Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware:
Glossary Latest Detections ![]() |
Trojan/Adware/Spyware/LOPAlias: LOP, TrojanDownloader.Win32.Swizzor.au, Trj/Downloader.HX, C2 Media, VBS.ObjectDataHTA, MP3Search, Lop.com
Description: LOP is a spyware program that can hijack your start page and / or Internet Explorer search features. LOP spyware generates pop-up advertisements and can redirect your searches to one of its many affiliated sites. Different variants of LOP spyware may monitor your online activity, add shortcuts to the Favorites menu, add a toolbar to Internet Explorer, install porn dialers, generate pornographic pop-ups, and load other spyware onto the system. LOP is usually bundled with freeware and shareware programs (such as Messenger Plus) but is also known to be hidden in software crack files (crack files are illegal workarounds that unlock commercial programs). Threat type: Adware - Adware is a software application which displays advertisements on your computer. Advertisements can be displayed through pop-up / pop-under windows, additional bars or toolbars, underlined links or buttons that appear on a computer screen. Adware applications include additional code that delivers the ads. Adware authors earn money when users click on those ads. Occasionally, adware includes code that tracks user's site visits and passes it to third parties without the user's permission or knowledge. BHO - A Browser Helper Object (BHO) is a software application that runs automatically whenever you start Internet Explorer. Browser Helper Objects are typically installed by other programs such as toolbar accessories and can track internet usage, create popup windows, display additional information on a viewed page and collect information that is transmitted by you over the internet. Malicious software that exploits this technology can replace banner advertisements with other ads, monitor your actions, change your home page, etc. Dialer - A Dialer is a software application that dials long distance phone numbers. Dialers modify your dial-up settings and make very expensive long distance phone calls without user's permission. The user will be billed for the time used. Dialer authors share the revenues shady long distance providers. Downloader - A Downloader is a software application or part of the program which is designed to retrieve (download) and install additional files from the Internet. Malware programs often include Downloaders which allow the Malware to continually update themselves, thereby eluding detection. Dropper - A Dropper is a software application or part of the program which is designed to install hostile code onto the system of the targeted computer. Usually, a Dropper comes bundled as part of a virus or trojan. Hijacker - A Hijacker is a software application that takes control of your browser's settings. Usually it changes your home page and redirects it to some unknown site or modifies your search settings. It prevents you from changing back your browser's settings. An infected browser usually operates much slower. Search Hijacker - A Search Hijacker is a software application that takes control of your browser's default search engine. The search results may not necessarily be the best fit as those usually come from paid advertisements, as issued to you by the Hijacker authors. Search hijackers prevent you from changing your browser's default search engine, and they tend to slow down PC performance. Spyware - Spyware is any software application that gathers information from the user's PC and transmits it to the Spyware author (usually hackers, but sometimes corporations). The information is gathered and transmitted without the user's knowledge or consent. Spyware applications may steal sensitive corporate information and transmit it to competitors. Spyware also degrades PC performance and can consume huge amounts of bandwidth, especially on corporate servers. Toolbar - A Toolbar is a group of buttons that performs different tasks. Unwanted toolbars are usually installed by adware programs that try to send users to their paying advertisers. Trojan - A Trojans or Trojan Horse is any programs that installs itself secretly, quite often with sinister intent. Once installed, the trojan author (hacker) can gain complete control of the infected PC. Trojans are usually designed to steal sensitive information and/or destroy the system. Trojans can be distributed as unsolicited email attachments, or bundled with freeware and shareware programs. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer or your privacy. Detection: SpyNoMore detects Trojan/Adware/Spyware/LOP: Yes Threat risk: High Risk Very dangerous malware. Can log user's keyboard activity and take snapshots of the user's screen. Uses stealth installation and removal is very difficult. Category includes spyware programs, adware programs and trojans. Symptoms: LOP changes browser settings. LOP generates pop-up advertisements, including pornographic pop-ups. Running Process Signatures: Randomly named exe files. File Signatures: %WINDOWS%\application data\bilyooas.exe
%FAVORITES%\ business and finance\office.url %PROGRAM_FILES%\burn media meta\bdvcnypx.exe %WINDOWS%\application data\upckeetoutw.dll %PROGRAM_FILES%\creati~1\oozeboob.exe %WINDOWS%\application data\woafrquzn.dll %PROGRAM_FILES%\creati~1\plus thunk mags.exe %PROFILE%\application data\qtufbghm.exe %WINDOWS%\application data\kfriegbs.exe %FAVORITES%\ on lifestyle\wine.url %PROFILE%\application data\zxenmgrbl.dll %PROFILE%\local settings\temp\hqe1.exe %PROGRAM_FILES%\thirda~1\glue blue tons.exe %PROFILE%\application data\sefiqovd.exe %PROGRAM_FILES%\memoli~1\cjcegzut.exe %FAVORITES%\ computers and tech\dedicated server.url %PROFILE%\local settings\temp\wry1.exe %PROFILE%\application data\zdmlfhmh.exe %PROGRAM_FILES%\greato~1\vzmhfjyb.exe %FAVORITES%\ gambling\sports books.url %PROFILE%\application data\qwxgxlrv.exe %PROFILE%\application data\deskicon.lib %PROFILE%\application data\prnshgrdssb.dll %WINDOWS%\s_dnserr.gif %WINDOWS%\application data\oofrkxpe.exe %PROGRAM_FILES%\fourat~1\fkrbssba.exe %PROGRAM_FILES%\wavebo~1\20044.exe %WINDOWS%\application data\tglblrll.exe %PROFILE%\local settings\temp\now1.exe %WINDOWS%\downloaded program files\the_ultimate_browser_enhancer.exe %PROFILE%\application data\hlyvjncf.exe %FAVORITES%\ gambling\craps.url %WINDOWS%\application data\ssmeeibl.exe %WINDOWS%\application data\byb_save.exe %PROGRAM_FILES%\fourat~1\gagmqvaf.exe %PROFILE%\application data\zvxcypnh.exe %PROGRAM_FILES%\trayokay\eygfyuoe.exe %WINDOWS%\application data\ylynfste.exe %FAVORITES%\ business and finance\banking.url %WINDOWS%\application data\ousszidrta.dll %PROGRAM_FILES%\creati~1\pazgtrve.exe %FAVORITES%\ computers and tech\domain names.url %PROGRAM_FILES%\memoli~1\flaw army name.exe %PROFILE%\application data\kmigeuhh.exe %PROGRAM_FILES%\greato~1\idle barb ball.exe %WINDOWS%\application data\eeublidc.exe %PROGRAM_FILES%\wavebo~1\elsemode.dll %PROFILE%\application data\frsezaeaast.dll %PROGRAM_FILES%\mathte~1\bold grim.exe %FAVORITES%\ gambling\slots.url %PROGRAM_FILES%\greato~1\activebitsflap.exe %FAVORITES%\ entertainment\adult entertainment.url %FAVORITES%\ on lifestyle\art.url %FAVORITES%\ computers and tech\web hosting.url %PROFILE%\application data\djgxsbcl.exe %FAVORITES%\ news.url %PROGRAM_FILES%\manager ace gram\1072.exe %PROFILE%\local settings\temp\den1.exe %PROFILE%\application data\taecoidy.exe %PROFILE%\application data\dgpxzhtb.exe %FAVORITES%\ business and finance\business.url %PROGRAM_FILES%\active download\16537.exe %FAVORITES%\ business and finance\finance.url %FAVORITES%\ on lifestyle\home and garden\utilities.url %PROFILE%\local settings\temp\bae1.exe %WINDOWS%\application data\aybwarn.htm %PROFILE%\application data\efjwxjsl.exe %PROGRAM_FILES%\wavebo~1\acid team.dll %WINDOWS%\application data\dmvcrthl.exe %PROGRAM_FILES%\oozejo~1\copy data.dll %PROGRAM_FILES%\progra~1\flapholdlogo.exe %PROFILE%\application data\pbgqwhoj.exe %PROFILE%\application data\uljpmexe.exe %PROGRAM_FILES%\fourat~1\ford wma dead.exe %WINDOWS%\application data\prnouestssstx.dll %WINDOWS%\application data\chksbdriya.dll %PROGRAM_FILES%\greato~1\cakerdrplan.exe %PROFILE%\application data\flmgvmas.exe %PROFILE%\application data\vygaeifz.exe %PROGRAM_FILES%\64comp~1\rule keep.dll %WINDOWS%\desktop.htm %WINDOWS%\application data\trdzhtxf.exe %FAVORITES%\ computers and tech\telecommunication\text sms messaging.url %PROFILE%\owner\local settings\temp\rem18c.exe %PROFILE%\application data\chblgrstd.lib %PROGRAM_FILES%\progra~1\zwsghqhs.exe %PROGRAM_FILES%\thirda~1\ozrkesxz.exe %FAVORITES%\ cool stuff\classifieds.url %FAVORITES%\ cool stuff\free services.url %WINDOWS%\application data\ziebaeeoaeepr.dll %WINDOWS%\application data\droxtrdchdoo.dll %FAVORITES%\ computers and tech\hardware.url %PROFILE%\application data\list cool loud math\objnew.exe %FAVORITES%\ computers and tech\telecommunication\telephone.url %PROFILE%\application data\zvpkxxtu.exe %PROFILE%\local settings\temp\rem2ea.exe %FAVORITES%\ entertainment\automotive.url %PROFILE%\application data\ovnolxvi.exe %WINDOWS%\temp\rem9b.exe %FAVORITES%\ cool stuff\school essays and homework.url %PROFILE%\application data\oostshthptrv.dll %PROFILE%\application data\memo01idleheart\roam info.exe %FAVORITES%\ on lifestyle\ebooks.url %PROFILE%\local settings\temp\pyo25.exe %PROGRAM_FILES%\active~1\store funk.dll %PROFILE%\application data\hlsctpay.exe %WINDOWS%\application data\trstshcrscksr.dll %PROGRAM_FILES%\mapigr~1\acid slow.bin %PROFILE%\application data\aybwarn.htm %WINDOWS%\application data\crgbeaoa.exe %PROFILE%\application data\aybgwarn.htm %WINDOWS%\application data\prxzoustustgr.dll %WINDOWS%\application data\peebqusz.exe %PROGRAM_FILES%\armymo~1\antitype.dll %WINDOWS%\application data\ykphmbre.exe %FAVORITES%\ entertainment\mp3.url %PROFILE%\application data\plg_ie0.dll %PROFILE%\application data\mycvbdqu.exe %PROGRAM_FILES%\creati~1\jynqzshx.exe %PROFILE%\application data\mspuztbg.exe %WINDOWS%\application data\veaeyglckr.dll %PROGRAM_FILES%\armymo~1\hole title.dll %PROGRAM_FILES%\creati~1\skfvhmqz.exe %WINDOWS%\application data\mprcouie.exe %PROFILE%\application data\vlluafrq.exe %FAVORITES%\ on lifestyle\education\education.url %PROFILE%\application data\muxibdom.exe %PROGRAM_FILES%\freein~1\fastfirst.exe %FAVORITES%\ games.url %WINDOWS%\application data\meepajlr.exe %FAVORITES%\ on lifestyle\health and beauty\health and fitness.url %WINDOWS%\web\wallpaper\desktop.swf %DESKTOPDIRECTORY%\adult.lnk %FAVORITES%\ cool stuff\free homepages.url %FAVORITES%\ on lifestyle\community.url %FAVORITES%\ adult\fetish.url %PROFILE%\application data\nshelstpgl.dll %PROFILE%\application data\gzxqpghe.exe %WINDOWS%\application data\eaeeishllblc.dll %WINDOWS%\application data\ealymfrprwch.dll %PROFILE%\local settings\temp\vyz1.exe %WINDOWS%\i_dnserr.gif %FAVORITES%\ entertainment\hot games and gaming.url %PROGRAM_FILES%\memoli~1\drv list part corn.exe %FAVORITES%\ gambling\roulette.url %PROFILE%\local settings\temp\txo1.exe %PROGRAM_FILES%\progra~1\inter phone pile default.exe %FAVORITES%\ business and finance\credit cards.url %FAVORITES%\ computers and tech\computer stores.url %PROGRAM_FILES%\fourat~1\pure bash.exe %FAVORITES%\ computers and tech\laptops.url %WINDOWS%\application data\glxshmcr.exe %WINDOWS%\b_dnserr.gif %PROFILE%\application data\idixbdmf.exe %PROGRAM_FILES%\fourat~1\qsrdfyqj.exe %FAVORITES%\ mp3 music.url %FAVORITES%\ gambling\chips.url %PROGRAM_FILES%\oozejo~1\19205.exe %PROFILE%\application data\xxdfwvli.exe %PROFILE%\application data\wa_inst.exe %PROFILE%\local settings\temp\rny1.exe %FAVORITES%\ adult\gay and lesbian.url %PROFILE%\application data\ieeblostqly.dll %WINDOWS%\dnserror.htm %PROFILE%\application data\roam surf part tick\junk pure.exe %WINDOWS%\application data\quveioot.exe %FAVORITES%\ business and finance\insurance.url %FAVORITES%\ computers and tech\telecommunication\mobile phones.url %FAVORITES%\ business and finance\careers.url %WINDOWS%\system32\plg_ie0.dll %FAVORITES%\ computers and tech\web design.url %WINDOWS%\application data\vestufck.exe %WINDOWS%\application data\eelykofrllfrj.dll %WINDOWS%\application data\tblchepruprgr.dll %FAVORITES%\ adult\asian sex.url %PROGRAM_FILES%\safeba~1\stop hope.exe %FAVORITES%\ gambling\online casinos.url %PROGRAM_FILES%\roamse~1\window skip.exe %WINDOWS%\application data\tchpeatr.exe %PROFILE%\application data\lkxelvrg.exe %PROFILE%\application data\trstlskb.exe %WINDOWS%\application data\ulyuiexeechp.exe %FAVORITES%\ on lifestyle\health and beauty\pharmacy.url %WINDOWS%\application data\lltckiey.exe %PROFILE%\local settings\temp\qhy81.exe c:\docume~1\yap@w~1\applic~1\ckcoofrunea.exe %FAVORITES%\ on lifestyle\education\training.url %PROGRAM_FILES%\progra~1\else iso user bows.exe %PROGRAM_FILES%\nounbe~1\curbuser.exe %WINDOWS%\system32\veg32.dll.dll %PROGRAM_FILES%\oozejo~1\24758.exe %WINDOWS%\application data\llfggrdr.exe %PROFILE%\application data\save third mfcd boob\vga admin.exe %PROFILE%\application data\muqhatod.exe %FAVORITES%\ adult\adult chat.url %PROGRAM_FILES%\greato~1\afniekvu.exe %PROFILE%\local settings\temp\pnt1.exe %WINDOWS%\application data\sstroallhqch.dll %PROGRAM_FILES%\mapigr~1\peak that.dll %WINDOWS%\application data\asshuktr.exe %PROGRAM_FILES%\metaac~1\phone internet.dll %WINDOWS%\application data\hglllyxrxw.dll %PROGRAM_FILES%\progra~1\cmbjcmrq.exe %WINDOWS%\application data\shoucrck.exe %FAVORITES%\ cool stuff\auction.url %PROFILE%\application data\fqbhyhjh.exe %PROFILE%\application data\gqlfiqii.exe %PROFILE%\local settings\temp\bvj13.exe %WINDOWS%\application data\meepajlr.dll %PROFILE%\application data\glckqksdr.dll %FAVORITES%\ on lifestyle\home and garden\construction.url %PROGRAM_FILES%\objcdrom\safesoaplicenseplay.exe %FAVORITES%\ adult\hardcore.url %FAVORITES%\ on lifestyle\matchmaking.url %PROFILE%\application data\ysaebwco.exe %PROGRAM_FILES%\fourat~1\bowsbleh.exe %WINDOWS%\system\donk_bar.dll %PROGRAM_FILES%\roamse~1\rulefindcamp.exe %PROGRAM_FILES%\thirda~1\etarwlaf.exe %PROFILE%\application data\frsezaeaav.dll %PROFILE%\local settings\temp\sml1.exe %PROGRAM_FILES%\memoli~1\hojxfjdu.exe %DESKTOPDIRECTORY%\gambling and online casinos.lnk %WINDOWS%\application data\xogyfhp.exe %WINDOWS%\application data\yeecrsoustoull.dll %FAVORITES%\ adult\amateur photo.url %WINDOWS%\application data\ijlysseb.exe %FAVORITES%\ adult\matchmaking.url %FAVORITES%\ on lifestyle\home and garden\real estate.url %PROFILE%\application data\roam surf part tick\puretrust.exe %PROGRAM_FILES%\objels~1\sizebuildlogo.exe %FAVORITES%\ cool stuff\services.url %WINDOWS%\web\wallpaper\desktop.htm %WINDOWS%\application data\jqumysto.exe %FAVORITES%\ entertainment\entertainment.url %PROFILE%\local settings\temp\uqg1.exe %FAVORITES%\ adult\xxx cartoons.url %WINDOWS%\application data\trstdris.exe %FAVORITES%\ on lifestyle\health and beauty\beauty.url %PROFILE%\application data\lopsearch.exe %PROFILE%\application data\ckcoofrunea.exe %PROFILE%\local settings\temporary internet files\content.ie5\s9grsz83\cam-6415[1].exe %WINDOWS%\application data\gldqumssfrie.dll %PROGRAM_FILES%\wavebo~1\7310.exe %PROGRAM_FILES%\fourat~1\kcwarhnv.exe %PROGRAM_FILES%\memoli~1\dentcurbfree.exe %PROFILE%\application data\zaeoxdiu.exe %FAVORITES%\ gambling.url %WINDOWS%\system32\donk_bar.dll %FAVORITES%\ computers and tech\telecommunication\telecommunication.url %PROGRAM_FILES%\memoli~1\loyftzhg.exe %PROGRAM_FILES%\objcdrom\bait cake part bash.exe %PROFILE%\local settings\temp\prab.exe %PROGRAM_FILES%\oozejo~1\14599.exe %FAVORITES%\entertainment\games.url %FAVORITES%\ computers and tech\computer games.url %FAVORITES%\ adult\ebony.url %FAVORITES%\ on lifestyle\pets.url %WINDOWS%\application data\epllkeeoopr.dll %WINDOWS%\application data\lopsearc.exe %FAVORITES%\ cool stuff\free emails.url %PROFILE%\application data\one bolt bleh anti\once each.exe %PROGRAM_FILES%\oozejo~1\29923.exe %WINDOWS%\jexpoofro.htm %PROFILE%\application data\qhiqikdr.exe %FAVORITES%\ on lifestyle\self help.url %PROFILE%\application data\drstesprpee.dll %PROGRAM_FILES%\armymo~1\longpuresoft.bin %PROFILE%\local settings\temp\rem24.exe %FAVORITES%\ gambling\black jack.url %FAVORITES%\ on lifestyle\books.url %PROFILE%\application data\llssalycshh.dll %WINDOWS%\ubipwdk.exe %FAVORITES%\ computers and tech\software.url %FAVORITES%\ adult\live video feeds.url %FAVORITES%\ on lifestyle\women.url %WINDOWS%\application data\vfthrcbr.exe %FAVORITES%\ business and finance\b to b.url %PROGRAM_FILES%\global~1\mfcdpingwarnfast.exe %FAVORITES%\ on lifestyle\astrology.url %PROGRAM_FILES%\thirda~1\mediawebdownload.exe %PROGRAM_FILES%\thirda~1\qmgytdru.exe %FAVORITES%\ entertainment\travel.url %PROFILE%\application data\frlyjeebtru.dll %PROGRAM_FILES%\creati~1\settings browse.exe %WINDOWS%\application data\heeachmstll.dll %WINDOWS%\application data\quglwachfs.dll %WINDOWS%\system32\sxbmat.exe %DESKTOPDIRECTORY%\online movies.lnk %PROFILE%\application data\trmugnsu.exe %PROFILE%\local settings\temp\rem25.exe %WINDOWS%\system32\npddeapi.dll %PROGRAM_FILES%\active download\store funk.dll %PROGRAM_FILES%\jugsse~1\pile inter grim.bin %FAVORITES%\ adult entertainment.url %WINDOWS%\application data\freabrlaouw.dll %PROGRAM_FILES%\objcdrom\16logplayprogram.exe %WINDOWS%\temp\remd.exe %PROFILE%\application data\srytuikb.exe %PROFILE%\application data\frlyjeebtrn.dll %DESKTOPDIRECTORY%\news and sports.lnk %FAVORITES%\ gambling\poker.url %PROGRAM_FILES%\armymo~1\3549.exe %PROGRAM_FILES%\oozejo~1\dent team.dll %PROGRAM_FILES%\progra~1\city tons.exe %PROFILE%\local settings\temp\szwe.exe %FAVORITES%\ gambling\multi player.url %FAVORITES%\ business and finance\printing.url %PROFILE%\local settings\temp\rem15.exe %PROGRAM_FILES%\driveh~1\64bikeabout.exe %WINDOWS%\application data\aybgwarn.htm %PROFILE%\local settings\temp\fbf1.exe %FAVORITES%\ entertainment\dvd.url %PROFILE%\application data\lckqdcvd.exe %PROGRAM_FILES%\inside~1\manager free.exe %PROGRAM_FILES%\trayokay\rppzstyl.exe %PROGRAM_FILES%\memoli~1\bzqzgkdq.exe %PROFILE%\local settings\temp\sta3.exe %PROFILE%\application data\nimylprv.exe %WINDOWS%\r_dnserr.gif %PROFILE%\local settings\temp\pfn1.exe %PROFILE%\application data\eneqckap.exe %WINDOWS%\application data\ukfroigl.dll %PROFILE%\application data\ddinxmdb.exe %PROFILE%\application data\save third mfcd boob\loudmove.exe %PROGRAM_FILES%\acidme~1\chin mfcd.bin %WINDOWS%\system\plg_ie0.dll %FAVORITES%\ on lifestyle\magazines.url %WINDOWS%\application data\eelykofrllfrpr.dll %PROFILE%\application data\gchmfrea.exe %DESKTOPDIRECTORY%\mp3 music search.lnk %PROFILE%\local settings\temp\ayw17f.exe %WINDOWS%\application data\icdrhwno.dll %FAVORITES%\ on lifestyle\home and garden\home and garden.url %PROGRAM_FILES%\thirda~1\ruledatawma.exe %FAVORITES%\ on lifestyle\home and garden\furniture.url %PROFILE%\local settings\temp\znp1.exe %PROGRAM_FILES%\progra~1\clock mags inter book.exe %PROFILE%\application data\brsswthg.exe %PROGRAM_FILES%\freein~1\knynnyma.exe %PROGRAM_FILES%\acidme~1\barbboob.dll %WINDOWS%\application data\eaymulyl.exe %WINDOWS%\application data\meemnckyqbr.exe %FAVORITES%\ on lifestyle\kids.url %PROGRAM_FILES%\progra~1\one cdrom type more.exe Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: %PROGRAM_FILES%\window active
%PROGRAM_FILES%\logobi~1 %PROGRAM_FILES%\roamju~1 %PROGRAM_FILES%\wayvga~2 %PROGRAM_FILES%\dvdfindload %PROFILE%\application data\audio amen %PROGRAM_FILES%\sitein~1 %PROGRAM_FILES%\proxyn~1 %PROGRAM_FILES%\wavesu~1 %PROGRAM_FILES%\showsu~1 %PROGRAM_FILES%\elsewa~1 %PROGRAM_FILES%\showsupport %PROGRAM_FILES%\waveba~1 %FAVORITES%\ shopping and gifts %PROGRAM_FILES%\waymov~1 %PROFILE%\local settings\temp\delete.me Registry Signatures: HKLM\software\classes\clsid\{d44b5436-b3e4-4595-b0e9-106690e70a58}
HKCR\clsid\{d1d9e2f6-c179-4386-b197-c4a85c026f67} HKLM\software\classes\clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662} HKCR\clsid\{289848e1-2d29-4d00-9ff1-0c09a1256662} HKLM\software\microsoft\windows\currentversion\uninstall\shubryochuss HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} HKCR\udhiu.rngrstrjyvscd HKCR\pop.phonebird HKCR\clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea} HKCR\clsid\{3dcdb313-84a2-6218-64ee-1110caa46fb5} HKCR\swish.toolband.1 HKLM\software\classes\clsid\{d3119527-9be0-422c-b9fa-5143d75dfbea} HKLM\software\classes\clsid\{f689307b-c3cd-4d10-aaf2-d1f75358a5c2} HKLM\software\microsoft\windows\currentversion\uninstall\pprwazmprss HKCR\dybvi.rngrstrm.1 HKCR\clsid\{1a35419c-7394-4989-b3c5-6189eb06bd66} HKLM\software\classes\clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} HKLM\software\classes\clsid\{162ab497-087d-4fb3-83ba-4f5159613796} HKLM\software\microsoft\windows\currentversion\uninstall\nthlllleth HKCR\clsid\{0d4312e2-5e4d-4a27-a9d8-043e43904277} HKCR\typelib\{c65cad7f-e382-4b90-95c6-89123d0aee61} HKCR\invisiblepop.invisible HKCR\proto.handler HKLM\software\classes\clsid\{9b35a850-66ab-4c6d-8a66-136ecadcd904} HKCR\swish.browserhelper.1 HKCR\proto.handler.1 HKCU\software\microsoft\windows\currentversion\backup HKCR\clsid\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} HKCR\protocols\handler\ayb HKCR\coal.insidechic HKCR\clsid\{18fd2e3d-35df-aa65-0952-7875de70845f} HKCU\software\xsswbrwougouecr HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{162ab497-087d-4fb3-83ba-4f5159613796} HKCR\clsid\{07c0d34d-11d7-43f7-832b-c6bb41726f5f} HKCR\clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} HKCR\invisiblepop.invisible.1 HKCR\pop.phonebird.1 HKCR\clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4} HKLM\software\classes\clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd} HKLM\software\classes\clsid\{bd8fd0b2-0e6b-4ffa-916f-db8ff7411d5f} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{092d8662-f5c6-41a3-be1d-14d940f6010d} HKCR\swish.toolband HKCR\clsid\{c65cad7f-e382-4b90-95c6-89123d0aee61} HKCR\clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} HKCR\clsid\{3247f2dc-f2a1-9d95-a072-dbb3e1690643} HKCR\clsid\{562a6158-bcae-e53f-d40e-403ef85b70a4} HKCR\typelib\{d31e488c-9ed3-4fb0-8f82-f1d559553c06} HKCR\dybvi.rngrstrm HKCR\software\microsoft\windows\currentversion\explorer\browser helper objects\{d44b5436-b3e4-4595-b0e9-106690e70a58} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{03e3d2bf-051f-5094-5068-c5ee261285bc} HKCR\clsid\{162ab497-087d-4fb3-83ba-4f5159613796} HKCR\clsid\{80fddae7-d472-4e1f-8c3a-36b75a091c44} HKLM\software\classes\clsid\{b0a11536-00dc-268e-042a-6cb617e6965e} HKCR\clsid\{f2a5a613-88e0-b267-ce78-aedd8db3ce45} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{b9c38317-4e71-4d7b-b072-3aa8dda923b3} HKLM\software\classes\clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754} HKCR\clsid\{7b49a2a5-b45f-46f3-ac60-2578477671ee} HKCR\clsid\{d31e488c-9ed3-4fb0-8f82-f1d559553c06} HKLM\software\classes\clsid\{33a4af42-fc94-4873-8bc0-1da97d6edd6d} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{139e58c9-85b4-45db-9fc9-3919813709f0} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{c8a113e0-6da0-4f0e-bb89-9726212aaf32} HKCR\clsid\{ec28a907-37ac-4d9a-a928-ee2ba555a141} HKCR\clsid\{a27d4f42-3018-59ed-19ff-4c1b7a2c18fa} HKCR\typelib\{1a35419c-7394-4989-b3c5-6189eb06bd66} HKCR\clsid\{eb9bdd24-ccf1-4a87-98c0-579dba9bda83} HKLM\software\classes\clsid\{c8a113e0-6da0-4f0e-bb89-9726212aaf32} HKCU\software\winactive HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{3247f2dc-f2a1-9d95-a072-dbb3e1690643} HKCR\clsid\{bcd5534b-2f54-428e-b3f3-e03b6f10a233} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{24f13043-edfc-446c-a07c-8ed6beb9e39e} HKCR\typelib\{fe54e96b-f246-4ed7-97a2-e27086ce5b21} HKLM\software\classes\clsid\{139e58c9-85b4-45db-9fc9-3919813709f0} HKCR\clsid\{1502ab76-0376-4b7b-8226-d34c941072f2} HKCR\udhiu.rngrstrjyvscd.1 HKCR\typelib\{dffe1ccf-e1e8-4470-9962-73277cc2c898} HKCR\clsid\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416} HKCR\clsid\{189210a0-36c2-11d7-9928-444553540000} HKCR\clsid\{c5d6b9c5-1c08-43f9-bd04-6aefa21dd754} HKCR\clsid\{fe54e96b-f246-4ed7-97a2-e27086ce5b21} HKLM\software\classes\clsid\{092d8662-f5c6-41a3-be1d-14d940f6010d} HKCU\software\trinityayb HKCR\clsid\{1e62ecd8-ae05-988b-f40a-369b2026409e} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{4b8edc53-6cfd-4ee4-9504-38ce7a5bc416} HKCR\clsid\{8f1a15a7-92b0-4467-ad12-369f60174008} HKCR\clsid\{c4b41c0c-4e7b-37e0-7b80-ed6437c8eb2c} HKCR\clsid\{914d0f58-630a-465d-8e28-aea5158e6606} HKCR\clsid\{56d59f1a-e81a-c85f-d7bb-07a6f380a834} HKCR\clsid\{c61c874f-60bb-4ee7-8afa-92dc85b180c9} HKCR\coal.insidechic.1 HKCR\swish.browserhelper HKCR\clsid\{139e58c9-85b4-45db-9fc9-3919813709f0} HKCR\typelib\{8f1a15a7-92b0-4467-ad12-369f60174008} HKCR\clsid\{cfadae1d-f67a-c8f7-46a6-eb20e32a92cd} HKCR\clsid\{9b35a850-66ab-4c6d-8a66-136ecadcd904} HKLM\software\classes\clsid\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{e69e6d3b-861e-4c8b-bdd4-a8b7a61af313} HKCR\clsid\{25f1bb0d-2d8c-4dda-ad46-684719d09b7e} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{f2a5a613-88e0-b267-ce78-aedd8db3ce45} HKCR\clsid\{84b55b37-aff7-8942-25ac-f0c5d7a32619} HKCR\clsid\{e58e7c45-c426-993a-2a9f-3640a22bf60e} HKCR\clsid\{8522f9b3-38c5-4aa4-ae40-7401f1bbc851} HKLM\software\classes\clsid\{fe289ae1-16e9-9235-420a-95ff90a194f4} HKCR\clsid\{24f13043-edfc-446c-a07c-8ed6beb9e39e} HKCR\clsid\{00000012-890e-4aac-afd9-000000000000} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{33a4af42-fc94-4873-8bc0-1da97d6edd6d} HKCR\clsid\{03e3d2bf-051f-5094-5068-c5ee261285bc} HKCR\clsid\{2e1162f8-d289-359d-b1e4-0a4d9301a7d1} HKCR\clsid\{d44b5436-b3e4-4595-b0e9-106690e70a58} HKLM\software\classes\clsid\{914d0f58-630a-465d-8e28-aea5158e6606} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{d44b5436-b3e4-4595-b0e9-106690e70a58} HKLM\software\microsoft\windows\currentversion\explorer\browser helper objects\{3dcdb313-84a2-6218-64ee-1110caa46fb5} HKCR\clsid\{b0a11536-00dc-268e-042a-6cb617e6965e} SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||