\syswow64\sfijgx.exe' 416 "%WINDIR%\SysWOW64\ibloks.EXE"
  • '%WINDIR%\syswow64\srgotp.exe'
  • '%WINDIR%\syswow64\knyqgz.exe' 416 "%WINDIR%\SysWOW64\wjssae.EXE"
  • '%WINDIR%\syswow64\trxjvy.exe'
  • '%WINDIR%\syswow64\fpaizn.exe'
  • '%WINDIR%\syswow64\pmjuzs.exe' 416 "%WINDIR%\SysWOW64\dkgcad.EXE"
  • '%WINDIR%\syswow64\zfxqwi.exe' 416 "%WINDIR%\SysWOW64\dpriit.EXE"
  • '%WINDIR%\syswow64\dilqpj.exe'
  • '%WINDIR%\syswow64\xcqxpd.exe' 416 "%WINDIR%\SysWOW64\dilqpj.EXE"
  • '%WINDIR%\syswow64\dpriit.exe'
  • '%WINDIR%\syswow64\sagasa.exe' 416 "%WINDIR%\SysWOW64\xcqxpd.EXE"
  • '%WINDIR%\syswow64\sagasa.exe'
  • '%WINDIR%\syswow64\keszca.exe'
  • '%WINDIR%\syswow64\skayon.exe'
  • '%WINDIR%\syswow64\mjvgbo.exe' 416 "%WINDIR%\SysWOW64\vrkvtw.EXE"
  • '%WINDIR%\syswow64\gyplzf.exe' 416 "%WINDIR%\SysWOW64\sagasa.EXE"
  • '%WINDIR%\syswow64\dkgcad.exe'
  • '%WINDIR%\syswow64\gyplzf.exe'
  • '%WINDIR%\syswow64\btuazy.exe' 416 "%WINDIR%\SysWOW64\gyplzf.EXE"
  • '%WINDIR%\syswow64\btuazy.exe'
  • '%WINDIR%\syswow64\vrkvtw.exe'
  • '%WINDIR%\syswow64\mjvgbo.exe'
  • '%WINDIR%\syswow64\vbhwbq.exe'
  • '%WINDIR%\syswow64\khcgcv.exe' 416 "%WINDIR%\SysWOW64\mjvgbo.EXE"
  • '%WINDIR%\syswow64\khcgcv.exe'
  • '%WINDIR%\syswow64\efkbxt.exe' 416 "%WINDIR%\SysWOW64\khcgcv.EXE"
  • '%WINDIR%\syswow64\efkbxt.exe'
  • '%WINDIR%\syswow64\brgovw.exe' 416 "%WINDIR%\SysWOW64\efkbxt.EXE"
  • '%WINDIR%\syswow64\ojvydv.exe'
  • '%WINDIR%\syswow64\brgovw.exe'
  • '%WINDIR%\syswow64\vbhwbq.exe' 416 "%WINDIR%\SysWOW64\brgovw.EXE"
  • '%WINDIR%\syswow64\kmfbey.exe' 416 "%WINDIR%\SysWOW64\vbhwbq.EXE"
  • '%WINDIR%\syswow64\kmfbey.exe'
  • '%WINDIR%\syswow64\vrkvtw.exe' 416 "%WINDIR%\SysWOW64\btuazy.EXE"
  • '%WINDIR%\syswow64\umqzve.exe' 416 "%WINDIR%\SysWOW64\kmfbey.EXE"
  • '%WINDIR%\syswow64\dilqpj.exe' 416 "%WINDIR%\SysWOW64\tiyaly.EXE"
  • '%WINDIR%\syswow64\tiyaly.exe'
  • '%WINDIR%\syswow64\gpxehd.exe' 416 "%WINDIR%\SysWOW64\ouajlg.EXE"
  • '%WINDIR%\syswow64\yqimec.exe'
  • '%WINDIR%\syswow64\rcufwd.exe'
  • '%WINDIR%\syswow64\jhjjos.exe' 416 "%WINDIR%\SysWOW64\yqimec.EXE"
  • '%WINDIR%\syswow64\jhjjos.exe'
  • '%WINDIR%\syswow64\tiyaly.exe' 416 "%WINDIR%\SysWOW64\rcufwd.EXE"
  • '%WINDIR%\syswow64\yddszt.exe'
  • '%WINDIR%\syswow64\zfxqwi.exe'
  • '%WINDIR%\syswow64\jzxcty.exe' 416 "%WINDIR%\SysWOW64\pmjuzs.EXE"
  • '%WINDIR%\syswow64\rcufwd.exe' 416 "%WINDIR%\SysWOW64\yddszt.EXE"
  • '%WINDIR%\syswow64\trxjvy.exe' 416 "%WINDIR%\SysWOW64\jhjjos.EXE"
  • '%WINDIR%\syswow64\yqimec.exe' 416 "%WINDIR%\SysWOW64\zfxqwi.EXE"
  • '%WINDIR%\syswow64\yddszt.exe' 416 "%WINDIR%\SysWOW64\jzxcty.EXE"
  • '%WINDIR%\syswow64\jzxcty.exe'
  • '%WINDIR%\syswow64\pmjuzs.exe'
  • '%WINDIR%\syswow64\jspvmo.exe' 416 "%WINDIR%\SysWOW64\rsmxni.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\zgqhta.exe' 416 "%WINDIR%\SysWOW64\cffcpo.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sfijgx.exe' 416 "%WINDIR%\SysWOW64\ibloks.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qautwh.exe' 416 "%WINDIR%\SysWOW64\wceybr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\bxhjtr.exe' 416 "%WINDIR%\SysWOW64\daajsk.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\daajsk.exe' 416 "%WINDIR%\SysWOW64\onfvcp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\swirsz.exe' 416 "%WINDIR%\SysWOW64\ukmdux.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ydvaqw.exe' 416 "%WINDIR%\SysWOW64\jspvmo.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ktexmg.exe' 416 "%WINDIR%\SysWOW64\ngicvm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wkycyh.exe' 416 "%WINDIR%\SysWOW64\zmzcfa.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ukmdux.exe' 416 "%WINDIR%\SysWOW64\bxhjtr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rsmxni.exe' 416 "%WINDIR%\SysWOW64\almaiu.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jafuow.exe' 416 "%WINDIR%\SysWOW64\oyaeod.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\igorkp.exe' 416 "%WINDIR%\SysWOW64\lihrri.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lihrri.exe' 416 "%WINDIR%\SysWOW64\rzojlg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ouajlg.exe' 416 "%WINDIR%\SysWOW64\xmabnx.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\flkhzm.exe' 416 "%WINDIR%\SysWOW64\ivdhgn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\trxjvy.exe' 416 "%WINDIR%\SysWOW64\jhjjos.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\abjhfw.exe' 416 "%WINDIR%\SysWOW64\lpmcco.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\onfvcp.exe' 416 "%WINDIR%\SysWOW64\uaabtj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lzhvfm.exe' 416 "%WINDIR%\SysWOW64\wkycyh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ivdhgn.exe' 416 "%WINDIR%\SysWOW64\opnmdp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rzojlg.exe' 416 "%WINDIR%\SysWOW64\ujhjsz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xmabnx.exe' 416 "%WINDIR%\SysWOW64\gnztgw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\poxdxp.exe' 416 "%WINDIR%\SysWOW64\ydvaqw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xmajra.exe' 416 "%WINDIR%\SysWOW64\dnkowc.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dnkowc.exe' 416 "%WINDIR%\SysWOW64\jafuow.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sdfuxm.exe' 416 "%WINDIR%\SysWOW64\trxjvy.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\cffcpo.exe' 416 "%WINDIR%\SysWOW64\flkhzm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\uaabtj.exe' 416 "%WINDIR%\SysWOW64\agvltp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\tfzaff.exe' 416 "%WINDIR%\SysWOW64\wisamg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ibloks.exe' 416 "%WINDIR%\SysWOW64\rjhyra.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sxfpfp.exe' 416 "%WINDIR%\SysWOW64\dqvexy.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hhdbcq.exe' 416 "%WINDIR%\SysWOW64\lglwze.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\fgpefn.exe' 416 "%WINDIR%\SysWOW64\klkoft.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\fcffri.exe' 416 "%WINDIR%\SysWOW64\ktexmg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yqimec.exe' 416 "%WINDIR%\SysWOW64\zfxqwi.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hiwifn.exe' 416 "%WINDIR%\SysWOW64\qmznjr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\cwoeyu.exe' 416 "%WINDIR%\SysWOW64\fgpefn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dpriit.exe' 416 "%WINDIR%\SysWOW64\skayon.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rcnkpw.exe' 416 "%WINDIR%\SysWOW64\tirpyu.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ujhjsz.exe' 416 "%WINDIR%\SysWOW64\xmajra.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\oyaeod.exe' 416 "%WINDIR%\SysWOW64\swirsz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hovgeg.exe' 416 "%WINDIR%\SysWOW64\qdkexn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\opnmdp.exe' 416 "%WINDIR%\SysWOW64\uciruj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qmznjr.exe' 416 "%WINDIR%\SysWOW64\beqcjr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\beqcjr.exe' 416 "%WINDIR%\SysWOW64\sxfpfp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wjssae.exe' 416 "%WINDIR%\SysWOW64\hiwifn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\klkoft.exe' 416 "%WINDIR%\SysWOW64\twkqaf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\caefkp.exe' 416 "%WINDIR%\SysWOW64\fcffri.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\tirpyu.exe' 416 "%WINDIR%\SysWOW64\zgqhta.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hdxacd.exe' 416 "%WINDIR%\SysWOW64\poxdxp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\agvltp.exe' 416 "%WINDIR%\SysWOW64\tfzaff.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ngicvm.exe' 416 "%WINDIR%\SysWOW64\rcnkpw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wceybr.exe' 416 "%WINDIR%\SysWOW64\cwoeyu.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dqvexy.exe' 416 "%WINDIR%\SysWOW64\sdfuxm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wisamg.exe' 416 "%WINDIR%\SysWOW64\hzfilc.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hzfilc.exe' 416 "%WINDIR%\SysWOW64\mbpnjf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rjhyra.exe' 416 "%WINDIR%\SysWOW64\knyqgz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mbpnjf.exe' 416 "%WINDIR%\SysWOW64\adpaaj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yyuvyi.exe' 416 "%WINDIR%\SysWOW64\hgjtqp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\adpaaj.exe' 416 "%WINDIR%\SysWOW64\wbgnqr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\knyqgz.exe' 416 "%WINDIR%\SysWOW64\wjssae.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\almaiu.exe' 416 "%WINDIR%\SysWOW64\lzhvfm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wbgnqr.exe' 416 "%WINDIR%\SysWOW64\caefkp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\zfxqwi.exe' 416 "%WINDIR%\SysWOW64\dpriit.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\twkqaf.exe' 416 "%WINDIR%\SysWOW64\yyuvyi.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\uciruj.exe' 416 "%WINDIR%\SysWOW64\hhdbcq.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jhjjos.exe' 416 "%WINDIR%\SysWOW64\yqimec.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\umqzve.exe' 416 "%WINDIR%\SysWOW64\kmfbey.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\zmzcfa.exe' 416 "%WINDIR%\SysWOW64\evxzil.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dilqpj.exe' 416 "%WINDIR%\SysWOW64\tiyaly.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qjzdkl.exe' 416 "%WINDIR%\SysWOW64\tihqoi.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qypijc.exe' 416 "%WINDIR%\SysWOW64\qjzdkl.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\deeume.exe' 416 "%WINDIR%\SysWOW64\igorkp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\tiyaly.exe' 416 "%WINDIR%\SysWOW64\rcufwd.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qmpgmr.exe' 416 "%WINDIR%\SysWOW64\qypijc.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qbmldh.exe' 416 "%WINDIR%\SysWOW64\qmpgmr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lglwze.exe' 416 "%WINDIR%\SysWOW64\qautwh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rcufwd.exe' 416 "%WINDIR%\SysWOW64\yddszt.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yddszt.exe' 416 "%WINDIR%\SysWOW64\jzxcty.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\cocddt.exe' 416 "%WINDIR%\SysWOW64\kzdoyf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\tihqoi.exe' 416 "%WINDIR%\SysWOW64\wsaqnb.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\zhmrhw.exe' 416 "%WINDIR%\SysWOW64\cocddt.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yzvjbr.exe' 416 "%WINDIR%\SysWOW64\zhmrhw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\pmjuzs.exe' 416 "%WINDIR%\SysWOW64\dkgcad.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yolgsz.exe' 416 "%WINDIR%\SysWOW64\yzvjbr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qdkexn.exe' 416 "%WINDIR%\SysWOW64\yolgsz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\skayon.exe' 416 "<Full path to file>"' (with hidden window)
  • '%WINDIR%\syswow64\kzdoyf.exe' 416 "%WINDIR%\SysWOW64\qbmldh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dkgcad.exe' 416 "%WINDIR%\SysWOW64\morzeh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lpmcco.exe' 416 "%WINDIR%\SysWOW64\qjvhzq.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\morzeh.exe' 416 "%WINDIR%\SysWOW64\indjul.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\crwgjh.exe' 416 "%WINDIR%\SysWOW64\cczbrz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\woqrhx.exe' 416 "%WINDIR%\SysWOW64\ciawez.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\qjvhzq.exe' 416 "%WINDIR%\SysWOW64\woqrhx.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jzxcty.exe' 416 "%WINDIR%\SysWOW64\pmjuzs.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wsaqnb.exe' 416 "%WINDIR%\SysWOW64\wazxto.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wazxto.exe' 416 "%WINDIR%\SysWOW64\cxuptv.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rnamzp.exe' 416 "%WINDIR%\SysWOW64\umqzve.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lxctfr.exe' 416 "%WINDIR%\SysWOW64\rnamzp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\kmfbey.exe' 416 "%WINDIR%\SysWOW64\vbhwbq.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\injuyq.exe' 416 "%WINDIR%\SysWOW64\lxctfr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\vbhwbq.exe' 416 "%WINDIR%\SysWOW64\brgovw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xcsmed.exe' 416 "%WINDIR%\SysWOW64\injuyq.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\uarmfc.exe' 416 "%WINDIR%\SysWOW64\xcsmed.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\brgovw.exe' 416 "%WINDIR%\SysWOW64\efkbxt.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jlwrjk.exe' 416 "%WINDIR%\SysWOW64\uarmfc.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\efkbxt.exe' 416 "%WINDIR%\SysWOW64\khcgcv.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gngefv.exe' 416 "%WINDIR%\SysWOW64\jlwrjk.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gqtxbz.exe' 416 "%WINDIR%\SysWOW64\gngefv.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xiehas.exe' 416 "%WINDIR%\SysWOW64\gqtxbz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\indjul.exe' 416 "%WINDIR%\SysWOW64\bitoxl.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\khcgcv.exe' 416 "%WINDIR%\SysWOW64\mjvgbo.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xcqxpd.exe' 416 "%WINDIR%\SysWOW64\dilqpj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mjvgbo.exe' 416 "%WINDIR%\SysWOW64\vrkvtw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\hgjtqp.exe' 416 "%WINDIR%\SysWOW64\hdxacd.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\vrkvtw.exe' 416 "%WINDIR%\SysWOW64\btuazy.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gyplzf.exe' 416 "%WINDIR%\SysWOW64\sagasa.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\feccxk.exe' 416 "%WINDIR%\SysWOW64\igdcel.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lflpaa.exe' 416 "%WINDIR%\SysWOW64\oiephb.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\btuazy.exe' 416 "%WINDIR%\SysWOW64\gyplzf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\cxuptv.exe' 416 "%WINDIR%\SysWOW64\feccxk.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\oiephb.exe' 416 "%WINDIR%\SysWOW64\ujomed.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\igdcel.exe' 416 "%WINDIR%\SysWOW64\lflpaa.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\srgotp.exe' 416 "%WINDIR%\SysWOW64\dqllyy.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sagasa.exe' 416 "%WINDIR%\SysWOW64\xcqxpd.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gpxehd.exe' 416 "%WINDIR%\SysWOW64\ouajlg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\fpaizn.exe' 416 "%WINDIR%\SysWOW64\otlodq.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\keszca.exe' 416 "%WINDIR%\SysWOW64\aueywu.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gzqyco.exe' 416 "%WINDIR%\SysWOW64\srgotp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\cczbrz.exe' 416 "%WINDIR%\SysWOW64\ffsbys.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\aueywu.exe' 416 "%WINDIR%\SysWOW64\gzqyco.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ffsbys.exe' 416 "%WINDIR%\SysWOW64\iplbxl.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ujomed.exe' 416 "%WINDIR%\SysWOW64\xiehas.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\bitoxl.exe' 416 "%WINDIR%\SysWOW64\fpaizn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\iplbxl.exe' 416 "%WINDIR%\SysWOW64\ojvydv.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gnztgw.exe' 416 "%WINDIR%\SysWOW64\sfijgx.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gdvsmj.exe' 416 "%WINDIR%\SysWOW64\mqjyec.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ldkaur.exe' 416 "%WINDIR%\SysWOW64\lzoxma.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sujmmh.exe' 416 "%WINDIR%\SysWOW64\vtrhiw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\pkqmfg.exe' 416 "%WINDIR%\SysWOW64\sujmmh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mipugn.exe' 416 "%WINDIR%\SysWOW64\pkqmfg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mveadf.exe' 416 "%WINDIR%\SysWOW64\vwesew.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\eoojlb.exe' 416 "%WINDIR%\SysWOW64\mipugn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\vwesew.exe' 416 "%WINDIR%\SysWOW64\bxffim.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\bphxhm.exe' 416 "%WINDIR%\SysWOW64\eoojlb.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\webbrn.exe' 416 "%WINDIR%\SysWOW64\crwgjh.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ynoxil.exe' 416 "%WINDIR%\SysWOW64\bphxhm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\klerdj.exe' 416 "%WINDIR%\SysWOW64\ynoxil.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xpyugm.exe' 416 "%WINDIR%\SysWOW64\gpxehd.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\evxzil.exe' 416 "%WINDIR%\SysWOW64\klerdj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\fudvnf.exe' 416 "%WINDIR%\SysWOW64\mveadf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\wysvvv.exe' 416 "%WINDIR%\SysWOW64\xgjlti.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yfkuxm.exe' 416 "%WINDIR%\SysWOW64\keszca.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xgjlti.exe' 416 "%WINDIR%\SysWOW64\zmnqdg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\pfpmjx.exe' 416 "%WINDIR%\SysWOW64\abjhfw.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\otlodq.exe' 416 "%WINDIR%\SysWOW64\xiztcl.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\bxffim.exe' 416 "%WINDIR%\SysWOW64\xpyugm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ojvydv.exe' 416 "%WINDIR%\SysWOW64\wysvvv.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dqllyy.exe' 416 "%WINDIR%\SysWOW64\fudvnf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jlfhmu.exe' 416 "%WINDIR%\SysWOW64\pfpmjx.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gmpuif.exe' 416 "%WINDIR%\SysWOW64\jlfhmu.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\uuhfqf.exe' 416 "%WINDIR%\SysWOW64\yqefjp.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\rsgfje.exe' 416 "%WINDIR%\SysWOW64\uuhfqf.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\lzoxma.exe' 416 "%WINDIR%\SysWOW64\ivxnrj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jvcqlo.exe' 416 "%WINDIR%\SysWOW64\rsgfje.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ivxnrj.exe' 416 "%WINDIR%\SysWOW64\tepuep.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ywnvpz.exe' 416 "%WINDIR%\SysWOW64\jvcqlo.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\vmtvig.exe' 416 "%WINDIR%\SysWOW64\ywnvpz.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\tepuep.exe' 416 "%WINDIR%\SysWOW64\xlwxgr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\sneiej.exe' 416 "%WINDIR%\SysWOW64\vmtvig.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\vtrhiw.exe' 416 "%WINDIR%\SysWOW64\webbrn.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xlwxgr.exe' 416 "%WINDIR%\SysWOW64\yauusk.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yauusk.exe' 416 "%WINDIR%\SysWOW64\jzzkpb.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\gklydr.exe' 416 "%WINDIR%\SysWOW64\gdvsmj.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\jzzkpb.exe' 416 "%WINDIR%\SysWOW64\mjjrci.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\dhsyey.exe' 416 "%WINDIR%\SysWOW64\gklydr.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\zmnqdg.exe' 416 "%WINDIR%\SysWOW64\dhsyey.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\ciawez.exe' 416 "%WINDIR%\SysWOW64\hovgeg.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mjjrci.exe' 416 "%WINDIR%\SysWOW64\yfkuxm.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\yqefjp.exe' 416 "%WINDIR%\SysWOW64\gmpuif.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xiztcl.exe' 416 "%WINDIR%\SysWOW64\ldkaur.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\mqjyec.exe' 416 "%WINDIR%\SysWOW64\sneiej.EXE"' (with hidden window)
  • '%WINDIR%\syswow64\xhjcmx.exe' 416 "%WINDIR%\SysWOW64\deeume.EXE"' (with hidden window)

Рекомендации по лечению

  1. В случае если операционная система способна загрузиться (в штатном режиме или режиме защиты от сбоев), скачайте лечащую утилиту Dr.Web CureIt! и выполните с ее помощью полную проверку вашего компьютера, а также используемых вами переносных носителей информации.
  2. Если загрузка операционной системы невозможна, измените настройки BIOS вашего компьютера, чтобы обеспечить возможность загрузки ПК с компакт-диска или USB-накопителя. Скачайте образ аварийного диска восстановления системы Dr.Web® LiveDisk или утилиту записи Dr.Web® LiveDisk на USB-накопитель, подготовьте соответствующий носитель. Загрузив компьютер с использованием данного носителя, выполните его полную проверку и лечение обнаруженных угроз.
Скачать Dr.Web

По серийному номеру

Выполните полную проверку системы с использованием Антивируса Dr.Web Light для macOS. Данный продукт можно загрузить с официального сайта Apple App Store.

На загруженной ОС выполните полную проверку всех дисковых разделов с использованием продукта Антивирус Dr.Web для Linux.

Скачать Dr.Web

По серийному номеру

  1. Если мобильное устройство функционирует в штатном режиме, загрузите и установите на него бесплатный антивирусный продукт Dr.Web для Android Light. Выполните полную проверку системы и используйте рекомендации по нейтрализации обнаруженных угроз.
  2. Если мобильное устройство заблокировано троянцем-вымогателем семейства Android.Locker (на экране отображается обвинение в нарушении закона, требование выплаты определенной денежной суммы или иное сообщение, мешающее нормальной работе с устройством), выполните следующие действия:
    • загрузите свой смартфон или планшет в безопасном режиме (в зависимости от версии операционной системы и особенностей конкретного мобильного устройства эта процедура может быть выполнена различными способами; обратитесь за уточнением к инструкции, поставляемой вместе с приобретенным аппаратом, или напрямую к его производителю);
    • после активации безопасного режима установите на зараженное устройство бесплатный антивирусный продукт Dr.Web для Android Light и произведите полную проверку системы, выполнив рекомендации по нейтрализации обнаруженных угроз;
    • выключите устройство и включите его в обычном режиме.

Подробнее о Dr.Web для Android

Демо бесплатно на 14 дней

Выдаётся при установке