Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjqcqr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembfnrv.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembxyum.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgmgtr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrttzs.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembtguw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemylprg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemiwpmy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtggpj.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdeocp.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemlmmng.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvbqon.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemyaunc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqempnvkc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemovcoh.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxzomn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrhznc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemztkjc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrbxay.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgpmqt.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqememdjr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrdakf.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemehmcn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemzodpc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwtjig.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemapefi.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxndcr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfkysz.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxvwwy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemapjyo.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfjbqk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemspwwx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxtoow.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxxdeq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemzherw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemkqooj.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqempvjui.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemzgiph.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcunfy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqjgit.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfgqad.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdbmbt.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnruoz.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqbwbx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvorcn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfixgy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcmdzc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfqimu.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqsrcp.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemsuspn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcqvxi.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrlfcf.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqjhct.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwlpdc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdxzlq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtlfqq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwkvyl.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdsccx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgbayd.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtseys.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemieljp.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtcjez.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgloew.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvqivl.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtlunr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembbemo.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcfftt.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjyorn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjrrxc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqempilda.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemmcbcz.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgbcly.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemyesbl.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemonnhy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemodjwm.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcrmpr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembzktc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqmhpb.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnsytb.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhrwbw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemuibcs.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxqpmj.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemheacx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemaeefh.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemufmrw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemkcwjg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrkuzg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemkqoze.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemumzqs.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhssdl.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemngxrr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnwore.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnlnpa.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemaypdm.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxfhfv.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemyupdk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemiudyi.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfubss.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhphfs.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemalhda.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfdkil.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemsupjh.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhwjha.exe'
- '%TEMP%\Sysqemjqcqr.exe'
- '%TEMP%\Sysqembfnrv.exe'
- '%TEMP%\Sysqembxyum.exe'
- '%TEMP%\Sysqemgmgtr.exe'
- '%TEMP%\Sysqemrttzs.exe'
- '%TEMP%\Sysqembtguw.exe'
- '%TEMP%\Sysqemylprg.exe'
- '%TEMP%\Sysqemiwpmy.exe'
- '%TEMP%\Sysqemtggpj.exe'
- '%TEMP%\Sysqemdeocp.exe'
- '%TEMP%\Sysqemlmmng.exe'
- '%TEMP%\Sysqemvbqon.exe'
- '%TEMP%\Sysqemyaunc.exe'
- '%TEMP%\Sysqempnvkc.exe'
- '%TEMP%\Sysqemovcoh.exe'
- '%TEMP%\Sysqemxzomn.exe'
- '%TEMP%\Sysqemrhznc.exe'
- '%TEMP%\Sysqemztkjc.exe'
- '%TEMP%\Sysqemrbxay.exe'
- '%TEMP%\Sysqemgpmqt.exe'
- '%TEMP%\Sysqememdjr.exe'
- '%TEMP%\Sysqemrdakf.exe'
- '%TEMP%\Sysqemehmcn.exe'
- '%TEMP%\Sysqemzodpc.exe'
- '%TEMP%\Sysqemwtjig.exe'
- '%TEMP%\Sysqemapefi.exe'
- '%TEMP%\Sysqemxndcr.exe'
- '%TEMP%\Sysqemfkysz.exe'
- '%TEMP%\Sysqemxvwwy.exe'
- '%TEMP%\Sysqemapjyo.exe'
- '%TEMP%\Sysqemfjbqk.exe'
- '%TEMP%\Sysqemspwwx.exe'
- '%TEMP%\Sysqemxtoow.exe'
- '%TEMP%\Sysqemxxdeq.exe'
- '%TEMP%\Sysqemzherw.exe'
- '%TEMP%\Sysqemkqooj.exe'
- '%TEMP%\Sysqempvjui.exe'
- '%TEMP%\Sysqemzgiph.exe'
- '%TEMP%\Sysqemcunfy.exe'
- '%TEMP%\Sysqemqjgit.exe'
- '%TEMP%\Sysqemfgqad.exe'
- '%TEMP%\Sysqemdbmbt.exe'
- '%TEMP%\Sysqemnruoz.exe'
- '%TEMP%\Sysqemqbwbx.exe'
- '%TEMP%\Sysqemvorcn.exe'
- '%TEMP%\Sysqemfixgy.exe'
- '%TEMP%\Sysqemcmdzc.exe'
- '%TEMP%\Sysqemfqimu.exe'
- '%TEMP%\Sysqemqsrcp.exe'
- '%TEMP%\Sysqemsuspn.exe'
- '%TEMP%\Sysqemcqvxi.exe'
- '%TEMP%\Sysqemrlfcf.exe'
- '%TEMP%\Sysqemqjhct.exe'
- '%TEMP%\Sysqemwlpdc.exe'
- '%TEMP%\Sysqemdxzlq.exe'
- '%TEMP%\Sysqemtlfqq.exe'
- '%TEMP%\Sysqemwkvyl.exe'
- '%TEMP%\Sysqemdsccx.exe'
- '%TEMP%\Sysqemgbayd.exe'
- '%TEMP%\Sysqemtseys.exe'
- '%TEMP%\Sysqemieljp.exe'
- '%TEMP%\Sysqemtcjez.exe'
- '%TEMP%\Sysqemgloew.exe'
- '%TEMP%\Sysqemvqivl.exe'
- '%TEMP%\Sysqemtlunr.exe'
- '%TEMP%\Sysqembbemo.exe'
- '%TEMP%\Sysqemcfftt.exe'
- '%TEMP%\Sysqemjyorn.exe'
- '%TEMP%\Sysqemjrrxc.exe'
- '%TEMP%\Sysqempilda.exe'
- '%TEMP%\Sysqemmcbcz.exe'
- '%TEMP%\Sysqemgbcly.exe'
- '%TEMP%\Sysqemyesbl.exe'
- '%TEMP%\Sysqemonnhy.exe'
- '%TEMP%\Sysqemodjwm.exe'
- '%TEMP%\Sysqemcrmpr.exe'
- '%TEMP%\Sysqembzktc.exe'
- '%TEMP%\Sysqemqmhpb.exe'
- '%TEMP%\Sysqemnsytb.exe'
- '%TEMP%\Sysqemhrwbw.exe'
- '%TEMP%\Sysqemuibcs.exe'
- '%TEMP%\Sysqemxqpmj.exe'
- '%TEMP%\Sysqemheacx.exe'
- '%TEMP%\Sysqemaeefh.exe'
- '%TEMP%\Sysqemufmrw.exe'
- '%TEMP%\Sysqemkcwjg.exe'
- '%TEMP%\Sysqemrkuzg.exe'
- '%TEMP%\Sysqemkqoze.exe'
- '%TEMP%\Sysqemumzqs.exe'
- '%TEMP%\Sysqemhssdl.exe'
- '%TEMP%\Sysqemngxrr.exe'
- '%TEMP%\Sysqemnwore.exe'
- '%TEMP%\Sysqemnlnpa.exe'
- '%TEMP%\Sysqemaypdm.exe'
- '%TEMP%\Sysqemxfhfv.exe'
- '%TEMP%\Sysqemyupdk.exe'
- '%TEMP%\Sysqemiudyi.exe'
- '%TEMP%\Sysqemfubss.exe'
- '%TEMP%\Sysqemhphfs.exe'
- '%TEMP%\Sysqemalhda.exe'
- '%TEMP%\Sysqemfdkil.exe'
- '%TEMP%\Sysqemsupjh.exe'
- '%TEMP%\Sysqemhwjha.exe'
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %TEMP%\Sysqembtguw.exe
- %TEMP%\Sysqemjqcqr.exe
- %TEMP%\Sysqembfnrv.exe
- %TEMP%\Sysqemyaunc.exe
- %TEMP%\Sysqemgmgtr.exe
- %TEMP%\Sysqemrttzs.exe
- %TEMP%\Sysqembxyum.exe
- %TEMP%\Sysqemylprg.exe
- %TEMP%\Sysqemiwpmy.exe
- %TEMP%\Sysqemtggpj.exe
- %TEMP%\Sysqemdeocp.exe
- %TEMP%\Sysqemlmmng.exe
- %TEMP%\Sysqemvbqon.exe
- %TEMP%\Sysqemrbxay.exe
- %TEMP%\Sysqempnvkc.exe
- %TEMP%\Sysqemovcoh.exe
- %TEMP%\Sysqemrlfcf.exe
- %TEMP%\Sysqemrhznc.exe
- %TEMP%\Sysqemztkjc.exe
- %TEMP%\Sysqemxzomn.exe
- %TEMP%\Sysqemgpmqt.exe
- %TEMP%\Sysqememdjr.exe
- %TEMP%\Sysqemrdakf.exe
- %TEMP%\Sysqemehmcn.exe
- %TEMP%\Sysqemzodpc.exe
- %TEMP%\Sysqemwtjig.exe
- %TEMP%\Sysqemspwwx.exe
- %TEMP%\Sysqemxndcr.exe
- %TEMP%\Sysqemfkysz.exe
- %TEMP%\Sysqemcunfy.exe
- %TEMP%\Sysqemapjyo.exe
- %TEMP%\Sysqemfjbqk.exe
- %TEMP%\Sysqemxvwwy.exe
- %TEMP%\Sysqemxtoow.exe
- %TEMP%\Sysqemxxdeq.exe
- %TEMP%\Sysqemzherw.exe
- %TEMP%\Sysqemkqooj.exe
- %TEMP%\Sysqempvjui.exe
- %TEMP%\Sysqemzgiph.exe
- %TEMP%\Sysqemvorcn.exe
- %TEMP%\Sysqemqjgit.exe
- %TEMP%\Sysqemfgqad.exe
- %TEMP%\Sysqemapefi.exe
- %TEMP%\Sysqemnruoz.exe
- %TEMP%\Sysqemqbwbx.exe
- %TEMP%\Sysqemdbmbt.exe
- %TEMP%\Sysqemfixgy.exe
- %TEMP%\Sysqemcmdzc.exe
- %TEMP%\Sysqemfqimu.exe
- %TEMP%\Sysqemqsrcp.exe
- %TEMP%\Sysqemsuspn.exe
- %TEMP%\Sysqemcqvxi.exe
- %TEMP%\Sysqemrkuzg.exe
- %TEMP%\Sysqemwkvyl.exe
- %TEMP%\Sysqemdsccx.exe
- %TEMP%\Sysqemqjhct.exe
- %TEMP%\Sysqemonnhy.exe
- %TEMP%\Sysqemtlunr.exe
- %TEMP%\Sysqemtlfqq.exe
- %TEMP%\Sysqemwlpdc.exe
- %TEMP%\Sysqemvqivl.exe
- %TEMP%\Sysqemgbayd.exe
- %TEMP%\Sysqemtseys.exe
- %TEMP%\Sysqemdxzlq.exe
- %TEMP%\Sysqemtcjez.exe
- %TEMP%\Sysqemgloew.exe
- %TEMP%\Sysqempilda.exe
- %TEMP%\Sysqemmcbcz.exe
- %TEMP%\Sysqembbemo.exe
- %TEMP%\qpath.ini
- %TEMP%\Sysqamqqvaqqd.exe
- %TEMP%\Sysqemjrrxc.exe
- %TEMP%\Sysqemcfftt.exe
- %TEMP%\Sysqembzktc.exe
- %TEMP%\Sysqemgbcly.exe
- %TEMP%\Sysqemyesbl.exe
- %TEMP%\Sysqemjyorn.exe
- %TEMP%\Sysqemodjwm.exe
- %TEMP%\Sysqemcrmpr.exe
- %TEMP%\Sysqemheacx.exe
- %TEMP%\Sysqemaeefh.exe
- %TEMP%\Sysqemnsytb.exe
- %TEMP%\Sysqemalhda.exe
- %TEMP%\Sysqemngxrr.exe
- %TEMP%\Sysqemxqpmj.exe
- %TEMP%\Sysqemhrwbw.exe
- %TEMP%\Sysqemhssdl.exe
- %TEMP%\Sysqemufmrw.exe
- %TEMP%\Sysqemkcwjg.exe
- %TEMP%\Sysqemuibcs.exe
- %TEMP%\Sysqemkqoze.exe
- %TEMP%\Sysqemumzqs.exe
- %TEMP%\Sysqemyupdk.exe
- %TEMP%\Sysqemiudyi.exe
- %TEMP%\Sysqemnwore.exe
- %TEMP%\Sysqemieljp.exe
- %TEMP%\Sysqemqmhpb.exe
- %TEMP%\Sysqemxfhfv.exe
- %TEMP%\Sysqemnlnpa.exe
- %TEMP%\Sysqemhwjha.exe
- %TEMP%\Sysqemfubss.exe
- %TEMP%\Sysqemhphfs.exe
- %TEMP%\Sysqemaypdm.exe
- %TEMP%\Sysqemfdkil.exe
- %TEMP%\Sysqemsupjh.exe
- %TEMP%\Sysqembtguw.exe
- %TEMP%\Sysqemjqcqr.exe
- %TEMP%\Sysqembfnrv.exe
- %TEMP%\Sysqemyaunc.exe
- %TEMP%\Sysqemgmgtr.exe
- %TEMP%\Sysqemrttzs.exe
- %TEMP%\Sysqembxyum.exe
- %TEMP%\Sysqemylprg.exe
- %TEMP%\Sysqemiwpmy.exe
- %TEMP%\Sysqemtggpj.exe
- %TEMP%\Sysqemdeocp.exe
- %TEMP%\Sysqemlmmng.exe
- %TEMP%\Sysqemvbqon.exe
- %TEMP%\Sysqemrbxay.exe
- %TEMP%\Sysqempnvkc.exe
- %TEMP%\Sysqemovcoh.exe
- %TEMP%\Sysqemrlfcf.exe
- %TEMP%\Sysqemrhznc.exe
- %TEMP%\Sysqemztkjc.exe
- %TEMP%\Sysqemxzomn.exe
- %TEMP%\Sysqemgpmqt.exe
- %TEMP%\Sysqememdjr.exe
- %TEMP%\Sysqemrdakf.exe
- %TEMP%\Sysqemehmcn.exe
- %TEMP%\Sysqemzodpc.exe
- %TEMP%\Sysqemwtjig.exe
- %TEMP%\Sysqemspwwx.exe
- %TEMP%\Sysqemxndcr.exe
- %TEMP%\Sysqemfkysz.exe
- %TEMP%\Sysqemcunfy.exe
- %TEMP%\Sysqemapjyo.exe
- %TEMP%\Sysqemfjbqk.exe
- %TEMP%\Sysqemxvwwy.exe
- %TEMP%\Sysqemxtoow.exe
- %TEMP%\Sysqemxxdeq.exe
- %TEMP%\Sysqemzherw.exe
- %TEMP%\Sysqemkqooj.exe
- %TEMP%\Sysqempvjui.exe
- %TEMP%\Sysqemzgiph.exe
- %TEMP%\Sysqemvorcn.exe
- %TEMP%\Sysqemqjgit.exe
- %TEMP%\Sysqemfgqad.exe
- %TEMP%\Sysqemapefi.exe
- %TEMP%\Sysqemnruoz.exe
- %TEMP%\Sysqemqbwbx.exe
- %TEMP%\Sysqemdbmbt.exe
- %TEMP%\Sysqemfixgy.exe
- %TEMP%\Sysqemcmdzc.exe
- %TEMP%\Sysqemfqimu.exe
- %TEMP%\Sysqemqsrcp.exe
- %TEMP%\Sysqemsuspn.exe
- %TEMP%\Sysqemcqvxi.exe
- %TEMP%\Sysqemdsccx.exe
- %TEMP%\Sysqemqjhct.exe
- %TEMP%\Sysqemwlpdc.exe
- %TEMP%\Sysqemtlunr.exe
- %TEMP%\Sysqemtlfqq.exe
- %TEMP%\Sysqemwkvyl.exe
- %TEMP%\Sysqemdxzlq.exe
- %TEMP%\Sysqemgbayd.exe
- %TEMP%\Sysqemtseys.exe
- %TEMP%\Sysqemieljp.exe
- %TEMP%\Sysqemtcjez.exe
- %TEMP%\Sysqemgloew.exe
- %TEMP%\Sysqemvqivl.exe
- %TEMP%\Sysqemmcbcz.exe
- %TEMP%\Sysqembbemo.exe
- %TEMP%\Sysqemcfftt.exe
- %TEMP%\Sysqemjrrxc.exe
- %TEMP%\Sysqamqqvaqqd.exe
- %TEMP%\Sysqempilda.exe
- %TEMP%\Sysqemjyorn.exe
- %TEMP%\Sysqemgbcly.exe
- %TEMP%\Sysqemyesbl.exe
- %TEMP%\Sysqemonnhy.exe
- %TEMP%\Sysqemodjwm.exe
- %TEMP%\Sysqemcrmpr.exe
- %TEMP%\Sysqembzktc.exe
- %TEMP%\Sysqemaeefh.exe
- %TEMP%\Sysqemnsytb.exe
- %TEMP%\Sysqemhrwbw.exe
- %TEMP%\Sysqemngxrr.exe
- %TEMP%\Sysqemxqpmj.exe
- %TEMP%\Sysqemheacx.exe
- %TEMP%\Sysqemuibcs.exe
- %TEMP%\Sysqemufmrw.exe
- %TEMP%\Sysqemkcwjg.exe
- %TEMP%\Sysqemrkuzg.exe
- %TEMP%\Sysqemkqoze.exe
- %TEMP%\Sysqemumzqs.exe
- %TEMP%\Sysqemhssdl.exe
- %TEMP%\Sysqemiudyi.exe
- %TEMP%\Sysqemnwore.exe
- %TEMP%\Sysqemnlnpa.exe
- %TEMP%\Sysqemqmhpb.exe
- %TEMP%\Sysqemxfhfv.exe
- %TEMP%\Sysqemyupdk.exe
- %TEMP%\Sysqemaypdm.exe
- %TEMP%\Sysqemfubss.exe
- %TEMP%\Sysqemhphfs.exe
- %TEMP%\Sysqemalhda.exe
- %TEMP%\Sysqemfdkil.exe
- %TEMP%\Sysqemsupjh.exe
- %TEMP%\Sysqemhwjha.exe
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini