Technical Information
- [<HKLM>\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Web Event Logger' = '{79FEACFF-FFCE-815E-A900-316290B5B738}'
- %WINDIR%\syswow64\glaapg32.exe
- %WINDIR%\syswow64\hidbfm32.dll
- %WINDIR%\syswow64\ckicpn32.exe
- %WINDIR%\syswow64\baqkklap.dll
- %WINDIR%\syswow64\chppoala.exe
- %WINDIR%\syswow64\eloliogg.dll
- %WINDIR%\syswow64\dhmpiepo.exe
- %WINDIR%\syswow64\ckgfknam.exe
- %WINDIR%\syswow64\epedjlph.dll
- %WINDIR%\syswow64\ompmjp32.dll
- %WINDIR%\syswow64\dppnoc32.exe
- %WINDIR%\syswow64\mcdaenea.dll
- %WINDIR%\syswow64\dlfoddkk.exe
- %WINDIR%\syswow64\heogneag.dll
- %WINDIR%\syswow64\ddfadb32.exe
- %WINDIR%\syswow64\dpmaicgj.exe
- %WINDIR%\syswow64\gfeolcji.dll
- %WINDIR%\syswow64\eaepge32.dll
- %WINDIR%\syswow64\mickol32.dll
- %WINDIR%\syswow64\ahddpj32.dll
- %WINDIR%\syswow64\akmcpono.exe
- %WINDIR%\syswow64\amcejpng.dll
- %WINDIR%\syswow64\aalimejc.exe
- %WINDIR%\syswow64\janpkipb.dll
- %WINDIR%\syswow64\blpmdbnh.exe
- %WINDIR%\syswow64\chfmicdl.exe
- %WINDIR%\syswow64\bbcilhjh.dll
- %WINDIR%\syswow64\bkfielmi.dll
- %WINDIR%\syswow64\bilgmg32.exe
- %WINDIR%\syswow64\lnbnhc32.dll
- %WINDIR%\syswow64\blmpobpj.exe
- %WINDIR%\syswow64\agkcdhim.dll
- %WINDIR%\syswow64\bnqigj32.exe
- %WINDIR%\syswow64\bjgjlkna.exe
- %WINDIR%\syswow64\amfjickj.exe
- %WINDIR%\syswow64\mknlbdfi.dll
- %WINDIR%\syswow64\kgeeombc.dll
- %WINDIR%\syswow64\gnijlqai.dll
- %WINDIR%\syswow64\fonjea32.exe
- %WINDIR%\syswow64\ajgipg32.dll
- %WINDIR%\syswow64\fgioid32.exe
- %WINDIR%\syswow64\fopmlnff.dll
- %WINDIR%\syswow64\idcqnb32.dll
- %WINDIR%\syswow64\ffefll32.exe
- %WINDIR%\syswow64\fqacbjhk.exe
- %WINDIR%\syswow64\kebaij32.dll
- %WINDIR%\syswow64\gcbmde32.exe
- %WINDIR%\syswow64\ogogpcef.dll
- %WINDIR%\syswow64\gafmmi32.exe
- %WINDIR%\syswow64\appfoi32.dll
- %WINDIR%\syswow64\eeeifpnc.dll
- %WINDIR%\syswow64\gjjhkool.exe
- %WINDIR%\syswow64\mipohc32.dll
- %WINDIR%\syswow64\deapbioi.exe
- %WINDIR%\syswow64\fqfqoe32.exe
- %WINDIR%\syswow64\egdioacd.exe
- %WINDIR%\syswow64\bqddkijg.dll
- %WINDIR%\syswow64\eqmnhg32.exe
- %WINDIR%\syswow64\fjnfkc32.dll
- %WINDIR%\syswow64\oafcqo32.dll
- %WINDIR%\syswow64\eoieko32.exe
- %WINDIR%\syswow64\fiaech32.exe
- %WINDIR%\syswow64\ejebampe.exe
- %WINDIR%\syswow64\efoplmdg.exe
- %WINDIR%\syswow64\dafkoocb.dll
- %WINDIR%\syswow64\fgnlepkj.exe
- %WINDIR%\syswow64\cmnkklbf.dll
- %WINDIR%\syswow64\mpgiaenc.dll
- %WINDIR%\syswow64\ekeokogh.exe
- %WINDIR%\syswow64\jepaggcf.dll
- %WINDIR%\syswow64\qmcmcc32.exe
- %WINDIR%\syswow64\cppfjo32.dll
- %WINDIR%\syswow64\qjbdbh32.exe
- %WINDIR%\syswow64\kgkdei32.exe
- %WINDIR%\syswow64\qcfeof32.dll
- %WINDIR%\syswow64\kjkmgddf.exe
- %WINDIR%\syswow64\kihbhnnl.dll
- %WINDIR%\syswow64\lqhbjniq.exe
- %WINDIR%\syswow64\kjgcle32.exe
- %WINDIR%\syswow64\ccjbof32.dll
- %WINDIR%\syswow64\gbedoenl.dll
- %WINDIR%\syswow64\lpolpjle.exe
- %WINDIR%\syswow64\ahfhhcim.dll
- %WINDIR%\syswow64\lijmop32.exe
- %WINDIR%\syswow64\pfdkjooo.dll
- %WINDIR%\syswow64\mhojpl32.exe
- %WINDIR%\syswow64\lfgggeee.exe
- %WINDIR%\syswow64\acggmmea.dll
- %WINDIR%\syswow64\dlmbhidi.dll
- %WINDIR%\syswow64\knhfla32.dll
- %WINDIR%\syswow64\hggmhgoe.dll
- %WINDIR%\syswow64\hdappimh.exe
- %WINDIR%\syswow64\hljfaipn.dll
- %WINDIR%\syswow64\hlanok32.exe
- %WINDIR%\syswow64\opgaha32.dll
- %WINDIR%\syswow64\iodcfeal.exe
- %WINDIR%\syswow64\komblg32.exe
- %WINDIR%\syswow64\mhdckkaf.exe
- %WINDIR%\syswow64\didmgj32.dll
- %WINDIR%\syswow64\jlecim32.exe
- %WINDIR%\syswow64\fgnhlg32.dll
- %WINDIR%\syswow64\jqclplkj.exe
- %WINDIR%\syswow64\mecial32.dll
- %WINDIR%\syswow64\jdeaioni.exe
- %WINDIR%\syswow64\iaginp32.exe
- %WINDIR%\syswow64\oqfiolld.dll
- %WINDIR%\syswow64\mnehib32.dll
- %WINDIR%\syswow64\hfoqjlqg.dll
- %WINDIR%\syswow64\oalpagmn.exe
- %WINDIR%\syswow64\panmggkk.exe
- %WINDIR%\syswow64\ejjippdj.dll
- %WINDIR%\syswow64\pnenlhpo.exe
- %WINDIR%\syswow64\efddbagj.dll
- %WINDIR%\syswow64\nilgbfok.dll
- %WINDIR%\syswow64\cfgpjgij.dll
- %WINDIR%\syswow64\lnejol32.dll
- %WINDIR%\syswow64\pkineloi.exe
- %WINDIR%\syswow64\pqhccc32.exe
- %WINDIR%\syswow64\okbjncjl.dll
- %WINDIR%\syswow64\pnlcmg32.exe
- %WINDIR%\syswow64\kflfne32.dll
- %WINDIR%\syswow64\foobba32.dll
- %WINDIR%\syswow64\phmooqnb.exe
- %WINDIR%\syswow64\dmecgmqi.dll
- %WINDIR%\syswow64\oeeomf32.exe
- %WINDIR%\syswow64\oebbggil.exe
- %WINDIR%\syswow64\mjdllfng.exe
- %WINDIR%\syswow64\nofafjaf.exe
- %WINDIR%\syswow64\heeeadmk.dll
- %WINDIR%\syswow64\npfnpm32.exe
- %WINDIR%\syswow64\fjjnhf32.dll
- %WINDIR%\syswow64\nokkai32.exe
- %WINDIR%\syswow64\pjnglj32.dll
- %WINDIR%\syswow64\mjbndg32.dll
- %WINDIR%\syswow64\nmqhbebi.exe
- %WINDIR%\syswow64\nncdge32.exe
- %WINDIR%\syswow64\jidlfdqo.dll
- %WINDIR%\syswow64\oiiemfej.exe
- %WINDIR%\syswow64\johefb32.dll
- %WINDIR%\syswow64\ogmffj32.exe
- %WINDIR%\syswow64\ooaibp32.dll
- %WINDIR%\syswow64\hieenf32.dll
- %WINDIR%\syswow64\gmmnbj32.exe
- %WINDIR%\syswow64\dkpojagn.dll
- '%WINDIR%\syswow64\glaapg32.exe'
- '%WINDIR%\syswow64\dhmpiepo.exe'
- '%WINDIR%\syswow64\phmooqnb.exe'
- '%WINDIR%\syswow64\eoieko32.exe'
- '%WINDIR%\syswow64\pkineloi.exe'
- '%WINDIR%\syswow64\pnenlhpo.exe'
- '%WINDIR%\syswow64\egdioacd.exe'
- '%WINDIR%\syswow64\panmggkk.exe'
- '%WINDIR%\syswow64\oalpagmn.exe'
- '%WINDIR%\syswow64\pqhccc32.exe'
- '%WINDIR%\syswow64\oebbggil.exe'
- '%WINDIR%\syswow64\ejebampe.exe'
- '%WINDIR%\syswow64\ogmffj32.exe'
- '%WINDIR%\syswow64\oiiemfej.exe'
- '%WINDIR%\syswow64\chppoala.exe'
- '%WINDIR%\syswow64\nncdge32.exe'
- '%WINDIR%\syswow64\nmqhbebi.exe'
- '%WINDIR%\syswow64\eqmnhg32.exe'
- '%WINDIR%\syswow64\deapbioi.exe'
- '%WINDIR%\syswow64\pnlcmg32.exe'
- '%WINDIR%\syswow64\qjbdbh32.exe'
- '%WINDIR%\syswow64\ckgfknam.exe'
- '%WINDIR%\syswow64\chfmicdl.exe'
- '%WINDIR%\syswow64\ddfadb32.exe'
- '%WINDIR%\syswow64\blpmdbnh.exe'
- '%WINDIR%\syswow64\akmcpono.exe'
- '%WINDIR%\syswow64\bjgjlkna.exe'
- '%WINDIR%\syswow64\dpmaicgj.exe'
- '%WINDIR%\syswow64\bilgmg32.exe'
- '%WINDIR%\syswow64\dppnoc32.exe'
- '%WINDIR%\syswow64\bnqigj32.exe'
- '%WINDIR%\syswow64\aalimejc.exe'
- '%WINDIR%\syswow64\dlfoddkk.exe'
- '%WINDIR%\syswow64\oeeomf32.exe'
- '%WINDIR%\syswow64\amfjickj.exe'
- '%WINDIR%\syswow64\lpolpjle.exe'
- '%WINDIR%\syswow64\blmpobpj.exe'
- '%WINDIR%\syswow64\gmmnbj32.exe'
- '%WINDIR%\syswow64\efoplmdg.exe'
- '%WINDIR%\syswow64\nokkai32.exe'
- '%WINDIR%\syswow64\ekeokogh.exe'
- '%WINDIR%\syswow64\kgkdei32.exe'
- '%WINDIR%\syswow64\kjkmgddf.exe'
- '%WINDIR%\syswow64\kjgcle32.exe'
- '%WINDIR%\syswow64\fgioid32.exe'
- '%WINDIR%\syswow64\iaginp32.exe'
- '%WINDIR%\syswow64\fqacbjhk.exe'
- '%WINDIR%\syswow64\jdeaioni.exe'
- '%WINDIR%\syswow64\fonjea32.exe'
- '%WINDIR%\syswow64\jqclplkj.exe'
- '%WINDIR%\syswow64\jlecim32.exe'
- '%WINDIR%\syswow64\qmcmcc32.exe'
- '%WINDIR%\syswow64\komblg32.exe'
- '%WINDIR%\syswow64\gcbmde32.exe'
- '%WINDIR%\syswow64\npfnpm32.exe'
- '%WINDIR%\syswow64\hlanok32.exe'
- '%WINDIR%\syswow64\iodcfeal.exe'
- '%WINDIR%\syswow64\hdappimh.exe'
- '%WINDIR%\syswow64\gjjhkool.exe'
- '%WINDIR%\syswow64\lqhbjniq.exe'
- '%WINDIR%\syswow64\ckicpn32.exe'
- '%WINDIR%\syswow64\fqfqoe32.exe'
- '%WINDIR%\syswow64\mjdllfng.exe'
- '%WINDIR%\syswow64\lijmop32.exe'
- '%WINDIR%\syswow64\gafmmi32.exe'
- '%WINDIR%\syswow64\fiaech32.exe'
- '%WINDIR%\syswow64\nofafjaf.exe'
- '%WINDIR%\syswow64\mhdckkaf.exe'
- '%WINDIR%\syswow64\fgnlepkj.exe'
- '%WINDIR%\syswow64\ffefll32.exe'
- '%WINDIR%\syswow64\lfgggeee.exe'
- '%WINDIR%\syswow64\mhojpl32.exe'
- '%WINDIR%\syswow64\gcbmde32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ckicpn32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fgnlepkj.exe' ' (with hidden window)
- '%WINDIR%\syswow64\gjjhkool.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ddfadb32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\chppoala.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fqacbjhk.exe' ' (with hidden window)
- '%WINDIR%\syswow64\dlfoddkk.exe' ' (with hidden window)
- '%WINDIR%\syswow64\dpmaicgj.exe' ' (with hidden window)
- '%WINDIR%\syswow64\eoieko32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fqfqoe32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ejebampe.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ffefll32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\gafmmi32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ekeokogh.exe' ' (with hidden window)
- '%WINDIR%\syswow64\eqmnhg32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fiaech32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\dhmpiepo.exe' ' (with hidden window)
- '%WINDIR%\syswow64\kjkmgddf.exe' ' (with hidden window)
- '%WINDIR%\syswow64\deapbioi.exe' ' (with hidden window)
- '%WINDIR%\syswow64\egdioacd.exe' ' (with hidden window)
- '%WINDIR%\syswow64\dppnoc32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\efoplmdg.exe' ' (with hidden window)
- '%WINDIR%\syswow64\qjbdbh32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ckgfknam.exe' ' (with hidden window)
- '%WINDIR%\syswow64\nofafjaf.exe' ' (with hidden window)
- '%WINDIR%\syswow64\mjdllfng.exe' ' (with hidden window)
- '%WINDIR%\syswow64\mhdckkaf.exe' ' (with hidden window)
- '%WINDIR%\syswow64\mhojpl32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\lijmop32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\lpolpjle.exe' ' (with hidden window)
- '%WINDIR%\syswow64\lfgggeee.exe' ' (with hidden window)
- '%WINDIR%\syswow64\lqhbjniq.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fgioid32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\fonjea32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\komblg32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\bjgjlkna.exe' ' (with hidden window)
- '%WINDIR%\syswow64\jqclplkj.exe' ' (with hidden window)
- '%WINDIR%\syswow64\jlecim32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\iaginp32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\iodcfeal.exe' ' (with hidden window)
- '%WINDIR%\syswow64\hlanok32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\hdappimh.exe' ' (with hidden window)
- '%WINDIR%\syswow64\blmpobpj.exe' ' (with hidden window)
- '%WINDIR%\syswow64\jdeaioni.exe' ' (with hidden window)
- '%WINDIR%\syswow64\nmqhbebi.exe' ' (with hidden window)
- '%WINDIR%\syswow64\nncdge32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\chfmicdl.exe' ' (with hidden window)
- '%WINDIR%\syswow64\blpmdbnh.exe' ' (with hidden window)
- '%WINDIR%\syswow64\nokkai32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\npfnpm32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\kjgcle32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\glaapg32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\bilgmg32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\oiiemfej.exe' ' (with hidden window)
- '%WINDIR%\syswow64\aalimejc.exe' ' (with hidden window)
- '%WINDIR%\syswow64\akmcpono.exe' ' (with hidden window)
- '%WINDIR%\syswow64\amfjickj.exe' ' (with hidden window)
- '%WINDIR%\syswow64\qmcmcc32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\pnlcmg32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\pqhccc32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\phmooqnb.exe' ' (with hidden window)
- '%WINDIR%\syswow64\pkineloi.exe' ' (with hidden window)
- '%WINDIR%\syswow64\pnenlhpo.exe' ' (with hidden window)
- '%WINDIR%\syswow64\panmggkk.exe' ' (with hidden window)
- '%WINDIR%\syswow64\oalpagmn.exe' ' (with hidden window)
- '%WINDIR%\syswow64\oeeomf32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\oebbggil.exe' ' (with hidden window)
- '%WINDIR%\syswow64\ogmffj32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\bnqigj32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\kgkdei32.exe' ' (with hidden window)
- '%WINDIR%\syswow64\gmmnbj32.exe' ' (with hidden window)