PUP.YesSearches
* path
C^Windows^System32^Tasks\Nimeckreelule Log
C^Program Files^Nimeckreelule\Nmclogtask.exe
C^Program Files^Nimeckreelule\Nmclogservice.exe
dir_C^Program Files^Nimeckreelule
* delete key
HKEY_CURRENT_USER\Software\{A16B1AF7-982D-40C3-B5C1-633E1A6A6678}
HKEY_CURRENT_USER\Software\C487E86E99FB7182CA80B133D91042F8
HKEY_LOCAL_MACHINE\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
HKEY_LOCAL_MACHINE\SOFTWARE\{G6276374-DEEE-4AAA-A355-9016A2F98A2D}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Local Settings\ms-ptid-key
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Nmclogservice
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BugreportW
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C4084ED-A468-4843-AE43-616943B68BA8}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Nimeckreelule Log
|
|