Technical Information
- [HKLM\SYSTEM\ControlSet001\services\.000076560642576331] 'ImagePath' = '<Current directory>\000076560642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046756642576331] 'ImagePath' = '<Current directory>\000046756642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046756642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000048296642576331] 'ImagePath' = '<Current directory>\000048296642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000048296642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000047327642576331] 'ImagePath' = '<Current directory>\000047327642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000047327642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000046457642576331] 'ImagePath' = '<Current directory>\000046457642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046457642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000046787642576331] 'ImagePath' = '<Current directory>\000046787642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046787642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000042028642576331] 'ImagePath' = '<Current directory>\000042028642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000043123642576331] 'ImagePath' = '<Current directory>\000043123642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000042028642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000042158642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000048488642576331] 'ImagePath' = '<Current directory>\000048488642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000048488642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000046619642576331] 'ImagePath' = '<Current directory>\000046619642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046619642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000040059642576331] 'ImagePath' = '<Current directory>\000040059642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000040059642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000040689642576331] 'ImagePath' = '<Current directory>\000040689642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000040689642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000049910742576331] 'ImagePath' = '<Current directory>\000049910742576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000049910742576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000043626642576331] 'ImagePath' = '<Current directory>\000043626642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000043626642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000047185642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000047185642576331] 'ImagePath' = '<Current directory>\000047185642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000049145642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000043101642576331] 'ImagePath' = '<Current directory>\000043101642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000043101642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000048331642576331] 'ImagePath' = '<Current directory>\000048331642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000048331642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000042561642576331] 'ImagePath' = '<Current directory>\000042561642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000042561642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000041902642576331] 'ImagePath' = '<Current directory>\000041902642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000041902642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000045252642576331] 'ImagePath' = '<Current directory>\000045252642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000045252642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000047782642576331] 'ImagePath' = '<Current directory>\000047782642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000047450742576331] 'ImagePath' = '<Current directory>\000047450742576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000042158642576331] 'ImagePath' = '<Current directory>\000042158642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000047782642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000049063642576331] 'ImagePath' = '<Current directory>\000049063642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000049063642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000042493642576331] 'ImagePath' = '<Current directory>\000042493642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000042493642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000046344642576331] 'ImagePath' = '<Current directory>\000046344642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000046344642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000045474642576331] 'ImagePath' = '<Current directory>\000045474642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000045474642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000049805642576331] 'ImagePath' = '<Current directory>\000049805642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000049805642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000049145642576331] 'ImagePath' = '<Current directory>\000049145642576331.sys'
- [HKLM\SYSTEM\ControlSet001\services\.000076560642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000043123642576331] 'Start' = '00000002'
- [HKLM\SYSTEM\ControlSet001\services\.000047450742576331] 'Start' = '00000002'
- '.000076560642576331' <Current directory>\000076560642576331.sys
- '.000040689642576331' <Current directory>\000040689642576331.sys
- '.000040059642576331' <Current directory>\000040059642576331.sys
- '.000046619642576331' <Current directory>\000046619642576331.sys
- '.000048488642576331' <Current directory>\000048488642576331.sys
- '.000042158642576331' <Current directory>\000042158642576331.sys
- '.000042028642576331' <Current directory>\000042028642576331.sys
- '.000046787642576331' <Current directory>\000046787642576331.sys
- '.000046457642576331' <Current directory>\000046457642576331.sys
- '.000047327642576331' <Current directory>\000047327642576331.sys
- '.000048296642576331' <Current directory>\000048296642576331.sys
- '.000046756642576331' <Current directory>\000046756642576331.sys
- '.000043626642576331' <Current directory>\000043626642576331.sys
- '.000049910742576331' <Current directory>\000049910742576331.sys
- '.000047185642576331' <Current directory>\000047185642576331.sys
- '.000049805642576331' <Current directory>\000049805642576331.sys
- '.000045474642576331' <Current directory>\000045474642576331.sys
- '.000046344642576331' <Current directory>\000046344642576331.sys
- '.000042493642576331' <Current directory>\000042493642576331.sys
- '.000049063642576331' <Current directory>\000049063642576331.sys
- '.000043123642576331' <Current directory>\000043123642576331.sys
- '.000047782642576331' <Current directory>\000047782642576331.sys
- '.000045252642576331' <Current directory>\000045252642576331.sys
- '.000041902642576331' <Current directory>\000041902642576331.sys
- '.000042561642576331' <Current directory>\000042561642576331.sys
- '.000048331642576331' <Current directory>\000048331642576331.sys
- '.000043101642576331' <Current directory>\000043101642576331.sys
- '.000049145642576331' <Current directory>\000049145642576331.sys
- '.000047450742576331' <Current directory>\000047450742576331.sys
- <Current directory>\000076560642576331.sys
- <Current directory>\000048296642576331.sys
- %WINDIR%\temp\udd78c7.tmp
- <Current directory>\000047327642576331.sys
- %WINDIR%\temp\udd84d8.tmp
- <Current directory>\000046457642576331.sys
- %WINDIR%\temp\udd91c5.tmp
- <Current directory>\000046787642576331.sys
- %WINDIR%\temp\udd9e82.tmp
- <Current directory>\000042028642576331.sys
- %WINDIR%\temp\uddaa94.tmp
- %WINDIR%\temp\uddeac2.tmp
- <Current directory>\000042158642576331.sys
- <Current directory>\000048488642576331.sys
- %WINDIR%\temp\uddc41e.tmp
- <Current directory>\000046619642576331.sys
- %WINDIR%\temp\uddd11a.tmp
- <Current directory>\000040059642576331.sys
- %WINDIR%\temp\udddf2f.tmp
- <Current directory>\000040689642576331.sys
- %WINDIR%\temp\uddec88.tmp
- <Current directory>\000049910742576331.sys
- %WINDIR%\temp\uddfa20.tmp
- <Current directory>\000046756642576331.sys
- %WINDIR%\temp\udd6cb5.tmp
- %WINDIR%\temp\udd5eee.tmp
- <Current directory>\000043626642576331.sys
- <Current directory>\000047185642576331.sys
- <Current directory>\000043101642576331.sys
- %WINDIR%\temp\udd9243.tmp
- <Current directory>\000048331642576331.sys
- %WINDIR%\temp\udd9e93.tmp
- <Current directory>\000042561642576331.sys
- <Current directory>\000041902642576331.sys
- <Current directory>\000045252642576331.sys
- %WINDIR%\temp\uddce6a.tmp
- <Current directory>\000047782642576331.sys
- %WINDIR%\temp\udddb85.tmp
- <Current directory>\000047450742576331.sys
- %WINDIR%\temp\uddb7af.tmp
- <Current directory>\000043123642576331.sys
- %WINDIR%\temp\uddf80c.tmp
- <Current directory>\000042493642576331.sys
- <Current directory>\000046344642576331.sys
- %WINDIR%\temp\udd176f.tmp
- <Current directory>\000045474642576331.sys
- %WINDIR%\temp\udd24d8.tmp
- <Current directory>\000049805642576331.sys
- %WINDIR%\temp\udd31b5.tmp
- <Current directory>\000049145642576331.sys
- %WINDIR%\temp\udd4140.tmp
- %WINDIR%\temp\udd8595.tmp
- <Current directory>\000049063642576331.sys
- %WINDIR%\temp\udd6dd.tmp
- %WINDIR%\temp\udd8595.tmp
- %WINDIR%\temp\uddec88.tmp
- %WINDIR%\temp\udddf2f.tmp
- %WINDIR%\temp\uddd11a.tmp
- %WINDIR%\temp\uddc41e.tmp
- %WINDIR%\temp\uddb7af.tmp
- %WINDIR%\temp\uddaa94.tmp
- %WINDIR%\temp\udd9e82.tmp
- %WINDIR%\temp\udd91c5.tmp
- %WINDIR%\temp\udd84d8.tmp
- %WINDIR%\temp\udd78c7.tmp
- %WINDIR%\temp\uddfa20.tmp
- %WINDIR%\temp\udd6cb5.tmp
- %WINDIR%\temp\udd4140.tmp
- %WINDIR%\temp\udd31b5.tmp
- %WINDIR%\temp\udd24d8.tmp
- %WINDIR%\temp\udd176f.tmp
- %WINDIR%\temp\uddf80c.tmp
- %WINDIR%\temp\uddeac2.tmp
- %WINDIR%\temp\udddb85.tmp
- %WINDIR%\temp\uddce6a.tmp
- %WINDIR%\temp\udd9e93.tmp
- %WINDIR%\temp\udd9243.tmp
- %WINDIR%\temp\udd5eee.tmp
- %WINDIR%\temp\udd6dd.tmp