Lop.com Removal: Remove Lop.com Forever
Let our support team solve your problem with Lop.com and repair Lop.com right now!
Leave the detailed description of your Lop.com problem in the form below. Our support team will contact you in several minutes and give a step-by-step instruction on how to fix Lop.com problem. Please be specific. Do your best describing the problem. This will help us recommend right and complete Lop.com problem removal solution.
Describe your problem here and we'll contact you in several minutes:
Warning:
1) We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you Lop.com removal solution.
2) All fields of this form are obligatory.
Threat's profile
|
Name of the threat: Lop.com |
| Command or file name: 1 eggs.exe |
| Threat type: Spyware |
| Affected OS: Win32 (Windows 9x, Windows XP, Windows Vista) |
Lop.com intrusion method
Lop.com copies its file(s) to your hard disk. Its typical file name is 1 eggs.exe. Then it creates new startup key with name Lop.com and value 1 eggs.exe. You can also find it in your processes list with name 1 eggs.exe or Lop.com.
If you have further questions about Lop.com, please fill in the form above and we'll contact you shortly.
» Download program to remove Lop.com (Lop.com Removal Tool)
Recommended Solution
If you are not sure what to delete, use our award winning program - Lop.com Removal Tool.
Lop.com Removal Tool will find and fully remove Lop.com and all problems associated with Lop.com virus.
Fast, easy, and handy, Lop.com Removal Tool protects your computer against Lop.com that does harm to your computer and breaks your privacy. Lop.com Removal Tool scans your hard disks and registry and destroys any manifestation of Lop.com. Standard anti-virus software can do nothing against malicious programs like Lop.com. Remove Lop.com straight away!
» Download Lop.com Removal Tool now for free
How to fix Lop.com
This problem can be solved manually by deleting all registry keys and files connected with Lop.com, removing it from starup list and unregistering all corresponding DLLs. Additionally missing DLL's should be restored from distribution in case they are corrupted by Lop.com.
To get rid of Lop.com, you should:
1. Kill the following processes and delete the appropriate files:
• 1 grim.exe
• 1072.exe
• 1111.exe
• 13bc960
• 14599.exe
• 15ee62.exe
• 16 mess.exe
• 16021.exe
• 16537.exe
• 16logplayprogram.exe
• 1716.exe
• 19205.exe
• 19f20a.exe
• 1bb13c.exe
• 2 ace.exe
• 20023.exe
• 20044.exe
• 2443.exe
• 24701.exe
• 24758.exe
• 29923.exe
• 2dimensionofexploits.asm
• 2dimensionofexploitsenc.hta
• 2dimensionofexploitsenc.php
• 32437.exe
• 3549.exe
• 5b8d7c.exe
• 64bikeabout.exe
• 64KIND.exe
• 7310.exe
• ?????????*ff.gif
• a324ca3f91c34613.job
• a3919ae1918a1909.job
• a5b238b69181b682.job
• accessories.url
• acid slow.bin
• acid stop.bin
• acid team.dll
• activebitsflap.exe
• activeonce.exe
• Admindrive.exe
• adminlove.exe
• adult chat.url
• adult entertainment.url
• adult.*
• adult.lnk
• afa6d429.exe
• afniekvu.exe
• agreement-.htm
• ahlrfsoy.exe
• aim 1.dll
• Aim readme.exe
• amateur photo.url
• ante.exe
• antedefault.dll
• antitype.dll
• apparel.url
• art.url
• asian sex.url
• asshuktr.exe
• astrology.url
• aswnk.exe
• aswwxs.reg
• atiupdate2.exe
• auction.url
• audio about boob.exe
• automotive.url
• Axis burn.exe
• aybgwarn.htm
• aybwarn.htm
• ayw17f.exe
• b to b.url
• backup.reg
• bae1.exe
• bags more bold.exe
• bait cake part bash.exe
• banking.url
• barbboob.dll
• Barbfirst.exe
• bash second cast.exe
• BATGLUE.exe
• bdvcnypx.exe
• beauty.url
• beep owns.exe
• bendaceproc.exe
• bike poke.dll
• bilyooas.exe
• bin skip.exe
• bind fast.exe
• bind funk inside.exe
• bingo.*
• binidledumb.exe
• binsect.exe
• bis1.exe
• bitsplaygrid.exe
• black jack.url
• bold grim.exe
• boldabout.exe
• Boob army.exe
• Boob keep.exe
• boobdelete.exe
• books.url
• bore active info funk.exe
• bore2mags.exe
• bottomleft.gif
• bottomright.gif
• bowsbleh.exe
• bqssapdm.exe
• brsswthg.exe
• Build Load.exe
• business.url
• bvj13.exe
• byb_save.exe
• bytemess.exe
• bzqzgkdq.exe
• b_dnserr.gif
• cakerdrplan.exe
• cam-6415[1].exe
• campglueflap.exe
• card games.*
• cards.url
• careers.url
• cash remote.exe
• cashmeow.exe
• casino online.*
• cast idle.dll
• chblgrstd.lib
• chin mfcd.bin
• chin part.exe
• chindownload.exe
• chips.url
• chksbdriya.dll
• city tons.exe
• citydog.exe
• cjcegzut.exe
• ckcoofrunea.exe
• ckouvcrcgcea.dll
• classifieds.url
• clock mags inter book.exe
• cmbjcmrq.exe
• cmd.exe
• community.url
• complist.exe
• computer games.url
• computer stores.url
• construction.url
• copy data.dll
• corn bold media.exe
• CornCast.exe
• craps.url
• credit cards.url
• crgbeaoa.exe
• curb bind.dll
• curb noun.exe
• curbuser.exe
• cyd1.exe
• c_12sp10.exe
• datefrag.exe
• ddinxmdb.exe
• deafdoes.dll
• debug anti anti.exe
• debugregs.exe
• dedicated server.url
• Default Bits Blue.exe
• default frag.exe
• defy view.exe
• defyroad.exe
• delete play.exe
• Deletegram.exe
• DeleteSeek.exe
• den1.exe
• dent team.dll
• dentcurbfree.exe
• deskicon.lib
• desktop.htm
• desktop.swf
• dgpxzhtb.exe
• djgxsbcl.exe
• dmvcrthl.exe
• dnserror.htm
• does admin.exe
• domain names.url
• donk_bar.dll
• download_plugin.exe
• draw keep.dll
• drivesign.exe
• droxtrdchdoo.dll
• drstesprpee.dll
• drv list part corn.exe
• dvd fork.exe
• dvd.url
• each cdrom memo.exe
• eaeeishllblc.dll
• ealymfrprwch.dll
• eaymulyl.exe
• ebony.url
• ebooks.url
• education.url
• eelykofrllfrj.dll
• eelykofrllfrpr.dll
• eeublidc.exe
• efjwxjsl.exe
• eksthzea.exe
• electronics.url
• else iso user bows.exe
• elsemode.dll
• eneqckap.exe
• entertainment.url
• epllkeeoopr.dll
• eshglkfvcr.dll
• etarwlaf.exe
• etu1.exe
• euplkc.exe
• ewgcgvzk.exe
• exploit1.htm
• explore internet.*
• ExtraMpeg.exe
• eygfyuoe.exe
• fast eggs mail
• fastfirst.exe
• fbf1.exe
• femguyse.exe
• fetish.url
• film.exe
• filmpeak.dll
• finance.url
• find chic trans.exe
• Find Exit.exe
• firstboob.exe
• five funk camp.exe
• fiz1
• fiz2
• fiz3
• fiz4
• fiz5
• fiz6
• fiz7
• fiz8
• fiz9
• fkrbssba.exe
• flapholdlogo.exe
• flaw army name.exe
• flaw upload.exe
• flmgvmas.exe
• flowers.url
• fmtah.exe
• ford cash.exe
• ford wma dead.exe
• Fork Coal.dll
• fqbhyhjh.exe
• frag drv first boob.exe
• freabrlaouw.dll
• free emails.url
• free homepages.url
• free services.url
• freemp3z.exe
• free_sex_viewer.exe
• frlyjeebtrn.dll
• frlyjeebtru.dll
• frsezaeaast.dll
• frsezaeaav.dll
• ftulpefl.exe
• fullscreenbar.htm
• funktypebin.exe
• funktypebinfffccc.exe
• furniture.url
• gagmqvaf.exe
• gambling and online casinos.*
• gambling and online casinos.lnk
• games.url
• gay and lesbian.url
• gchmfrea.exe
• gcrljntf.exe
• gcvbdwdc.exe
• gifts.url
• gkrlkmdr.exe
• glckqksdr.dll
• gldqumssfrie.dll
• gltprfrll.lib
• glue blue tons.exe
• glxshmcr.exe
• glzchtb.lib
• gqlfiqii.exe
• great 1.exe
• great ante.dll
• great each close.exe
• greyplan.exe
• gzkrpkcb.exe
• gzxqpghe.exe
• hardcore.url
• hardware.url
• header (1).htm
• header (2).htm
• header (3).htm
• header.htm
• health and fitness.url
• heart setup inside.bin
• heartflaw.exe
• heeachmstll.dll
• help support.exe
• hglllyxrxw.dll
• hgrgh.exe
• hlsctpay.exe
• hlyvjncf.exe
• hojxfjdu.exe
• hold help anti.exe
• hole title.dll
• home and garden.url
• hope1media.exe
• hot games and gaming.url
• hoxujhed.exe
• hpt1.exe
• hqe1.exe
• icdrhwno.dll
• idixbdmf.exe
• idle barb ball.exe
• Idle Bows.exe
• ieeblostqly.dll
• ijlysseb.exe
• index_??.gif
• info wait.dll
• install.htm
• installation report download_plugin.htm
• insurance.url
• inter phone pile default.exe
• interarmy.exe
• Internet This.exe
• intramemocomp.exe
• investing.*
• irjvispr.exe
• i_dnserr.gif
• jeursyec.exe
• jewlery.url
• jexpoofro.htm
• joybrowsebytethis.exe
• jqumysto.exe
• jumpnoundate.exe
• junk pure.exe
• jxmiyjlq.exe
• jynqzshx.exe
• kcwarhnv.exe
• keep comp.exe
• kfriegbs.exe
• khzc256.tmp
• kids.url
• Kind Idle.exe
• kind joy bib.exe
• kmigeuhh.exe
• knynnyma.exe
• ktbxbllyth.dll
• kvgpmfiv.exe
• kvrvbpim.exe
• laptops.url
• lavktmn.exe
• lckqdcvd.exe
• lejytfqx.exe
• Less4.exe
• lfgaukbm.exe
• liesbagslist.exe
• link cool the.exe
• links.txt
• lite cake loud.exe
• live copy.exe
• live video feeds.url
• lkxelvrg.exe
• llfggrdr.exe
• llssalycshh.dll
• lltckiey.exe
• lniegfer.exe
• loadcashmeet.exe
• logo vc.exe
• longonlineplay.exe
• longpuresoft.bin
• lop notes.txt
• lopsearc.exe
• lopsearch.exe
• loudmove.exe
• loyftzhg.exe
• lrgluoot.exe
• lsocnmju.exe
• lyzkisnf.dll
• magazines.url
• MAGSOWNS.exe
• mail mess.exe
• main_01.gif
• main_02.gif
• manager free.exe
• mapijump.exe
• matchmaking.url
• media else rdr.exe
• mediawebdownload.exe
• meemnckyqbr.exe
• meepajlr.dll
• meepajlr.exe
• Meet Plus.exe
• Memo Wait.exe
• mess ace.exe
• mfcdpingwarnfast.exe
• mix loud.exe
• MIX MANAGER BASH.exe
• mlnznqjv.exe
• mntrkqog.exe
• mobile phones.url
• more.exe
• moreamok.bin
• mp3 music search.*
• mp3 music search.lnk
• Mp3 wma.exe
• mp3.exe
• mp3.url
• mp3search_02.gif
• mp3serch.exe
• mp3_plugin.exe
• mprcouie.exe
• mspuztbg.exe
• multi platform.exe
• multi player.url
• muqhatod.exe
• muxibdom.exe
• mycvbdqu.exe
• MyKey disgo.exe
• Newabout.exe
• news and sports.*
• news and sports.lnk
• newsbarend.gif
• nimylprv.exe
• nnzmpuhm.exe
• now1.exe
• npddeapi.dll
• nshelstpgl.dll
• nxfbmzqu.exe
• objnew.exe
• ocyixkfk.exe
• office.url
• once each.exe
• one cdrom type more.exe
• online casinos.url
• online movies.*
• online movies.lnk
• onlinecontent.*
• onlinecontent.lnk
• oofrkxpe.exe
• oostshthptrv.dll
• Ooze About.exe
• ooze enc.exe
• oozeboob.exe
• ousszidrta.dll
• ovnolxvi.exe
• ozrkesxz.exe
• Part up soap.bin
• passthrough[1].htm
• pazgtrve.exe
• pbgqwhoj.exe
• peak that.dll
• peebqusz.exe
• pets.url
• pfn1.exe
• pharmacy.url
• phone internet.dll
• pile default.exe
• pile inter grim.bin
• ping once.exe
• pkajulyt.exe
• plan memo.exe
• plg_ie0.dll
• plus size.exe
• plus thunk mags.exe
• pnt1.exe
• poker.url
• PollJoy.exe
• PopFileSend.exe
• popupbaropener[1].htm
• prab.exe
• printer cartridges.*
• printing.url
• prnouestssstx.dll
• prnshgrdssb.dll
• program view.exe
• ProgramLogo.exe
• prxzoustustgr.dll
• pure bash.exe
• pure film.exe
• puretrust.exe
• pyo25.exe
• qhiqikdr.exe
• qhy81.exe
• qmgytdru.exe
• qprflyeg.exe
• qqzzm.exe
• qsmswpjl.exe
• qsrdfyqj.exe
• qtufbghm.exe
• quglwachfs.dll
• quveioot.exe
• qwxgxlrv.exe
• ReadmeSupport.exe
• real estate.url
• realaudio.exe
• Rect Cash.exe
• Rect load.exe
• rectsect.exe
• ref meal.exe
• refslow.exe
• rem15.exe
• rem18c.exe
• rem24.exe
• rem25.exe
• rem2ea.exe
• rem9b.exe
• remd.exe
• removelop.exe
• retail products.url
• rgg1.exe
• rgkajbu6.exe
• rnrvwnyq.exe
• rny1.exe
• roam info.exe
• roam.exe
• roulette.url
• rppzstyl.exe
• rpzgnwux.exe
• rule keep.dll
• ruledatawma.exe
• rulefindcamp.exe
• rvimsmkf.exe
• r_dnserr.gif
• safesoaplicenseplay.exe
• salrukuu.exe
• school essays and homework.url
• searchnow.gif
• sect name.exe
• sefiqovd.exe
• sekkzgif.exe
• self help.url
• seperateline.gif
• seperateline1.gif
• seperateline3.gif
• services.url
• settings browse.exe
• setup time.dll
• setupheck.exe
• sfkqtj.exe
• sfx71e4.tmp
• sfxbe.tmp
• SHIM NAME.exe
• shoes.url
• shopping.url
• shoucrck.exe
• SHOWLOAD.exe
• sign support mags.exe
• sizebuildlogo.exe
• sizewaitgrim.exe
• skfvhmqz.exe
• skipbase.exe
• slots.url
• slow move bat hold.exe
• sml1.exe
• Soft Live Wave.exe
• soft team.exe
• software find.exe
• software grim.dll
• software.url
• SoftwareAmen.exe
• software_plugin.exe
• spool32.exe
• sports books.url
• srytuikb.exe
• ssaxstxoaieoagrh.reg
• ssmeeibl.exe
• sstroallhqch.dll
• sta1.exe
• sta1f.exe
• sta2.exe
• sta3.exe
• stop hope.exe
• store funk.dll
• Support Settings.exe
• swamriyb.exe
• sxbmat.exe
• szwe.exe
• s_dnserr.gif
• taecoidy.exe
• tblchepruprgr.dll
• tchpeatr.exe
• tchstlmmdrm.htm
• team axis.exe
• Team idol.exe
• telecommunication.url
• telephone.url
• text sms messaging.url
• tfsuxbtg.exe
• tglblrll.exe
• that new settings.exe
• thatlong.dll
• the_ultimate_browser_enhancer.exe
• THIRD CLOSE.exe
• TickOkay.exe
• time funk aim.exe
• toolbar_uninstall.exe
• topleft.gif
• topright.gif
• toys.url
• training.url
• travel.*
• travel.url
• trdzhtxf.exe
• trmugnsu.exe
• trstdris.exe
• trstlskb.exe
• trstshcrscksr.dll
• try_b_16.gif
• twunk001.mtx
• txo1.exe
• typeplatform.exe
• ubipwdk.exe
• ukfroigl.dll
• uljpmexe.exe
• ulyfchcrcrdcr.htm
• ulyuiexeechp.exe
• unbzip2s.dll
• upckeetoutw.dll
• Upload Mapi.exe
• uqg1.exe
• utilities.url
• uyibygkh.exe
• veaeyglckr.dll
• veg32.dll.dll
• vestufck.exe
• vfthrcbr.exe
• vga admin.exe
• vga obj.exe
• vlluafrq.exe
• vv.bat
• vygaeifz.exe
• vyz1.exe
• vzmhfjyb.exe
• wait less.exe
• waybait.exe
• wa_inst.exe
• web default one.exe
• web design.url
• web hosting.url
• Web jump.exe
• website hosting.*
• win wave.exe
• winactive.exe
• winactivej.exe
• winactivej_unpacked.exe
• window skip.exe
• wine.url
• wipekind.exe
• WmaDrv.exe
• wmauoigj.exe
• woafrquzn.dll
• women.url
• wry1.exe
• wshbrybr.exe
• wtmtyuls.exe
• wuauboot.dll
• xazzynid.exe
• xlj1.exe
• xogyfhp.exe
• xxdfwvli.exe
• xxeoxiqu.exe
• xxx cartoons.url
• xyq.exe
• ydovgz.exe
• yeecrsoustoull.dll
• ykphmbre.exe
• ylynfste.exe
• ysaebwco.exe
• ystck32.exe
• yxogltoo.exe
• zaeoxdiu.exe
• zdmlfhmh.exe
• zgplkbke.exe
• ziebaeeoaeepr.dll
• znp1.exe
• zvpkxxtu.exe
• zvxcypnh.exe
• zwsghqhs.exe
• zxenmgrbl.dll
Warning: you should delete only those files which checksums are listed as malicious. There may be valid files with the same names in your system. We recommend you to use Lop.com Removal Tool for safe problem solution.
2. Delete the following malicious folders:
• C:\Documents and Settings\User\local settings\temp\delete.me\
• C:\Program Files\dvdfindload\
• C:\Program Files\elsewa~1\
• C:\Program Files\logobi~1\
• C:\Program Files\proxyn~1\
• C:\Program Files\roamju~1\
• C:\Program Files\showsu~1\
• C:\Program Files\showsupport\
• C:\Program Files\sitein~1\
• C:\Program Files\waveba~1\
• C:\Program Files\wavesu~1\
• C:\Program Files\waymov~1\
• C:\Program Files\wayvga~2\
• C:\Program Files\window active\
• c:\docume~1\yapü@w~1\applic~1\
• C:\Documents and Settings\User\application data\
• C:\Documents and Settings\User\application data\list cool loud math\
• C:\Documents and Settings\User\application data\memo01idleheart\
• C:\Documents and Settings\User\application data\one bolt bleh anti\
• C:\Documents and Settings\User\application data\roam surf part tick\
• C:\Documents and Settings\User\application data\save third mfcd boob\
• C:\Documents and Settings\User\local settings\temporary internet files\content.ie5\s9grsz83\
• C:\Documents and Settings\User\owner\local settings\temp\
• %favorites%\ adult\
• %favorites%\ business and finance\
• %favorites%\ computers and tech\
• %favorites%\ computers and tech\telecommunication\
• %favorites%\ cool stuff\
• %favorites%\ entertainment\
• %favorites%\ gambling\
• %favorites%\ on lifestyle\
• %favorites%\ on lifestyle\education\
• %favorites%\ on lifestyle\health and beauty\
• %favorites%\ on lifestyle\home and garden\
• %favorites%\entertainment\
• C:\Program Files\64comp~1\
• C:\Program Files\acidme~1\
• C:\Program Files\active download\
• C:\Program Files\armymo~1\
• C:\Program Files\burn media meta\
• C:\Program Files\cityai~1\
• C:\Program Files\creati~1\
• C:\Program Files\driveh~1\
• C:\Program Files\fourat~1\
• C:\Program Files\freein~1\
• C:\Program Files\global~1\
• C:\Program Files\greato~1\
• C:\Program Files\inside~1\
• C:\Program Files\jugsse~1\
• C:\Program Files\manager ace gram\
• C:\Program Files\mapigr~1\
• C:\Program Files\mathte~1\
• C:\Program Files\memoli~1\
• C:\Program Files\metaac~1\
• C:\Program Files\nounbe~1\
• C:\Program Files\objcdrom\
• C:\Program Files\objels~1\
• C:\Program Files\oozejo~1\
• C:\Program Files\progra~1\
• C:\Program Files\roamse~1\
• C:\Program Files\safeba~1\
• C:\Program Files\sectmp~1\
• C:\Program Files\thirda~1\
• C:\Program Files\trayokay\
• C:\Program Files\wavebo~1\
• C:\Windows\application data\
• C:\Windows\temp\
• C:\Windows\web\wallpaper\
• C:\Program Files\bone balm\
• C:\Program Files\that dale\
• C:\Program Files\windows\currentversion\runactive\
• C:\Documents and Settings\User\Application Data\HelpLoadUserStupid\
• C:\Documents and Settings\User\Application Data\helpmp3funkbits\
• C:\Documents and Settings\User\Application Data\holdcdromthepop\
• C:\Documents and Settings\User\Application Data\PLAY UPLOAD DASH CORN\
• C:\Documents and Settings\User\Application Data\PureUpSoapAxis\
• C:\Documents and Settings\User\Application Data\Stop Joy Info Bib\
• C:\Documents and Settings\User\Application Data\Surfchiccompshim\
• C:\Documents and Settings\User\Application Data\tray each cast okay\
• C:\Documents and Settings\User\Application Data\Warn bin chin jump\
• C:\Documents and Settings\User\Application Data\MATH MIX LONG JOY\
• C:\Documents and Settings\User\Application Data\Chin Exit Bin Love\
• C:\Documents and Settings\User\Application Data\GRIMONETYPEABOUT\
• C:\Documents and Settings\User\Application Data\ThatTheRdrProc\
• C:\Documents and Settings\User\Application Data\clockrectmemodelete\
• C:\Documents and Settings\User\Application Data\axiswarn\
• C:\Documents and Settings\User\Application Data\FilmIsoPlatformCast\
• C:\Documents and Settings\User\Application Data\64SHIM\
• C:\Documents and Settings\User\Application Data\rdrante\
• C:\Documents and Settings\User\Application Data\send grim bend tons\
• C:\Documents and Settings\User\Application Data\INFOHOLD\
• C:\Documents and Settings\User\Application Data\timedashgriminfo\
• C:\Documents and Settings\User\Application Data\idle clock title mode\
• C:\Documents and Settings\User\Application Data\More wait active less\
• C:\Documents and Settings\User\Application Data\Dupe trust vga sect\
• C:\Documents and Settings\User\Application Data\Pure Once Up Balm\
• C:\Documents and Settings\User\Application Data\INTERN~1\
• C:\Documents and Settings\User\Application Data\BLEHWI~1\
• C:\Documents and Settings\User\itch gram active great\
• C:\Documents and Settings\User\Application Data\FOURMA~1\
• C:\Documents and Settings\User\Application Data\JUMPDA~1\
• C:\Documents and Settings\User\Application Data\FLAGME~1\
• C:\Documents and Settings\User\Application Data\stupiddrive2flaw\
• C:\Documents and Settings\User\Application Data\DARTBU~1\
• C:\Documents and Settings\User\Application Data\MPEGOK~1\
• C:\Documents and Settings\User\Application Data\online tick default once\
• C:\Documents and Settings\User\Application Data\HELPDE~1\
• C:\Documents and Settings\User\Application Data\Skipprochelpdelete\
• C:\Documents and Settings\User\Application Data\LISTFA~1\
• C:\Documents and Settings\User\Application Data\vcbibcampelse\
• C:\Documents and Settings\User\Application Data\POPDAS~1\
• C:\Documents and Settings\User\Application Data\My-disgo\
• C:\Documents and Settings\User\Application Data\FragFlawSeekRef\
• C:\Documents and Settings\User\Application Data\NEWBON~1\
• C:\Documents and Settings\User\Application Data\htm heart error byte\
• C:\Documents and Settings\User\Application Data\SOAPIN~1\
• C:\Documents and Settings\User\Application Data\HOLE2~1\
• C:\Documents and Settings\User\Application Data\sendactivesoapthird\
• C:\Documents and Settings\User\Application Data\Load keep 4 two\
• C:\Documents and Settings\User\Application Data\SEEKMA~1\
• C:\Documents and Settings\User\Application Data\CDROMB~1\
• C:\Documents and Settings\User\Application Data\cdromrefmovebalm\
• C:\Documents and Settings\User\Application Data\info does heck window\
• C:\Documents and Settings\User\Application Data\procsoftwarewinlogo\
• C:\Documents and Settings\User\Application Data\faceflawclockchin\
• C:\Documents and Settings\User\Application Data\BrowseFileGreatSecond\
• C:\Documents and Settings\User\Application Data\Four wma that window\
• C:\Documents and Settings\User\Application Data\Tool Kind Meal Meet\
• C:\Documents and Settings\User\Application Data\five default mess idle\
• C:\Documents and Settings\User\Application Data\CREATI~1\
• C:\Documents and Settings\User\Application Data\supportaimfunktwo\
• ࡸ\
• C:\Documents and Settings\User\Application Data\long locks mfcd atom\
• C:\Documents and Settings\User\Application Data\denteqbikelies\
• C:\Windows\System\wnsxs~1\
• docume~1\karl\applic~1\creati~1\
• C:\Documents and Settings\User\Application Data\dart regs inter trans\
• docume~1\jenna\applic~1\trustt~1\
• C:\Documents and Settings\User\Application Data\chic chin grey tray\
• C:\Documents and Settings\User\Application Data\army tool\
• C:\Documents and Settings\User\Application Data\buildsafebike\
• C:\Documents and Settings\User\Application Data\eggs store aim cake\
• C:\Documents and Settings\User\Application Data\corn soft sign\
• C:\Documents and Settings\User\Application Data\CampBendNameBash\
• C:\Documents and Settings\User\Application Data\sizephone2itch\
• C:\Documents and Settings\User\Application Data\remotebarbliveref\
• C:\Documents and Settings\User\Application Data\SIXTHD~1\
• C:\Program Files\manager burn 16\
• C:\Documents and Settings\User\Application Data\INTRAD~1\
• C:\Documents and Settings\User\Application Data\FACENE~1\
• C:\Program Files\GLOBAL~1\
• C:\Documents and Settings\User\Application Data\GREATH~1\
• C:\Program Files\Knob test\
• C:\Windows\java\
• C:\Documents and Settings\User\Application Data\two scr mfcd meal\
3. Delete the following malicious registry entries and\or values:
• Key: clsid\{03e3d2bf-051f-5094-5068-c5ee261285bc} Value: @
• Key: CLSID\{07C0D34D-11D7-43F7-832B-C6BB41726F5F}
• Key: clsid\{0d4312e2-5e4d-4a27-a9d8-043e43904277} Value: @
• Key: clsid\{139e58c9-85b4-45db-9fc9-3919813709f0} Value: @
• Key: clsid\{1502ab76-0376-4b7b-8226-d34c941072f2} Value: @
• Key: clsid\{162ab497-087d-4fb3-83ba-4f5159613796} Value: @
• Key: clsid\{189210a0-36c2-11d7-9928-444553540000} Value: @
• Key: clsid\{18fd2e3d-35df-aa65-0952-7875de70845f} Value: @
• Key: clsid\{1a35419c-7394-4989-b3c5-6189eb06bd66} Value: @
• Key: clsid\{1e62ecd8-ae05-988b-f40a-369b2026409e} Value: @
• Key: clsid\{24f13043-edfc-446c-a07c-8ed6beb9e39e} Value: @
• Key: clsid\{25f1bb0d-2d8c-4dda-ad46-684719d09b7e} Value: @
• Key: clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662} Value: @
• Key: clsid\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1} Value: @
• Key: clsid\{3247f2dc-f2a1-9d95-a072-dbb3e1690643} Value: @
• Key: clsid\{3dcdb313-84a2-6218-64ee-1110caa46fb5} Value: @
• Key: clsid\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416} Value: @
• Key: clsid\{562a6158-bcae-e53f-d40e-403ef85b70a4} Value: @
• Key: clsid\{56d59f1a-e81a-c85f-d7bb-07a6f380a834} Value: @
• Key: clsid\{7b49a2a5-b45f-46f3-ac60-2578477671ee} Value: @
• Key: clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44} Value: @
• Key: clsid\{84b55b37-aff7-8942-25ac-f0c5d7a32619} Value: @
• Key: clsid\{8522f9b3-38c5-4aa4-ae40-7401f1bbc851} Value: @
• Key: clsid\{8f1a15a7-92b0-4467-ad12-369f60174008} Value: @
• Key: clsid\{914d0f58-630a-465d-8e28-aea5158e6606} Value: @
• Key: CLSID\{9B35A850-66AB-4c6d-8A66-136ECADCD904}
• Key: clsid\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa} Value: @
• Key: clsid\{b0a11536-00dc-268e-042a-6cb617e6965e} Value: @
• Key: clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} Value: @
• Key: clsid\{bcd5534b-2f54-428e-b3f3-e03b6f10a233} Value: @
• Key: clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} Value: @
• Key: clsid\{c4b41c0c-4e7b-37e0-7b80-ed6437c8eb2c} Value: @
• Key: clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754} Value: @
• Key: clsid\{c61c874f-60bb-4ee7-8afa-92dc85b180c9} Value: @
• Key: clsid\{c65cad7f-e382-4b90-95c6-89123d0aee61} Value: @
• Key: clsid\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd} Value: @
• Key: clsid\{d1d9e2f6-c179-4386-b197-c4a85c026f67} Value: @
• Key: clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea} Value: @
• Key: clsid\{d31e488c-9ed3-4fb0-8f82-f1d559553c06} Value: @
• Key: CLSID\{D44B5436-B3E4-4595-B0E9-106690E70A58}
• Key: clsid\{e58e7c45-c426-993a-2a9f-3640a22bf60e} Value: @
• Key: clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} Value: @
• Key: clsid\{eb9bdd24-ccf1-4a87-98c0-579dba9bda83} Value: @
• Key: clsid\{ec28a907-37ac-4d9a-a928-ee2ba555a141} Value: @
• Key: clsid\{f2a5a613-88e0-b267-ce78-aedd8db3ce45} Value: @
• Key: clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4} Value: @
• Key: clsid\{fe54e96b-f246-4ed7-97a2-e27086ce5b21} Value: @
• Key: coal.insidechic Value: @
• Key: dybvi.rngrstrm Value: @
• Key: invisiblepop.invisible Value: @
• Key: pop.phonebird Value: @
• Key: Proto.handler
• Key: PROTOCOLS\Handler\ayb
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{d44b5436-b3e4-4595-b0e9-106690e70a58} Value: @
• Key: Swish.BrowserHelper
• Key: Swish.ToolBand
• Key: typelib\{1a35419c-7394-4989-b3c5-6189eb06bd66} Value: @
• Key: typelib\{8f1a15a7-92b0-4467-ad12-369f60174008} Value: @
• Key: TypeLib\{C65CAD7F-E382-4B90-95C6-89123D0AEE61}
• Key: typelib\{d31e488c-9ed3-4fb0-8f82-f1d559553c06} Value: @
• Key: typelib\{dffe1ccf-e1e8-4470-9962-73277cc2c898} Value: @
• Key: typelib\{fe54e96b-f246-4ed7-97a2-e27086ce5b21} Value: @
• Key: udhiu.rngrstrjyvscd Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{18fd2e3d-35df-aa65-0952-7875de70845f} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{38d8beb0-8e9c-48e2-b36e-759615f9930f} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{562a6158-bcae-e53f-d40e-403ef85b70a4} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{56d59f1a-e81a-c85f-d7bb-07a6f380a834} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{84b55b37-aff7-8942-25ac-f0c5d7a32619} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{b0a11536-00dc-268e-042a-6cb617e6965e} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{e58e7c45-c426-993a-2a9f-3640a22bf60e} Value: @
• Key: software\microsoft\internet explorer\toolbar\webbrowser\{fe289ae1-16e9-9235-420a-95ff90a194f4} Value: @
• Key: Software\Microsoft\Windows\CurrentVersion\Backup
• Key: Software\TrinityAYB
• Key: Software\WinActive
• Key: software\xsswbrwougouecr Value: @
• Key: software\classes\clsid\{092d8662-f5c6-41a3-be1d-14d940f6010d} Value: @
• Key: software\classes\clsid\{139e58c9-85b4-45db-9fc9-3919813709f0} Value: @
• Key: software\classes\clsid\{162ab497-087d-4fb3-83ba-4f5159613796} Value: @
• Key: software\classes\clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662} Value: @
• Key: software\classes\clsid\{33a4af42-fc94-4873-8bc0-1da97d6edd6d} Value: @
• Key: software\classes\clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44} Value: @
• Key: software\classes\clsid\{914d0f58-630a-465d-8e28-aea5158e6606} Value: @
• Key: software\classes\clsid\{9b35a850-66ab-4c6d-8a66-136ecadcd904} Value: @
• Key: software\classes\clsid\{b0a11536-00dc-268e-042a-6cb617e6965e} Value: @
• Key: software\classes\clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} Value: @
• Key: software\classes\clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} Value: @
• Key: software\classes\clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754} Value: @
• Key: software\classes\clsid\{c8a113e0-6da0-4f0e-bb89-9726212aaf32} Value: @
• Key: software\classes\clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea} Value: @
• Key: software\classes\clsid\{d44b5436-b3e4-4595-b0e9-106690e70a58} Value: @
• Key: software\classes\clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} Value: @
• Key: software\classes\clsid\{f689307b-c3cd-4d10-aaf2-d1f75358a5c2} Value: @
• Key: software\classes\clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4} Value: @
• Key: software\microsoft\internet explorer\toolbar\{18fd2e3d-35df-aa65-0952-7875de70845f} Value: @
• Key: software\microsoft\internet explorer\toolbar\{1e62ecd8-ae05-988b-f40a-369b2026409e} Value: @
• Key: software\microsoft\internet explorer\toolbar\{289848e1-2d29-4d00-9ff1-0c09a1256662} Value: @
• Key: software\microsoft\internet explorer\toolbar\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1} Value: @
• Key: software\microsoft\internet explorer\toolbar\{562a6158-bcae-e53f-d40e-403ef85b70a4} Value: @
• Key: software\microsoft\internet explorer\toolbar\{56d59f1a-e81a-c85f-d7bb-07a6f380a834} Value: @
• Key: software\microsoft\internet explorer\toolbar\{7b49a2a5-b45f-46f3-ac60-2578477671ee} Value: @
• Key: software\microsoft\internet explorer\toolbar\{80fddae7-d472-4e1f-8c3a-36b75a091c44} Value: @
• Key: software\microsoft\internet explorer\toolbar\{84b55b37-aff7-8942-25ac-f0c5d7a32619} Value: @
• Key: software\microsoft\internet explorer\toolbar\{914d0f58-630a-465d-8e28-aea5158e6606} Value: @
• Key: software\microsoft\internet explorer\toolbar\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa} Value: @
• Key: software\microsoft\internet explorer\toolbar\{b0a11536-00dc-268e-042a-6cb617e6965e} Value: @
• Key: software\microsoft\internet explorer\toolbar\{c4b41c0c-4e7b-37e0-7b80-ed6437c8eb2c} Value: @
• Key: software\microsoft\internet explorer\toolbar\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754} Value: @
• Key: software\microsoft\internet explorer\toolbar\{d3119527-9be0-422c-b9fa-5143d75dfbea} Value: @
• Key: software\microsoft\internet explorer\toolbar\{e58e7c45-c426-993a-2a9f-3640a22bf60e} Value: @
• Key: software\microsoft\internet explorer\toolbar\{ec28a907-37ac-4d9a-a928-ee2ba555a141} Value: @
• Key: software\microsoft\internet explorer\toolbar\{f689307b-c3cd-4d10-aaf2-d1f75358a5c2} Value: @
• Key: software\microsoft\internet explorer\toolbar\{fe289ae1-16e9-9235-420a-95ff90a194f4} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{03e3d2bf-051f-5094-5068-c5ee261285bc} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{092d8662-f5c6-41a3-be1d-14d940f6010d} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{139e58c9-85b4-45db-9fc9-3919813709f0} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{162ab497-087d-4fb3-83ba-4f5159613796} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{24f13043-edfc-446c-a07c-8ed6beb9e39e} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{26dc15e7-ea6e-378b-68aa-cd224b3ad7c3} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{3247f2dc-f2a1-9d95-a072-dbb3e1690643} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{33a4af42-fc94-4873-8bc0-1da97d6edd6d} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{3dcdb313-84a2-6218-64ee-1110caa46fb5} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{c8a113e0-6da0-4f0e-bb89-9726212aaf32} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd} Value: @
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D44B5436-B3E4-4595-B0E9-106690E70A58}
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} Value: @
• Key: software\microsoft\windows\currentversion\explorer\browser helper objects\{f2a5a613-88e0-b267-ce78-aedd8db3ce45} Value: @
• Key: software\microsoft\windows\currentversion\installer\products\c8d617f6f8933d11581e000540386890\webpublfiles\usage Value: @
• Key: software\microsoft\windows\currentversion\run\blehantimapimeta Value: @
• Key: software\microsoft\windows\currentversion\run\cam-6415[1] Value: @
• Key: software\microsoft\windows\currentversion\run\defyactive Value: @
• Key: software\microsoft\windows\currentversion\run\ford site Value: @
• Key: software\microsoft\windows\currentversion\run\frckshll Value: @
• Key: software\microsoft\windows\currentversion\run\idle heart free wipe Value: @
• Key: software\microsoft\windows\currentversion\run\iso real Value: @
• Key: software\microsoft\windows\currentversion\run\list 4 Value: @
• Key: software\microsoft\windows\currentversion\run\loud math help cash Value: @
• Key: software\microsoft\windows\currentversion\run\meta mail Value: @
• Key: software\microsoft\windows\currentversion\run\mfcd boob film frag Value: @
• Key: software\microsoft\windows\currentversion\run\move delete Value: @
• Key: software\microsoft\windows\currentversion\run\parttickwaitjugs Value: @
• Key: software\microsoft\windows\currentversion\run\proxycity Value: @
• Key: software\microsoft\windows\currentversion\run\setup wipe Value: @
• Key: software\microsoft\windows\currentversion\run\start idle Value: @
• Key: software\microsoft\windows\currentversion\run\two bags Value: @
• Key: software\microsoft\windows\currentversion\run\twquh Value: @
• Key: software\microsoft\windows\currentversion\run\ubipwdk Value: @
• Key: software\microsoft\windows\currentversion\run\uqzborauqedw Value: @
• Key: software\microsoft\windows\currentversion\run\winactive Value: @
• Key: software\microsoft\windows\currentversion\run\window balm Value: @
• Key: software\microsoft\windows\currentversion\run\ws2f35t Value: @
• Key: software\microsoft\windows\currentversion\run\wstpsh Value: @
• Key: software\microsoft\windows\currentversion\run\ybmk Value: @
• Key: software\microsoft\windows\currentversion\uninstall\nthlllleth Value: @
• Key: software\microsoft\windows\currentversion\uninstall\pprwazmprss Value: @
• Key: software\microsoft\windows\currentversion\uninstall\shubryochuss Value: @
• Key: bvqye.oustscre
• Key: bvqye.oustscre.1
• Key: bvqye.oustscre\CurVer
• Key: cdbnz.oustscrqzbrpy
• Key: cdbnz.oustscrqzbrpy.1
• Key: cdbnz.oustscrqzbrpy\CurVer
• Key: cetrf.rjshhouz
• Key: cetrf.rjshhouz.1
• Key: CLSID\{03e22cd3-ff65-4fd7-98cb-ab6b1d24034d}
• Key: CLSID\{07304db3-22dd-491a-932b-59cbce84422b}
• Key: CLSID\{09ad2eb0-9b56-4b08-9fdb-597ca13f084c}
• Key: CLSID\{113b0dd9-9059-4fff-aca2-e7d12fce5345}
• Key: CLSID\{15818a0b-3df7-4544-8f79-379c821bb0cc}
• Key: CLSID\{18922f00-0a29-11d8-910b-00047690cc2a}
• Key: CLSID\{18922f01-0a29-11d8-910b-00047690cc2a}
• Key: CLSID\{2a8786d6-6a6b-4176-ae84-73c661a21f88}
• Key: CLSID\{4acbba89-5b67-4e47-8bd3-0d84a504d9b2}
• Key: CLSID\{5038e81c-dd9b-462c-8ff4-1d92ab1435e8}
• Key: CLSID\{5a26980e-f93f-436c-a63b-35e46ee097d0}
• Key: CLSID\{6883643a-2d81-481a-b094-802697f00f1f}
• Key: CLSID\{7b718724-b392-4f52-a7a7-c71c2c6112e3}
• Key: CLSID\{852a9e98-3b8d-43d8-bffe-4e4215521fef}
• Key: CLSID\{870bb107-485b-4c4f-8271-89574d6081c6}
• Key: CLSID\{8d9acd24-2cc7-4035-9664-b2e528b3ea57}
• Key: CLSID\{91dac320-5c93-11d7-b0eb-00805f534689}
• Key: CLSID\{91dac321-5c93-11d7-b0eb-00805f534689}
• Key: CLSID\{945f3b06-83e0-4edb-a86f-d4fafd41dba5}
• Key: CLSID\{94ff852c-21d3-488d-bda0-9ce39b5ad904}
• Key: CLSID\{a1f7ab69-c1fb-4b73-bf1d-cca87a96b3f3}
• Key: CLSID\{bad32641-1d32-11d8-9059-444553540000}
• Key: CLSID\{c08bc100-951a-4515-b759-ffa58cfea004}
• Key: CLSID\{c12bfa73-4513-4b82-9410-6af4a19659a3}
• Key: CLSID\{c1ee67a5-f26b-4fc4-8dd4-3e11ae52eec7}
• Key: CLSID\{c5e15f88-bc0f-49ac-a411-b9f01fd7ec11}
• Key: CLSID\{ca064947-0f9a-4967-9269-8c370d7f4ce0}
• Key: CLSID\{cd2696db-0766-44cc-b1b7-e5af9cc24c85}
• Key: CLSID\{d76ac888-499e-4207-a77c-1c9896c4bad7}
• Key: CLSID\{e072431c-2044-4e56-84da-ac83baad78c3}
• Key: CLSID\{eaf81c80-ad77-4936-ac6b-dd1b8b1315d4}
• Key: CLSID\{ec5da27c-5ae5-4d0f-9e1c-fba1030c8934}
• Key: CLSID\{f4a058f2-9387-4270-8878-ca49d19f9623}
• Key: CLSID\{fdca247e-e111-409d-a3ba-259e29d297ee}
• Key: crjxd.equlootu
• Key: crjxd.equlootu.1
• Key: dafgm.equloottzkvyp
• Key: dafgm.equloottzkvyp.1
• Key: eghqp.yshfoamreseif
• Key: eghqp.yshfoamreseif.1
• Key: gbkcc.brtkthguywyte
• Key: gbkcc.brtkthguywyte.1
• Key: hbznu.gobfsqur
• Key: hbznu.gobfsqur.1
• Key: hckwo.llsthiqmtvejj
• Key: hckwo.llsthiqmtvejj.1
• Key: hwtjq.rjshhoud
• Key: hwtjq.rjshhoud.1
• Key: ihliw.yshfoamq
• Key: ihliw.yshfoamq.1
• Key: jfvam.zauglqlpnydzy
• Key: jfvam.zauglqlpnydzy.1
• Key: ksilm.rjshhouppiibi
• Key: ksilm.rjshhouppiibi.1
• Key: mgbwr.uchlquotwatij
• Key: mgbwr.uchlquotwatij.1
• Key: mtcrz.uchlquol
• Key: mtcrz.uchlquol.1
• Key: pacbo.yshfoamd
• Key: pacbo.yshfoamd.1
• Key: pacbo.yshfoamd\CLSID
• Key: Proto.handler.1
• Key: pxoir.yshfoamg
• Key: pxoir.yshfoamg.1
• Key: qmhrr.brtkthgbqblzz
• Key: qmhrr.brtkthgbqblzz.1
• Key: rrzid.achzthbl
• Key: rrzid.achzthbl.1
• Key: sljeh.yshfoamw
• Key: sljeh.yshfoamw.1
• Key: Software\acrquxqueedreeprly
• Key: Software\Classes\DRIVE.OwnsDefy
• Key: Software\Classes\FRAG.elseChin
• Key: Software\Classes\FRAG.elseChin.1
• Key: SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8522F9B3-38C5-4AA4-AE40-7401F1BBC851}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03e22cd3-ff65-4fd7-98cb-ab6b1d24034d}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07304db3-22dd-491a-932b-59cbce84422b}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{15818a0b-3df7-4544-8f79-379c821bb0cc}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18922f00-0a29-11d8-910b-00047690cc2a}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2a8786d6-6a6b-4176-ae84-73c661a21f88}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8108474E-F221-1398-B1F6-5CEFCD581C8D}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{852a9e98-3b8d-43d8-bffe-4e4215521fef}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8d9acd24-2cc7-4035-9664-b2e528b3ea57}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{91dac320-5c93-11d7-b0eb-00805f534689}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{94ff852c-21d3-488d-bda0-9ce39b5ad904}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a1f7ab69-c1fb-4b73-bf1d-cca87a96b3f3}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c5e15f88-bc0f-49ac-a411-b9f01fd7ec11}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DACBB2E8-6FFF-17C0-E7CF-4709098D8441}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{eaf81c80-ad77-4936-ac6b-dd1b8b1315d4}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ec5da27c-5ae5-4d0f-9e1c-fba1030c8934}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f4a058f2-9387-4270-8878-ca49d19f9623}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\oaeohprxem
• Key: Software\trmwowdrbldrllst
• Key: Software\WinActive\Basic
• Key: Swish.BrowserHelper.1
• Key: Swish.ToolBand.1
• Key: tdumx.rjshhouaovfrk
• Key: tdumx.rjshhouaovfrk.1
• Key: uyjhk.achzthbfqvyxo
• Key: uyjhk.achzthbfqvyxo.1
• Key: vshls.brtkthgg
• Key: vshls.brtkthgg.1
• Key: vvxlj.rdllbllrrynui
• Key: vvxlj.rdllbllrrynui.1
• Key: vwzjt.yshfoamzymdle
• Key: vwzjt.yshfoamzymdle.1
• Key: wkjrd.yshfoame
• Key: wkjrd.yshfoame.1
• Key: wokhf.zauglqlm
• Key: wokhf.zauglqlm.1
• Key: xnihy.tueatrtg
• Key: xnihy.tueatrtg.1
• Key: xsrqy.rdllbllp
• Key: xsrqy.rdllbllp.1
• Key: xzouz.llsthiqi
• Key: xzouz.llsthiqi.1
• Key: yhypv.tueatrtmdahez
• Key: yhypv.tueatrtmdahez.1
• Key: zhnhs.brtkthge
• Key: zhnhs.brtkthge.1
• Key: CLSID\{74734139-76EA-E51A-D38C-1E5BD64F983C}\InprocServer32
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Bait Global
• Key: CLSID\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}\InprocServer32 Value: ThreadingModel
• Key: Software\Classes\CLSID\{4F348742-4286-F2ED-6FB3-371AE0D97F04} Value: 43FA8F84
• Key: Software\Classes\CLSID\{4F348742-4286-F2ED-6FB3-371AE0D97F04}\InprocServer32 Value: ThreadingModel
• Key: Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F348742-4286-F2ED-6FB3-371AE0D97F04}
• Key: CLSID\{8CD59458-ECF2-EA07-E89C-02102AF66A5F}\InprocServer32
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}\iexplore Value: Time
• Key: SOFTWARE\Classes\CLSID\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864} Value: 05B08A79
• Key: SOFTWARE\Classes\CLSID\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}\InprocServer32 Value: ThreadingModel
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {0185db52-4c39-44f4-b4c9-f8a3ef1162bb}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {4acbba89-5b67-4e47-8bd3-0d84a504d9b2}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {5038e81c-dd9b-462c-8ff4-1d92ab1435e8}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {7b718724-b392-4f52-a7a7-c71c2c6112e3}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {870bb107-485b-4c4f-8271-89574d6081c6}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {91dac321-5c93-11d7-b0eb-00805f534689}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {945f3b06-83e0-4edb-a86f-d4fafd41dba5}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {9B35A850-66AB-4c6d-8A66-136ECADCD904}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {c08bc100-951a-4515-b759-ffa58cfea004}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {c12bfa73-4513-4b82-9410-6af4a19659a3}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {c1ee67a5-f26b-4fc4-8dd4-3e11ae52eec7}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {ca064947-0f9a-4967-9269-8c370d7f4ce0}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {cd2696db-0766-44cc-b1b7-e5af9cc24c85}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {d76ac888-499e-4207-a77c-1c9896c4bad7}
• Key: software\microsoft\internet explorerinternet0%\Toolbar Value: {e072431c-2044-4e56-84da-ac83baad78c3}
• Key: software\microsoft\internet explorerinternet0%\Toolbar\WebBrowser Value: {18922F01-0A29-11D8-910B-00047690CC2A}
• Key: software\microsoft\internet explorerinternet0%\Toolbar\WebBrowser Value: {38D8BEB0-8E9C-48E2-B36E-759615F9930F}
• Key: software\microsoft\internet explorerinternet0%\Toolbar\WebBrowser Value: {FDCA247E-E111-409D-A3BA-259E29D297EE}
• Key: Software\Microsoft\Windows NT\CurrentVersion\Windows Value: AppInit_DLLs
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: searchweb2.com
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: www.searchweb2.com
• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\View32Joy Value: UninstallString
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: search200.com
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: www.search200.com
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: dns-look-up.com
• Key: Software\Microsoft\Internet Explorer\New Windows\Allow Value: www.dns-look-up.com
• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\surf ace about Value: DisplayName
• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\surf ace about Value: UninstallString
• Key: Software\Microsoft\Windows\CurrentVersion\The Meal Ace Value: LogoEggs
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}\iexplore Value: Type
• Key: SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{55C23FF8-82D9-3B7C-EDDC-1CB688B2A864}\iexplore Value: Count
• Key: Software\Microsoft\Windows\CurrentVersion\Uninstall\surf ace about Value: DisplayName
• Key: software\microsoft\internet explorerinternet0%\Main Value: Search Bar
• Key: software\microsoft\internet explorerinternet0%\Main Value: Search Bar
• Key: software\microsoft\internet explorerinternet0%\Main Value: Search Page
• Key: software\microsoft\internet explorerinternet0%\Main Value: Search Page
• Key: software\microsoft\internet explorerinternet0%\Main Value: Start Page
• Key: software\microsoft\internet explorerinternet0%\Main Value: Start Page
• Key: software\microsoft\internet explorerinternet0%\Search Value: SearchAssistant
• Key: software\microsoft\internet explorerinternet0%\Search Value: SearchAssistant
• Key: Software\Microsoft\Windows NT\CurrentVersion\Winlogon Value: Userinit
• Key: Software\Microsoft\Internet Explorer\Main Value: Start Page
• Key: Software\Microsoft\Internet Explorer\Main Value: Search Bar
• Key: Software\Microsoft\Internet Explorer\Main Value: Start Page
• Key: Software\Microsoft\Internet Explorer\Main Value: Search Bar
• Key: Software\Microsoft\Internet Explorer\Main Value: Start Page
• Key: Software\Microsoft\Internet Explorer\Main Value: Search Bar
• Key: Software\Microsoft\Internet Explorer\Main Value: Start Page
• Key: Software\Microsoft\Internet Explorer\Main Value: Search Bar
• Key: Software\Microsoft\Internet Explorer\Main Value: Start Page
Warning: If value is listed for some registry entries, you should only clear these values and leave keys with such values untouched. We recommend you to use Lop.com Removal Tool for safe problem solution.
Here are the descriptions of problems connected with Lop.com and 1 eggs.exe we received earlier:
I think this is spyware
Problem Summary: I think this is spyware
roamse~1.exe window keeps popping up every 30 minutes - how do I get rid of this?
thank you
Our support has contacted the author of this message, Bounty, and helped to solve his problem.
bend upload.exe
Problem Summary: bend upload.exe
Starting up PC this comes up as error. Cannot load bend upload.exe How do I fix this as I do not know what this program is.
Our support has contacted the author of this message, Phillip, and helped to solve his problem.
Next threat: LoudMarketing »
Learn more about Lop.com and 1 eggs.exe »
« Back to catalog
Solution: 172
|