%PROGRAMFILES(X86)%\IObit\IObit Malware Fighter\IMFInstaller.log
new file created
%ALLUSERSPROFILE%\IObit\IObit Malware Fighter\Setup.log
new file created
%APPDATA%\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\IObit Malware Fighter.lnk
new file created
%APPDATA%\IObit\IObit Uninstaller\MenuRight.dat
new file created
%APPDATA%\PCGameBoost\Smart Game Booster\MenuRight.dat
new file created
%SystemDrive%\Users\ADMINI~1\AppData\Local\Temp\IMFInstaller.madExcept
new catalogue created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-485.dat
file moved
%SystemDrive%\Users\ADMINI~1.MEI\AppData\Local\Temp\is-OKAEN.tmp\Setup.log
new file created
%USERPROFILE%.MEIZHY\AppData\Local\Temp\ZLB69EB.tmp
new file created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-9688.dat
file moved
%USERPROFILE%.MEIZHY\AppData\Local\Temp\bdfg.44222,5675569792.ini
new file created
%USERPROFILE%.MEIZHY\AppData\Local\Temp\is-OKAEN.tmp\bdv7.ini
new file created
%USERPROFILE%.MEIZHY\AppData\Local\Temp\is-OKAEN.tmp\Lang.dat
new file created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-2975.dat
file moved
%USERPROFILE%.MEIZHY\AppData\Local\Temp\is-OKAEN.tmp\libcrypto-1_1.dll
new file created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-6143.dat
file moved
%USERPROFILE%.MEIZHY\AppData\Local\Temp\is-OKAEN.tmp\libssl-1_1.dll
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\*\shell\{:}
new registry key created
HKEY_USERS\%ID-USER-SID%_CLASSES\*\shell\{:}\\ExplorerCommandHandler
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@zipfldr.dll,-10148
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@sendmail.dll,-4
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\FXSRESM.dll,-120
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@sendmail.dll,-21
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\System32\ie4uinit.exe,-731
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\AccessibilityCpl.dll,-10
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\System32\ie4uinit.exe,-737
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\wucltux.dll,-1
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Program Files\DVD Maker\DVDMaker.exe,-61403
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\FXSRESM.dll,-114
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-7396.dat
file moved
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\XpsRchVw.exe,-102
new registry key parameter created
%ALLUSERSPROFILE%\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
new catalogue created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\displayswitch.exe,-320
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe,-291
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\mblctr.exe,-1008
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-2121.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\NetProjW.dll,-501
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-485.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\mstsc.exe,-4000
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\SnippingTool.exe,-15051
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-4795.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\SoundRecorder.exe,-100
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-6486.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\System32\SyncCenter.dll,-3000
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-1814.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\OobeFldr.dll,-33056
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-8903.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\Speech\SpeechUX\sapi.cpl,-5555
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-8903.dat
file moved
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\dfrgui.exe,-103
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-2964.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\wdc.dll,-10030
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-9209.dat
new file created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\msinfo32.exe,-100
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\rstrui.exe,-100
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\miguiresource.dll,-201
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\migwiz\wet.dll,-591
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\migwiz\wet.dll,-588
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe,-101
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\comres.dll,-3410
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\mycomput.dll,-300
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\odbcint.dll,-1310
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\miguiresource.dll,-101
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\iscsicpl.dll,-5001
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\MdSched.exe,-4001
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\wdc.dll,-10021
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\pmcsnap.dll,-700
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\wsecedit.dll,-718
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\filemgmt.dll,-2204
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\msconfig.exe,-126
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\System32\AuthFWGP.dll,-20
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10054
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10055
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10056
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10102
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10101
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10103
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10059
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10057
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10209
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10058
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10060
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\gameux.dll,-10061
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\sdcpl.dll,-101
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\recdisc.exe,-2000
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@C:\Windows\system32\msra.exe,-100
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@explorer.exe,-722
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\137\8F259D79\\@HelpPane.exe,-141
new registry key parameter created
%APPDATA%\IOTransfer\IOT\MenuRight.dat
new file created
%SystemDrive%\Users\MRTHAB~1\AppData\Local\Temp\IMFInstaller.madExcept
new catalogue created
HKEY_USERS\%ID-USER-SID%\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\\{0BB81440-5F42-4480-A5F7-770A6F439FC8} {000214E4-0000-0000-C000-000000000046} 0xFFFF
new registry key parameter created
HKEY_USERS\%ID-USER-SID%\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached\\{0BB81440-5F42-4480-A5F7-770A6F439FC8} {0C6C4200-C589-11D0-999A-00C04FD655E1} 0xFFFF
new registry key parameter created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-1404.dat
file moved
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-8517.dat
file moved
%ALLUSERSPROFILE%\IObit
new catalogue created
%PROGRAMFILES(X86)%\Common Files\IObit
new catalogue created
%ALLUSERSPROFILE%\IObit\iobitpromotion.ini
new file created
%PROGRAMFILES(X86)%\Common Files\IObit\IObit Malware Fighter\Ext-imf-2951.dat
file moved
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\4A1\A7EAB198\\@sendmail.dll,-21
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_CLASSES\Local Settings\MuiCache\4A1\A7EAB198\\@zipfldr.dll,-10148
new registry key parameter created