Technical Information
- [HKLM\SYSTEM\ControlSet001\services\.000085102072576331] 'ImagePath' = '<Current directory>\000085102072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000030177072576331] 'ImagePath' = '<Current directory>\000030177072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000030177072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000039118072576331] 'ImagePath' = '<Current directory>\000039118072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000039118072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000030648072576331] 'ImagePath' = '<Current directory>\000030648072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000030648072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000036778072576331] 'ImagePath' = '<Current directory>\000036778072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000036778072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000039419072576331] 'ImagePath' = '<Current directory>\000039419072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000039419072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000013134072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000030459072576331] 'ImagePath' = '<Current directory>\000030459072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000032499072576331] 'ImagePath' = '<Current directory>\000032499072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000032499072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000035530172576331] 'ImagePath' = '<Current directory>\000035530172576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000035530172576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000032470172576331] 'ImagePath' = '<Current directory>\000032470172576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000032470172576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000037011172576331] 'ImagePath' = '<Current directory>\000037011172576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000037011172576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000034241172576331] 'ImagePath' = '<Current directory>\000034241172576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000034241172576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000016927072576331] 'ImagePath' = '<Current directory>\000016927072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000016927072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000010386072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000010386072576331] 'ImagePath' = '<Current directory>\000010386072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000013346072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000017842072576331] 'ImagePath' = '<Current directory>\000017842072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000017842072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000012882072576331] 'ImagePath' = '<Current directory>\000012882072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000012882072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000019723072576331] 'ImagePath' = '<Current directory>\000019723072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000019723072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000015763072576331] 'ImagePath' = '<Current directory>\000015763072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000015763072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000010993072576331] 'ImagePath' = '<Current directory>\000010993072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000010993072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000032081172576331] 'ImagePath' = '<Current directory>\000032081172576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000030459072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000013134072576331] 'ImagePath' = '<Current directory>\000013134072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000018364072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000013694072576331] 'ImagePath' = '<Current directory>\000013694072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000013694072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000010135072576331] 'ImagePath' = '<Current directory>\000010135072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000010135072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000015265072576331] 'ImagePath' = '<Current directory>\000015265072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000015265072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000018006072576331] 'ImagePath' = '<Current directory>\000018006072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000018006072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000013346072576331] 'ImagePath' = '<Current directory>\000013346072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000085102072576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000018364072576331] 'ImagePath' = '<Current directory>\000018364072576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000032081172576331] 'Start' = '00000002'
- '.000085102072576331' <Current directory>\000085102072576331.sys
- '.000037011172576331' <Current directory>\000037011172576331.sys
- '.000032470172576331' <Current directory>\000032470172576331.sys
- '.000035530172576331' <Current directory>\000035530172576331.sys
- '.000032499072576331' <Current directory>\000032499072576331.sys
- '.000030459072576331' <Current directory>\000030459072576331.sys
- '.000039419072576331' <Current directory>\000039419072576331.sys
- '.000036778072576331' <Current directory>\000036778072576331.sys
- '.000030648072576331' <Current directory>\000030648072576331.sys
- '.000039118072576331' <Current directory>\000039118072576331.sys
- '.000030177072576331' <Current directory>\000030177072576331.sys
- '.000016927072576331' <Current directory>\000016927072576331.sys
- '.000034241172576331' <Current directory>\000034241172576331.sys
- '.000010386072576331' <Current directory>\000010386072576331.sys
- '.000018006072576331' <Current directory>\000018006072576331.sys
- '.000015265072576331' <Current directory>\000015265072576331.sys
- '.000010135072576331' <Current directory>\000010135072576331.sys
- '.000013694072576331' <Current directory>\000013694072576331.sys
- '.000018364072576331' <Current directory>\000018364072576331.sys
- '.000013134072576331' <Current directory>\000013134072576331.sys
- '.000010993072576331' <Current directory>\000010993072576331.sys
- '.000015763072576331' <Current directory>\000015763072576331.sys
- '.000019723072576331' <Current directory>\000019723072576331.sys
- '.000012882072576331' <Current directory>\000012882072576331.sys
- '.000017842072576331' <Current directory>\000017842072576331.sys
- '.000013346072576331' <Current directory>\000013346072576331.sys
- '.000032081172576331' <Current directory>\000032081172576331.sys
- <Current directory>\000085102072576331.sys
- <Current directory>\000030177072576331.sys
- %WINDIR%\temp\udd9baf.tmp
- <Current directory>\000039118072576331.sys
- %WINDIR%\temp\uddad3d.tmp
- <Current directory>\000030648072576331.sys
- %WINDIR%\temp\uddb99d.tmp
- <Current directory>\000036778072576331.sys
- %WINDIR%\temp\uddc81f.tmp
- <Current directory>\000039419072576331.sys
- %WINDIR%\temp\uddd76c.tmp
- %WINDIR%\temp\udde33f.tmp
- <Current directory>\000032081172576331.sys
- <Current directory>\000032499072576331.sys
- %WINDIR%\temp\uddf2e9.tmp
- <Current directory>\000035530172576331.sys
- %WINDIR%\temp\udd62c.tmp
- <Current directory>\000032470172576331.sys
- %WINDIR%\temp\udd14ae.tmp
- <Current directory>\000037011172576331.sys
- %WINDIR%\temp\udd210d.tmp
- <Current directory>\000034241172576331.sys
- %WINDIR%\temp\udd2fce.tmp
- %WINDIR%\temp\udd8b79.tmp
- <Current directory>\000030459072576331.sys
- <Current directory>\000016927072576331.sys
- <Current directory>\000013134072576331.sys
- <Current directory>\000017842072576331.sys
- %WINDIR%\temp\uddd346.tmp
- <Current directory>\000012882072576331.sys
- %WINDIR%\temp\udde2d1.tmp
- <Current directory>\000019723072576331.sys
- %WINDIR%\temp\uddf22e.tmp
- <Current directory>\000015763072576331.sys
- %WINDIR%\temp\uddfe9d.tmp
- <Current directory>\000010993072576331.sys
- %WINDIR%\temp\uddb3b.tmp
- %WINDIR%\temp\udd17e9.tmp
- %WINDIR%\temp\udd6d8c.tmp
- <Current directory>\000018364072576331.sys
- %WINDIR%\temp\udd24a6.tmp
- <Current directory>\000013694072576331.sys
- %WINDIR%\temp\udd322f.tmp
- <Current directory>\000010135072576331.sys
- %WINDIR%\temp\udd3e6f.tmp
- <Current directory>\000015265072576331.sys
- %WINDIR%\temp\udd4d6e.tmp
- <Current directory>\000018006072576331.sys
- <Current directory>\000013346072576331.sys
- <Current directory>\000010386072576331.sys
- %WINDIR%\temp\udd3c7c.tmp
- %WINDIR%\temp\uddd346.tmp
- %WINDIR%\temp\udd210d.tmp
- %WINDIR%\temp\udd14ae.tmp
- %WINDIR%\temp\udd62c.tmp
- %WINDIR%\temp\uddf2e9.tmp
- %WINDIR%\temp\udde33f.tmp
- %WINDIR%\temp\uddd76c.tmp
- %WINDIR%\temp\uddc81f.tmp
- %WINDIR%\temp\uddb99d.tmp
- %WINDIR%\temp\uddad3d.tmp
- %WINDIR%\temp\udd9baf.tmp
- %WINDIR%\temp\udd8b79.tmp
- %WINDIR%\temp\udd6d8c.tmp
- %WINDIR%\temp\udd4d6e.tmp
- %WINDIR%\temp\udd3e6f.tmp
- %WINDIR%\temp\udd322f.tmp
- %WINDIR%\temp\udd24a6.tmp
- %WINDIR%\temp\udd17e9.tmp
- %WINDIR%\temp\uddb3b.tmp
- %WINDIR%\temp\uddfe9d.tmp
- %WINDIR%\temp\uddf22e.tmp
- %WINDIR%\temp\udde2d1.tmp
- %WINDIR%\temp\udd2fce.tmp
- %WINDIR%\temp\udd3c7c.tmp