Code : Bx1FXw1WYrefkolHf26AuVa+GJk02Mck
[00-PROCESS]**allpopsvi -/- C:\Program Files\allpopup\allpopsvi.exe
[00-PROCESS]**allpopup -/- C:\Program Files\allpopup\allpopup.exe
[00-PROCESS]**badakcodecpack -/- C:\Program Files\badak multicodec\badakcodecpack.exe
[00-PROCESS]**BasicSafe -/- C:\Program Files\BasicSafe\BasicSafe.exe
[00-PROCESS]**boansafesvc -/- C:\Program Files\boansafe\boansafesvc.exe
[00-PROCESS]**boostercleansvc -/- C:\Program Files\boosterclean\boostercleansvc.exe
[00-PROCESS]**BSAutoUpdate -/- C:\Program Files\BasicSafe\BSAutoUpdate.exe
[00-PROCESS]**CineRakCouponUpdater -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe
[00-PROCESS]**Cleaner -/- C:\Program Files\UtilZone\Cleaner.exe
[00-PROCESS]**clgsve -/- C:\Program Files\Windows CloudGet\clgsve.exe
[00-PROCESS]**clgsvr -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[00-PROCESS]**clickpang -/- C:\Program Files\clickpang\clickpang.exe
[00-PROCESS]**clickpang_super -/- C:\Windows\system32\clickpang_super.exe
[00-PROCESS]**doro-search -/- C:\Program Files\doro-search\doro-search.exe
[00-PROCESS]**doro-searchUp -/- C:\Program Files\doro-search\doro-searchUp.exe
[00-PROCESS]**ezenjoy -/- C:\Program Files\ezenjoy\ezenjoy.exe
[00-PROCESS]**hcpms -/- C:\Program Files\hcpop\hcpms.exe
[00-PROCESS]**HelpInfo -/- C:\Program Files\HelpInfo\HelpInfo.exe
[00-PROCESS]**HelpInfoMtr -/- C:\Program Files\HelpInfo\HelpInfoMtr.exe
[00-PROCESS]**HelpInfouck -/- C:\Program Files\HelpInfo\HelpInfouck.exe
[00-PROCESS]**infocard -/- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\insafeclient\ismsvc.exe
[00-PROCESS]**ismsvc -/- C:\Program Files\Windows ISM\ismsvc.exe
[00-PROCESS]**keypang -/- C:\Program Files\KeyPang\keypang.exe
[00-PROCESS]**linkdirectT -/- C:\Program Files\LinkDirect\linkdirectT.exe
[00-PROCESS]**lstspop -/- C:\Program Files\lastpopup\lstspop.exe
[00-PROCESS]**lstspsp -/- C:\Program Files\lastpopup\lstspsp.exe
[00-PROCESS]**lstspsv -/- C:\Program Files\lastpopup\lstspsv.exe
[00-PROCESS]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[00-PROCESS]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe
[00-PROCESS]**nextray -/- C:\Program Files\nextray\nextray.exe
[00-PROCESS]**PatchUpInit -/- C:\Program Files\PatchUp_Plus\PatchUpInit.exe
[00-PROCESS]**PatchUpPlus -/- C:\Program Files\PatchUp_Plus\PatchUpPlus.exe
[00-PROCESS]**PresentationFontCache -/- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
[00-PROCESS]**ProtectTop -/- C:\Program Files\ProtectTop\ProtectTop.exe
[00-PROCESS]**RCleanT -/- C:\Program Files\RClean\RCleanT.exe
[00-PROCESS]**RCleanUpdate -/- C:\Program Files\RClean\RCleanUpdate.exe
[00-PROCESS]**RepairCode -/- C:\Program Files\HelpInfo\RepairCode.exe
[00-PROCESS]**RepairCode -/- C:\Program Files\SaveInfo\RepairCode.exe
[00-PROCESS]**SaveCom -/- C:\Program Files\SaveCom\SaveCom.exe
[00-PROCESS]**SaveInfo -/- C:\Program Files\SaveInfo\SaveInfo.exe
[00-PROCESS]**SaveInfoMtr -/- C:\Program Files\SaveInfo\SaveInfoMtr.exe
[00-PROCESS]**SaveInfouck -/- C:\Program Files\SaveInfo\SaveInfouck.exe
[00-PROCESS]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[00-PROCESS]**STARUpdate -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe
[00-PROCESS]**svcwsmwin -/- C:\Windows\system32\svcwsmwin.exe
[00-PROCESS]**SystemChkUp -/- C:\Program Files\Window SysCheck\SystemChkUp.exe
[00-PROCESS]**UnGmarket -/- C:\Program Files\Gmarket\UnGmarket.exe
[00-PROCESS]**uninst -/- C:\Program Files\allpopup\uninst.exe
[00-PROCESS]**uninst -/- C:\Program Files\HelpInfo\uninst.exe
[00-PROCESS]**uninst -/- C:\Program Files\SaveInfo\uninst.exe
[00-PROCESS]**update -/- C:\Program Files\Window Alarm\update.exe
[00-PROCESS]**update -/- C:\Program Files\Window SysCheck\update.exe
[00-PROCESS]**updatePlus -/- C:\Program Files\PatchUp_Plus\updatePlus.exe
[00-PROCESS]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[00-PROCESS]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp.exe
[00-PROCESS]**voasvc -/- C:\Program Files\Windows VOA\voasvc.exe
[00-PROCESS]**wdrwsmsvc -/- C:\Windows\system32\wdrwsmsvc.exe
[00-PROCESS]**wfortune -/- C:\Program Files\Window Fortune\wfortune.exe
[00-PROCESS]**WinAlarm -/- C:\Program Files\Window Alarm\WinAlarm.exe
[00-PROCESS]**WinAlarmUp -/- C:\Program Files\Window Alarm\WinAlarmUp.exe
[00-PROCESS]**WindowWizardT -/- C:\Program Files\WindowWizard\WindowWizardT.exe
[00-PROCESS]**winesrv -/- C:\Program Files\Windows Everlive\winesrv.exe
[00-PROCESS]**WinForTuneUp -/- C:\Program Files\Window Fortune\WinForTuneUp.exe
[00-PROCESS]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[00-PROCESS]**WinProUp -/- C:\Program Files\WinPro\WinProUp.exe
[00-PROCESS]**WinWizardUpdater -/- C:\Program Files\WindowWizard\WinWizardUpdater.exe
[00-PROCESS]**wmpnetwk -/- C:\Program Files\Windows Media Player\wmpnetwk.exe
[00-PROCESS]**WSystemInfoApp -/- C:\Program Files\Window SysCheck\WSystemInfoApp.exe
[01-HKCUREG]**badakcodecpack -/- C:\Program Files\badak multicodec\badakcodecpack.exe -o
[01-HKCUREG]**CineRakCoupon -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe /start
[01-HKCUREG]**clickpang.exe -/- C:\Program Files\clickpang\clickpang.exe
[01-HKCUREG]**ezenjoy -/- C:\Program Files\ezenjoy\ezenjoy.exe -o
[01-HKCUREG]**HelpInfo -/- C:\Program Files\HelpInfo\HelpInfo.exe /run1
[01-HKCUREG]**KeyPang -/- C:\Program Files\KeyPang\keypang.exe
[01-HKCUREG]**linkdirectmain -/- C:\Program Files\LinkDirect\linkdirectT.exe -o
[01-HKCUREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[01-HKCUREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[01-HKCUREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[01-HKCUREG]**PatchUp_Plus -/- C:\Program Files\PatchUp_Plus\updatePlus.exe -r
[01-HKCUREG]**ProtectTop -/- C:\Program Files\ProtectTop\ProtectTop.exe /run1
[01-HKCUREG]**RCleanMain -/- C:\Program Files\RClean\RCleanT.exe -o
[01-HKCUREG]**RCleanUp -/- C:\Program Files\RClean\RCleanUpdate.exe /up
[01-HKCUREG]**SaveCom -/- C:\Program Files\SaveCom\SaveCom.exe /run1
[01-HKCUREG]**SaveInfo -/- C:\Program Files\SaveInfo\SaveInfo.exe /run1
[01-HKCUREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[01-HKCUREG]**startoolsup -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe -o
[01-HKCUREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[01-HKCUREG]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp /start
[01-HKCUREG]**windowwizard -/- C:\Program Files\WindowWizard\WindowWizardT.exe -o
[01-HKCUREG]**windowwizardup -/- C:\Program Files\WindowWizard\WinWizardUpdater.exe /wo
[01-HKCUREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[01-HKCUREG]**WinProUp -/- C:\Program Files\WinPro\WinProUp.exe /start
[02-HKLMREG]**badakcodecpack -/- C:\Program Files\badak multicodec\badakcodecpack.exe -o
[02-HKLMREG]**CineRakCoupon -/- C:\Program Files\CineRak\CineRakCoupon\CineRakCouponUpdater.exe /start
[02-HKLMREG]**clickpang.exe -/- C:\Program Files\clickpang\clickpang.exe
[02-HKLMREG]**ezenjoy -/- C:\Program Files\ezenjoy\ezenjoy.exe -o
[02-HKLMREG]**HelpInfo -/- C:\Program Files\HelpInfo\HelpInfo.exe /run1
[02-HKLMREG]**KeyPang -/- C:\Program Files\KeyPang\keypang.exe
[02-HKLMREG]**linkdirectmain -/- C:\Program Files\LinkDirect\linkdirectT.exe -o
[02-HKLMREG]**metablogagent -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\metablogagent.exe
[02-HKLMREG]**MetablogNewIssues -/- C:\Users\Administrator\AppData\Local\MetablogNewIssues\MetablogNewIssues.exe /byboot
[02-HKLMREG]**nextray -/- C:\Program Files\nextray\nextray.exe
[02-HKLMREG]**PatchUp_Plus -/- C:\Program Files\PatchUp_Plus\updatePlus.exe -r
[02-HKLMREG]**ProtectTop -/- C:\Program Files\ProtectTop\ProtectTop.exe /run1
[02-HKLMREG]**RCleanMain -/- C:\Program Files\RClean\RCleanT.exe -o
[02-HKLMREG]**RCleanUp -/- C:\Program Files\RClean\RCleanUpdate.exe /up
[02-HKLMREG]**SaveCom -/- C:\Program Files\SaveCom\SaveCom.exe /run1
[02-HKLMREG]**SaveInfo -/- C:\Program Files\SaveInfo\SaveInfo.exe /run1
[02-HKLMREG]**signkey -/- C:\Users\Administrator\AppData\Local\signkey\signkey.exe
[02-HKLMREG]**startoolsup -/- C:\Program Files\STARtools\StarToolsUP\STARUpdate.exe -o
[02-HKLMREG]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.exe
[02-HKLMREG]**UtilZoneUp -/- C:\Program Files\UtilZone\UtilZoneUp /start
[02-HKLMREG]**windowwizard -/- C:\Program Files\WindowWizard\WindowWizardT.exe -o
[02-HKLMREG]**windowwizardup -/- C:\Program Files\WindowWizard\WinWizardUpdater.exe /wo
[02-HKLMREG]**WinPro -/- C:\Program Files\WinPro\WinPro.exe
[02-HKLMREG]**WinProUp -/- C:\Program Files\WinPro\WinProUp.exe /start
[03-BHOCLSD]**UtilZone -/- C:\Program Files\UtilZone\UtilZone.dll -/- {1C5099DD-7923-45e8-9680-5F285DC61213}
[03-BHOCLSD]**WinExpandB Class -/- C:\Program Files\WinExpand_nwsps\WinExpand_nwsps.dll -/- {00000830-3DDA-4C82-84E4-6932C077AA40}
[03-BHOCLSD]**WinPro -/- C:\Program Files\WinPro\WinPro.dll -/- {339E5541-DA75-412A-9F9B-3C014BE1050B}
[04-TOOLBAR]**N.A -/- N.A -/- {9CA634EF-ECF0-4DD1-B7E2-B9CCFF40BCAF}
[05-SERVICE]**allpopup -/- allpopup svc -/- C:\Program Files\allpopup\allpopsvi.exe
[05-SERVICE]**boansafe -/- boansafe svc -/- C:\Program Files\boansafe\boansafesvc.exe
[05-SERVICE]**boosterclean -/- boosterclean svc -/- C:\Program Files\boosterclean\boostercleansvc.exe
[05-SERVICE]**clgsvr32 -/- Windows CloudGet Service -/- C:\Program Files\Windows CloudGet\clgsvr.exe
[05-SERVICE]**hcpopwin -/- hcpopwin svc -/- C:\Program Files\hcpop\hcpms.exe
[05-SERVICE]**ismsvc -/- Windows ISM -/- C:\Program Files\Windows ISM\ismsvc.exe
[05-SERVICE]**ismsvc32 -/- INSAFE Client 1.0 -/- C:\Program Files\insafeclient\ismsvc.exe
[05-SERVICE]**lstspsv32 -/- Windows Explorer Lastpopup v1.11 -/- C:\Program Files\lastpopup\lstspsv.exe
[05-SERVICE]**NetTcpPortSharing -/- Net.Tcp Port Sharing Service -/- C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
[05-SERVICE]**PerfHost -/- Performance Counter DLL Host -/- C:\Windows\system32\perfhost.exe
[05-SERVICE]**voasvc -/- Windows VOA -/- C:\Program Files\Windows VOA\voasvc.exe
[05-SERVICE]**Windows WinsManager Diagnostics Service -/- Windows WinsManager Diagnostics Service -/- C:\Windows\system32\wdrwsmsvc.exe
[05-SERVICE]**winesrv32 -/- Windows Everlive Service -/- C:\Program Files\Windows Everlive\winesrv.exe
[05-SERVICE]**WinsManager Service -/- WinsManager Service -/- C:\Windows\system32\svcwsmwin.exe