How to Remove Vundo Trojan
Trojans is one of the most wide-spread threat in the internet. They can spread in lot of ways (torrents, e-mail attachments, video codecs etc.). Vundo Trojan as well as any other trojan can harm your PC in different ways. Originally, trojans stole just your e-mail contacts and some personal data. Nowadays, they can steal any type of private information, being serious threat. In this tutorial we will show how to deal with Vundo Trojan detect and remove it from your PC.
Choose option :
Vundo Trojan description and technical details.
Manual removal of Vundo Trojanl.
Download tool that will solve your problem automatically.
Professional support that will help you remove Vundo Trojan from our Security Support Team.
In some microbiosiss Vundo Trojan is not visible. In these cases buyers think about questions connected with hardware, Windows system installing questions or another deseases failing to remove Vundo Trojan or perfect Vundo Trojan removal dealing and also not attaining Vundo Trojan removal tools. Got programs that can likewise be a Vundo Trojan removal tool can do no damage but the bundled one which is Vundo Trojan does. Vundo Trojan publicity for pornography is shown without boundings, so parents invariably need to install Vundo Trojan removal tools to remove Vundo Trojan not to let their children see that. It's oftentimes when Vundo Trojan display advertisements. Vundo Trojan removal tools inspect the contents of the operating system registry, computer files and installed softwares and remove Vundo Trojan that uncovers itself. Vundo Trojan removal tools can remove Vundo Trojan by protecting real time setting up of Vundo Trojan on computer.
Trojan's detail table
Trojan alias:
Executable file:
Threat class:
Affected OS:
Vundo Trojan
*
Trojan
Win32 (Windows 9x, Windows XP, Windows Vista, Windows Seven)
Vundo Trojan infiltration
As we already said there numerous ways trojan can get to your PC from the internet. Vundo Trojan copies its file(s) to your hard disk. File name typical to Vundo Trojan is *
. Then it runs itself and creates new startup key in registry with name Vundo Trojan and value *
. If you will look into running processes list you will see some extra process with name like *
or any random name that uses decent amount of your CPU.
If you would like to remove Vundo Trojan use WiperSoft Antispyware Malware Remediation Tool (see below)
Automatic Trojan Removal
So what is Vundo Trojan Removal Tool? Basically, it is the tool that will remove every file and registry key that was created by Vundo Trojan. It was created after analyzing all versions and types of this threat on test PCs and every file and key was added to the database. Removal Tool is updated regularly to make sure it can remove latest versions of Vundo Trojan:
Download WiperSoft Antispyware to remove Vundo Trojan
* WiperSoft Antispyware was developed to remove threats like Vundo Trojan in automatic mode. Remover has active module to protect PC from hijackers, trojans, ransomware and other viruses. Trial version of Wipersoft provides detection of computer viruses for FREE. To remove malware, you have to purchase the full version of Wipersoft.
How to remove Vundo Trojan manually?
During all time since adding Vundo Trojan to our database we track it changes and add them in the list below, removing files mentioned from your hard drive and deleting them from starup list and also unregistering all corresponding DLLs will result cleaning your computer drom the trojan. But also, missing DLL's that can be removed or corrupted by Vundo Trojan should be restored from your Windows CD .
So, here is the simple process to remove Vundo Trojan:
1. Delete following processes form startup and files from your hard drive:
- tvfe.dll
- awtqn.dll
- geede.dll
- geedb.dll
- pmnqguh.dll
- pmkhi.dll
- gebyx.dll
- ssqom.dll
- ssqoomm.dll
- vtutt.dll
- vtstq.dll
- pmnmjhe.dll
- ddcdebb.dll
- gebyv.dll
- pmkhg.dll
- byvus.dll
- urroxtl.dll
- ssqpm.dll
- mljjg.dll
- pmkji.dll
- awvvv.dll
- awtqr.dll
- ssttq.dll
- fccabcb.dll
- dkimeu.dll
- rnnymejq.exe
- ntsystem.exe
- unaoakg.dll
- ktigmozi.exe
- hndsisj.dll
- urqpm.dll
- iqcarkn.dll
- rlycdhc.dll
- zsxxqhb.dll
- eyglzaj.dll
- zfzlnv.dll
- mrpigrb.dll
- ganwsln.dll
- bpeoqyf.dll
- fdsugdm.dll
- jnyszyd.dll
- txrbhpe.dll
- kpjwdqe.dll
- tqxvqol.dll
- lmhbdme.dll
- vrfvumc.dll
- rngtzif.dll
- pgzpmi.dll
- jcrkdmk.dll
- tefadqm.dll
- ocixzcd.dll
- ietvkqn.dll
- dfmuqik.dll
- lbczxhe.dll
- ztlupkn.dll
- drrfgme.dll
- sgavzyi.dll
- mllmj.dll
- wpmvoter.exe
- qxhhutd.dll
- ckfjngf.dll
- sqnhkuf.dll
- whaedmm.dll
- pjurgqb.dll
- xhwayqd.dll
- zdeihue.dll
- hivnhtg.dll
- pyaycqk.dll
- bbexet.dll
- uyxlxsh.dll
- TGCQCFYF.EXE
- mvrhyhkf.exe
- wvutuvs.dll
- removalfile.bat
- vtuts.dll
- khffebc.dll
- winexy32.dll
- wina.tmp.exe
- wqnsvwxn.dll
- mcfhxtpu.dll
- drvnak.dll
- win2.tmp
- win5.tmp
- win11.tmp
- mst1.bat
- jkkjh.dll
- hjkkj.ini
- nxwvsnqw.ini
- bjrykhyj.dll
- qhntajfl.exe
- win7.tmp
- win8.tmp.exe
- win9.tmp
- winb.tmp
- winc.tmp
- mstd.tmp
- wine.tmp
- mst6.tmp
- winc.tmp.exe
- wind.tmp
- winb.tmp.exe
- win9.tmp.exe
- win8.tmp
- win7.tmp.exe
- win5.tmp.exe
- antzom[1].exe
- xi6[1].exe
- winhoq32.dll
- win72.tmp.exe
- winf.tmp
- win12.tmp
- win13.tmp.exe
- win14.tmp
- win15.tmp.exe
- winubg32.dll
- jkklkjg.dll
- wqzdiz.dll
- tdzkxz.dll
- drvmul.dll
- khfgefg.dll
- tqbcban.dll
- xc29[1].exe
- yibkcqh.dll
- dtfnivg.dll
- drvtom.dll
- xc37[1].exe
- xc42[1].exe
- winrzf32.dll
- xc60[1].exe
- ddcyxyv.dll
- gebcywx.dll
- ptsvryi.dll
- rbfpkwj.dll
- ydownwl.dll
- dccdd.ini
- dccdd.bak1
- oxqeaofj.dll
- jfoaeqxo.ini
- tbomhmld.dll
- wtlndwrq.dll
- ubmxpbgy.exe
- winmxw32.dll
- wvuturo.dll
- wineij32.dll
- capesnpnv.dll
- wvuuspo.dll
- antizom[1].exe
- drvtow.dll
- drvjuw.dll
- drvlit.dll
- drvlif.dll
- winrkq32.dll
- win4.tmp
- xc23[1].exe
- win6.tmp
- icqzrrm.dll
- sgbfafi.dll
- cbxvttr.dll
- xc36[1].exe
- drvzuv.dll
- win12.tmp.exe
- win13.tmp
- win14.tmp.exe
- win17.tmp
- win18.tmp.exe
- win1b.tmp
- win1c.tmp
- mst2.bat
2. Delete the following folders that are assosiated with Vundo Trojan:
- docume~1\hp_adm~1\locals~1\temp\
3. Finally, remove this registry keys:
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}
Value: defender
- Key: ATLDistrib.ATLDistrib
- Key: ATLDistrib.ATLDistrib.1
- Key: CLSID\{00DBDAC8-4691-4797-8E6A-7C6AB89BC441}
- Key: CLSID\{2353FCBC-012D-487B-8BF3-865C0929FBEB}
- Key: CLSID\{39D2FC9B-041C-470E-AE72-F8C001247626}
- Key: CLSID\{3FE36807-69ED-45D1-B9BE-85C0E3F75B6A}
- Key: CLSID\{44240BB5-BD7D-4D49-A1AA-8AB0F3D3CB44}
- Key: CLSID\{5D867A01-9CEC-4f2f-8454-AAAB35550396}
- Key: CLSID\{6DD0BC06-4719-4BA3-BEBC-FBAE6A448152}
- Key: CLSID\{7BF451AC-2010-4804-B256-DB2F0A8D9EB6}
- Key: CLSID\{827DC836-DD9F-4A68-A602-5812EB50A834}
- Key: CLSID\{AF7FCAFB-9FDB-4F5E-BAC6-68BDEE61D6C6}
- Key: CLSID\{B313D637-F405-4052-AC37-E2119AB3C8F8}
- Key: CLSID\{B8B55274-0F9A-41E5-9067-A3539BD9E860}
- Key: CLSID\{CBE0D59D-F985-4AC6-8826-FEE957065D42}
- Key: CLSID\{E92F7930-91D9-C259-A3FA-E53B82752190}
- Key: CLSID\{EFDAC3FE-F44A-4030-8589-1E23BC6573D5}
- Key: CLSID\{FC148228-87E1-4D00-AC06-58DCAA52A4D1}
- Key: mfcoptimizeclass.mfcoptimizeclass
- Key: mfcoptimizeclass.mfcoptimizeclass.1
- Key: msevents.msevents
- Key: MSEvents.MSEvents MSEvents Object
- Key: msevents.msevents.1
- Key: MSEvents.MSEvents.1 MSEvents Object
- Key: SOFTWARE\Classes\ATLDistrib.ATLDistrib
- Key: SOFTWARE\Classes\ATLDistrib.ATLDistrib.1
- Key: SOFTWARE\Classes\CLSID\{00DBDAC8-4691-4797-8E6A-7C6AB89BC441}
- Key: SOFTWARE\Classes\CLSID\{2353FCBC-012D-487B-8BF3-865C0929FBEB}
- Key: SOFTWARE\Classes\CLSID\{39D2FC9B-041C-470E-AE72-F8C001247626}
- Key: SOFTWARE\Classes\CLSID\{44240BB5-BD7D-4D49-A1AA-8AB0F3D3CB44}
- Key: SOFTWARE\Classes\CLSID\{6DD0BC06-4719-4BA3-BEBC-FBAE6A448152}
- Key: SOFTWARE\Classes\CLSID\{7BF451AC-2010-4804-B256-DB2F0A8D9EB6}
- Key: SOFTWARE\Classes\CLSID\{827DC836-DD9F-4A68-A602-5812EB50A834}
- Key: SOFTWARE\Classes\CLSID\{AF7FCAFB-9FDB-4F5E-BAC6-68BDEE61D6C6}
- Key: SOFTWARE\Classes\CLSID\{b8b55274-0f9a-41e5-9067-a3539bd9e860}
- Key: SOFTWARE\Classes\CLSID\{CBE0D59D-F985-4AC6-8826-FEE957065D42}
- Key: SOFTWARE\Classes\CLSID\{E92F7930-91D9-C259-A3FA-E53B82752190}
- Key: SOFTWARE\Classes\CLSID\{FC148228-87E1-4D00-AC06-58DCAA52A4D1}
- Key: SOFTWARE\Classes\MSEvents.MSEvents
- Key: SOFTWARE\Classes\MSEvents.MSEvents MSEvents Object
- Key: SOFTWARE\Classes\MSEvents.MSEvents.1
- Key: SOFTWARE\Classes\MSEvents.MSEvents.1 MSEvents Object
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{00DBDAC8-4691-4797-8E6A-7C6AB89BC441}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{2353FCBC-012D-487B-8BF3-865C0929FBEB}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{39D2FC9B-041C-470E-AE72-F8C001247626}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{44240BB5-BD7D-4D49-A1AA-8AB0F3D3CB44}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{5D867A01-9CEC-4f2f-8454-AAAB35550396}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{659E147E-BD03-4605-988C-AA6D7EA497CA}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{6DD0BC06-4719-4BA3-BEBC-FBAE6A448152}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{79A576C4-B7A9-47EC-B57C-2CE5CA6ECC6A}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{7BF451AC-2010-4804-B256-DB2F0A8D9EB6}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{827DC836-DD9F-4A68-A602-5812EB50A834}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{8DBF02DA-4360-4A7E-BEA1-347B87816327}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{AF7FCAFB-9FDB-4F5E-BAC6-68BDEE61D6C6}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{B313D637-F405-4052-AC37-E2119AB3C8F8}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{B8B55274-0F9A-41E5-9067-A3539BD9E860}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{CBE0D59D-F985-4AC6-8826-FEE957065D42}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{CE70731D-F28D-4D81-9D61-C8EE60378401}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{E92F7930-91D9-C259-A3FA-E53B82752190}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{EFDAC3FE-F44A-4030-8589-1E23BC6573D5}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{FC148228-87E1-4D00-AC06-58DCAA52A4D1}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{549B5CA7-4A86-11D7-A4DF-000874180BB3}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{F4484D17-60F6-4048-9FA5-05E3BD39BF9B}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{1D02A5FF-BD0A-451B-A795-678970117C9A}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{3496D13A-609A-407B-B181-8F47B4F28AE9}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{DC04109F-FD9B-48EA-A7A8-D079507AB42C}
- Key: CLSID\{0E24427B-DF2A-40EB-980B-A819F5FF3DD0}\InprocServer32
Value: ThreadingModel
- Key: CLSID\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}\InprocServer32
Value: ThreadingModel
- Key: CLSID\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key:
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
\iexplore
Value: Count
- Key: Software\Classes\CLSID\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key:
Software\Classes\CLSID\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}\InprocServer32
Value: TreadingModel
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtstq
Value: DllName
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Nrowser Helper Object
\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key: CLSID\{1D29C7B8-1B3D-4232-B1EB-CB5B4C83D207}\InprocServer32
Value: ThreadingModel
- Key: CLSID\{1D62D124-13A0-4363-84AF-6F7E620F5CFD}\InprocServer32
Value: ThreadingModel
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Run\f9aadabe.exe
- Key: CLSID\{010FF400-8DFB-439D-987B-DCDE5195F4D8}\InprocServer32
Value: ThreadingModel
- Key: Software\Microsoft\UniqData
- Key: CLSID\{E03C740E-BB24-4d3c-B92A-6F84DE1DD99C}\InprocServer32
Value: ThreadingModel
- Key: Software\Microsoft\Juan
- Key: Software\Classes\CLSID\{010FF400-8DFB-439D-987B-DCDE5195F4D8}
- Key:
Software\Classes\CLSID\{010FF400-8DFB-439D-987B-DCDE5195F4D8}\InprocServer32
Value: ThreadingModel
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{010FF400-8DFB-439D-987B-DCDE5195F4D8}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxwuuv
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexy32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Asynchronous
- Key: CLSID\{755FF9F2-E2F1-D314-0CAA-09112272C292}\InprocServer32
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Run\a7c2dabe.exe
- Key:
Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{755FF9F2-E2F1-D314-0CAA-09112272C292}
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{755FF9F2-E2F1-D314-0CAA-09112272C292}
\iexplore
Value: Count
- Key: Software\Classes\CLSID\{755FF9F2-E2F1-D314-0CAA-09112272C292}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{755FF9F2-E2F1-D314-0CAA-09112272C292}
- Key: Software\Classes\CLSID\{5C72B95C-8069-C070-0D3A-05CADFAF1F9B}
- Key:
Software\Classes\CLSID\{5C72B95C-8069-C070-0D3A-05CADFAF1F9B}\InprocServer32
Value: ThreadingModel
- Key: CLSID\{5C72B95C-8069-C070-0D3A-05CADFAF1F9B}\InprocServer32
Value: ThreadingModel
- Key: CLSID\{5C72B95C-8069-C070-0D3A-05CADFAF1F9B}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{5C72B95C-8069-C070-0D3A-05CADFAF1F9B}
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: DLLName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Startup
- Key: software\microsoft\windows nt\currentversion\winlogon\notify\mllmj
Value: dllname
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvvtts
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvvtts
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvvtts
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvvtts
Value: Impersonate
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{4E53D879-BC77-45D7-A447-150129621E73}
Value: dcomcfg.exe
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\geede
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrzf32
Value: Shutdown
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{1DDEA0B1-0E4E-4AC2-8FB2-16615D019582}
Value: defender
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqn
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: Logon
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxyv
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnmjhe
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Logon
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhe
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Logon
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvssst
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmmt32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkhhg
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhg
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhi
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhi
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhi
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhi
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkhi
Value: Logoff
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{E9BED8F7-00FB-4C35-8BDF-5EAF49D6BB45}
Value: {4D25F926-B9FE-4682-BF72-8AB8210D6D75}
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqo
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpq
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpq
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpq
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpq
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpq
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winbue32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyx
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqom
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\byvus
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winlvw32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqpm
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winldg32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mljjg
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexz32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmkji
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winkgg32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logon
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awvvv
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebyv
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\awtqr
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winmxw32
Value: Shutdown
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssttq
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Startup
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winrkp32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\fccabcb
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\fccabcb
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\fccabcb
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\fccabcb
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\fccabcb
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {0E24427B-DF2A-40EB-980B-A819F5FF3DD0}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqoomm
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqoomm
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqoomm
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqoomm
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ssqoomm
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtutt
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtutt
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtutt
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtutt
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtutt
Value: Logoff
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
\iexplore
Value: Type
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E13DDE1-E013-47ec-9C4C-27C2F78BDD26}
\iexplore
Value: Time
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtstq
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtstq
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtstq
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\vtstq
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pmnli
Value: DllName
- Key: Software\Microsoft\Internet Explorer\URLSearchHooks
Value: {DCEDF530-38DB-3770-F5AA-601345D83B96}
- Key: Software\Microsoft\Internet Explorer\URLSearchHooks
Value: {4E40F337-6BDB-3173-F3AC-6543B067ABC4}
- Key: Software\Microsoft\Internet Explorer\URLSearchHooks
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{4319425C-80E0-DF4B-CD0A-DF98BD10F690}
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{4E40F337-6BDB-3173-F3AC-6543B067ABC4}
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{6BA42B3A-ECDC-ED76-F71B-EB2B569F89C2}
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{976AB789-7337-779B-47F3-70E29A7520C8}
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{DCEDF530-38DB-3770-F5AA-601345D83B96}
Value: {976AB789-7337-779B-47F3-70E29A7520C8}
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{35F7813A-AF74-4474-B1DC-7EE6FB6C43C6}
Value: Startup
- Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
\{FB45A990-131B-4741-876C-5B41C297D797}
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\mllmj
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvutuvs
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvutuvs
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvutuvs
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvutuvs
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvutuvs
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexy32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexy32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexy32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winexy32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khffebc
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khffebc
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khffebc
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khffebc
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khffebc
Value: Asynchronous
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {1D29C7B8-1B3D-4232-B1EB-CB5B4C83D207}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {8E3595C5-6F6D-44B2-BC8B-FA2DAF1EE33C}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkklkjg
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkklkjg
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkklkjg
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkklkjg
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\jkklkjg
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {E8396BDB-A2FD-46C5-8BB1-34C1F7156CDB}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khfgefg
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khfgefg
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khfgefg
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khfgefg
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\khfgefg
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {010FF400-8DFB-439D-987B-DCDE5195F4D8}
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcyxyv
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcyxyv
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcyxyv
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcyxyv
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ddcyxyv
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winwil32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winwil32
Value: Impersonate
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winwil32
Value: Startup
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winwil32
Value: Shutdown
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebcywx
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebcywx
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebcywx
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebcywx
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\gebcywx
Value: Logoff
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {EB56076C-EEB4-4FB9-BE89-04A5B6980A8E}
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E03C740E-BB24-4D3C-B92A-6F84DE1DD99C}
\iexplore
Value: Type
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E03C740E-BB24-4D3C-B92A-6F84DE1DD99C}
\iexplore
Value: Count
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{E03C740E-BB24-4D3C-B92A-6F84DE1DD99C}
\iexplore
Value: Time
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{158692C3-C204-4BA7-9257-561E5DDE33C3}
\iexplore
Value: Type
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{158692C3-C204-4BA7-9257-561E5DDE33C3}
\iexplore
Value: Count
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{158692C3-C204-4BA7-9257-561E5DDE33C3}
\iexplore
Value: Time
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{46A4E9D9-B30E-452A-8157-DBBEC8573B03}
\iexplore
Value: Count
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{46A4E9D9-B30E-452A-8157-DBBEC8573B03}
\iexplore
Value: Time
- Key: SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winwil32
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxwuuv
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxwuuv
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxwuuv
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cbxwuuv
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuturo
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuturo
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuturo
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuturo
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuturo
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wineij32
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuuspo
Value: Asynchronous
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuuspo
Value: DllName
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuuspo
Value: Impersonate
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuuspo
Value: Logon
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wvuuspo
Value: Logoff
- Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\winhoq32
Value: DllName
- Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
Value: {2C9E0FF5-9562-4EB6-B405-71F896EB9C08}
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{755FF9F2-E2F1-D314-0CAA-09112272C292}
\iexplore
Value: Type
- Key: Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{755FF9F2-E2F1-D314-0CAA-09112272C292}
\iexplore
Value: Time
Warning: Sometimes, trojan can use system file names or randomly generated names for its executable. We recommend you to use WiperSoft Antispyware Malware Remediation Tool for safe problem solution.
If you are already our customer or you have additional questions ask our support team for help in removing Vundo Trojan!
Let our support team solve your problem with Vundo Trojan and remove Vundo Trojan right now!
Submit support ticket below and describe your problem with Vundo Trojan. Support team will offer you solution in several minutes and give a step-by-step instruction on how to remove Vundo Trojan. Trouble-free tech support with over 10 years experience removing malware.
Submit support ticket
Write a few words of how you got Vundo Trojan with all circunstances in the form below. Our support team open support ticket for you in an hour and we will start solving your problem with Vundo Trojan. Attach suspicious files that you see that possibly a part of Vundo Trojan.
Here are the descriptions of problems connected with Vundo Trojan and *
we received earlier:
Show more
« Back to catalog
Problem Summary: Desktop Icons not showing windows7
Desktop icons are not shown when my windows starts even when i select "show desktop icon" from taskbar.
please help
Problem was successfully solved. Ticket was closed.