Search the Community

Showing results for tags 'pup.optional.regcurepro'.



More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Malware Removal for Windows
    • Malware Removal for Mac
    • Malware Removal for Mobile
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes 3.0
    • Malwarebytes Anti-Malware for Mac
    • Malwarebytes Anti-Malware Mobile
    • False Positives
    • Translator Lounge
    • Comments and Suggestions
  • Malwarebytes Endpoint Security Support
    • Malwarebytes Anti-Malware for Business
    • Malwarebytes Anti-Exploit for Business
    • Malwarebytes Breach Remediation
    • Malwarebytes Anti-Ransomware for Business
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
  • General
    • General Chat
    • Forums Announcements & Feedback

Found 1 result

  1. What is RegCure Pro? The Malwarebytes research team has determined that RegCure Pro is a "system optimizer". These so-called "system optimizers" use intentional false positives to convince users that their systems have problems. Then they try to sell you their software, claiming it will remove these problems. More information can be found on our Malwarebytes Labs blog. How do I know if I am infected with RegCure Pro? This is how the main screen of the sytem optimizer looks: You will find these icons in your taskbar and on your desktop: and see these warnings during install: and these screens during "operations": You may see this entry in your list of installed programs: and these tasks in your Task Scheduler: How did RegCure Pro get on my computer? These so-called system optimizers use different methods of getting installed. This particular one was downloaded from their site. How do I remove RegCure Pro? Our program Malwarebytes can detect and remove this potentially unwanted application. We recommend using the built-in uninstaller first, because Malwarebytes will not remove the BitDefender elements and folders that were introduced by this installer, since that could lead to possible conflicts. Please download Malwarebytes to your desktop. Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program. Then click Finish. Once the program has fully updated, select Scan Now on the Dashboard. Or select the Threat Scan from the Scan menu. If another update of the definitions is available, it will be implemented before the rest of the scanning procedure. When the scan is complete, make sure that all Threats are selected, and click Remove Selected. Restart your computer when prompted to do so. Is there anything else I need to do to get rid of RegCure Pro? No, Malwarebytes removes RegCure Pro completely. This PUP creates some scheduled tasks. You can read here how to check for and, if necessary, remove Scheduled Tasks. How would the full version of Malwarebytes help protect me? We hope our application and this guide have helped you eradicate this system optimizer. As you can see below the full version of Malwarebytes would have protected you against the RegCure Pro installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late. and we block access to their domain: Technical details for experts You may see these entries in FRST logs: (ParetoLogic, Inc.) C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe (Digital Care Solutions) C:\Program Files\BDServices\BitDefenderCOM.exe R2 BitDefenderCOM; C:\Program Files\BDServices\BitDefenderCom.exe [1028096 2016-12-12] (Digital Care Solutions) [File not signed] S3 scan; C:\Program Files\BDServices\scan.dll [627688 2016-12-12] (Bitdefender) R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-12-12] (BitDefender S.R.L.) C:\Windows\System32\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297 C:\Windows\System32\Tasks\RegCure Pro Update C:\Windows\System32\Tasks\RegCure Pro Startup C:\Users\{username}\Desktop\RegCure Pro.lnk C:\Windows\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job C:\Windows\Tasks\RegCure Pro Startup.job C:\Windows\Tasks\RegCure Pro Update.job C:\Users\{username}\AppData\Roaming\ParetoLogic C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic C:\ProgramData\ParetoLogic C:\Program Files\BDServices C:\Program Files (x86)\ParetoLogic RegCure Pro (HKLM-x32\...\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}) (Version: 3.3.20.0 - ParetoLogic, Inc.) <==== ATTENTION Task: {BEC8C965-6E43-4294-8BAC-C90A03F56E85} - System32\Tasks\RegCure Pro Update => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.) Task: {C3722311-284D-4B53-91F5-8865B32B0759} - System32\Tasks\RegCure Pro Startup => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.) Task: {ED2F5AC7-0678-4679-83A7-F804AC53C9FB} - System32\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297 => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.) <==== ATTENTION Task: C:\Windows\Tasks\RegCure Pro Startup.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe Task: C:\Windows\Tasks\RegCure Pro Update.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe Task: C:\Windows\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe <==== ATTENTION () C:\Program Files (x86)\ParetoLogic\RegCure Pro\7ZipDLL.dll () C:\Program Files (x86)\ParetoLogic\RegCure Pro\LiteZip.dll () C:\Program Files (x86)\ParetoLogic\RegCure Pro\ExtensionManager.dll () C:\Program Files (x86)\ParetoLogic\RegCure Pro\CommonLoggingExtension.pxt () C:\Program Files (x86)\ParetoLogic\RegCure Pro\CommonSpecialist.pxt () C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegHookSpecialist.pxt () C:\Program Files (x86)\ParetoLogic\RegCure Pro\Utility.pxt () C:\Program Files (x86)\ParetoLogic\RegCure Pro\LiteUnzip.dll Excerpt of the alterations made by the installer (full log available on request): File system details [View: All details] (Selection) --------------------------------------------------- Adds the folder C:\Program Files\BDServices Adds the file bdardrv.dll"="12/12/2016 6:42 PM, 203792 bytes, A Adds the file bdavlic.dat"="12/12/2016 6:42 PM, 64 bytes, A Adds the file bdquar.dll"="12/12/2016 6:42 PM, 998536 bytes, A Adds the file bdsmartdb.dll"="12/12/2016 6:42 PM, 843440 bytes, A Adds the file BDUpdateServiceCom.dll"="12/12/2016 6:42 PM, 1818864 bytes, A Adds the file BitDefenderCOM.exe"="12/12/2016 6:49 PM, 1028096 bytes, A Adds the file BitDefenderCOMPS.dll"="12/12/2016 6:49 PM, 87040 bytes, A Adds the file gzflt.sys"="12/12/2016 6:42 PM, 161592 bytes, A Adds the file gzflt_create.reg"="12/12/2016 6:42 PM, 1224 bytes, A Adds the file gzfltum.dll"="12/12/2016 6:42 PM, 110080 bytes, A Adds the file onaccess.log"="1/25/2017 9:14 AM, 0 bytes, A Adds the file scan.dll"="12/12/2016 6:42 PM, 627688 bytes, A Adds the file scanpath_0.log"="1/25/2017 9:15 AM, 210 bytes, A Adds the file smartdb-ntfs.db"="1/25/2017 9:14 AM, 19333120 bytes, A Adds the file smartmd5cache.dat"="1/25/2017 9:14 AM, 4194304 bytes, A Adds the file trufos.cat"="12/12/2016 6:42 PM, 9533 bytes, A Adds the file trufos.dll"="12/12/2016 6:42 PM, 637416 bytes, A Adds the file trufos.inf"="12/12/2016 6:42 PM, 3230 bytes, A Adds the file trufos.sys"="12/12/2016 6:42 PM, 485512 bytes, A Adds the file uninstall.exe"="12/12/2016 6:49 PM, 63800 bytes, A Adds the file updaterAndOnDemand.log"="1/25/2017 9:14 AM, 0 bytes, A Adds the folder C:\Program Files\BDServices\loc1 Adds the file bdcore.dll"="1/25/2017 9:20 AM, 144632 bytes, A Adds the file definition_installed.txt"="1/25/2017 9:20 AM, 3 bytes, A Adds the file versions.dat.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 57030 bytes, A Adds the file versions.dat.gz.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 0 bytes, A Adds the file versions.id.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 1254 bytes, A Adds the file versions.sig.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 256 bytes, A Adds the folder C:\Program Files\BDServices\loc1\Plugins Adds the file 7zip.xmd"="1/25/2017 9:14 AM, 31750 bytes, A Adds the file access.xmd"="1/25/2017 9:14 AM, 5140 bytes, A Adds the file ace.xmd"="1/25/2017 9:14 AM, 12794 bytes, A Adds the file adsntfs.xmd"="1/25/2017 9:14 AM, 6089 bytes, A Adds the file aitok.cvd"="1/25/2017 9:14 AM, 15540 bytes, A Adds the file alz.xmd"="1/25/2017 9:14 AM, 12791 bytes, A Adds the file ar.xmd"="1/25/2017 9:14 AM, 2009 bytes, A Adds the file arc.xmd"="1/25/2017 9:15 AM, 352 bytes, A Adds the file arj.xmd"="1/25/2017 9:15 AM, 8687 bytes, A Adds the file aspy_emu.cvd"="1/25/2017 9:15 AM, 307563 bytes, A Adds the file auto.000"="1/25/2017 9:22 AM, 8551616 bytes, A Adds the file auto.cvd"="1/25/2017 9:15 AM, 269916 bytes, A Adds the file auto.xmd"="1/25/2017 9:15 AM, 14536 bytes, A Adds the file autoit.xmd"="1/25/2017 9:15 AM, 16766 bytes, A Adds the file avxdisk.xmd"="1/25/2017 9:15 AM, 6049 bytes, A Adds the file bach.xmd"="1/25/2017 9:15 AM, 3824 bytes, A Adds the file boot.xmd"="1/25/2017 9:15 AM, 4198 bytes, A Adds the file bzip2.xmd"="1/25/2017 9:15 AM, 22427 bytes, A Adds the file cab.xmd"="1/25/2017 9:15 AM, 18632 bytes, A Adds the file cache.000"="1/25/2017 9:22 AM, 13712384 bytes, A Adds the file cache.016"="1/25/2017 9:24 AM, 16 bytes, A Adds the file catdb"="1/25/2017 9:22 AM, 2803250 bytes, A Adds the file ceva_dll.cvd"="1/25/2017 9:15 AM, 158583 bytes, A Adds the file ceva_emu.cvd"="1/25/2017 9:15 AM, 195625 bytes, A Adds the file ceva_vfs.cvd"="1/25/2017 9:15 AM, 763849 bytes, A Adds the file ceva_vfs.ivd"="1/25/2017 9:15 AM, 12 bytes, A Adds the file cevakrnl.cvd"="1/25/2017 9:15 AM, 600078 bytes, A Adds the file cevakrnl.ivd"="1/25/2017 9:15 AM, 91120 bytes, A Adds the file cevakrnl.rv0"="1/25/2017 9:15 AM, 360143 bytes, A Adds the file cevakrnl.rv1"="1/25/2017 9:15 AM, 434037 bytes, A Adds the file cevakrnl.rv2"="1/25/2017 9:15 AM, 355457 bytes, A Adds the file cevakrnl.rv3"="1/25/2017 9:15 AM, 1097202 bytes, A Adds the file cevakrnl.rv4"="1/25/2017 9:15 AM, 40601 bytes, A Adds the file cevakrnl.rv5"="1/25/2017 9:15 AM, 458386 bytes, A Adds the file cevakrnl.rv6"="1/25/2017 9:15 AM, 272 bytes, A Adds the file cevakrnl.rv7"="1/25/2017 9:15 AM, 405056 bytes, A Adds the file cevakrnl.rv8"="1/25/2017 9:15 AM, 363402 bytes, A Adds the file cevakrnl.rv9"="1/25/2017 9:15 AM, 32684 bytes, A Adds the file cevakrnl.rvd"="1/25/2017 9:15 AM, 109318 bytes, A Adds the file cevakrnl.xmd"="1/25/2017 9:15 AM, 315640 bytes, A Adds the file chm.xmd"="1/25/2017 9:15 AM, 16227 bytes, A Adds the file cookie.cvd"="1/25/2017 9:15 AM, 6507 bytes, A Adds the file cookie.xmd"="1/25/2017 9:15 AM, 1231 bytes, A Adds the file cpio.xmd"="1/25/2017 9:15 AM, 3995 bytes, A Adds the file cran.cvd"="1/25/2017 9:15 AM, 710852 bytes, A Adds the file cran.ivd"="1/25/2017 9:15 AM, 145435 bytes, A Adds the file dalvik.cvd"="1/25/2017 9:15 AM, 7 bytes, A Adds the file dalvik.ivd"="1/25/2017 9:15 AM, 15457432 bytes, A Adds the file dalvik.xmd"="1/25/2017 9:15 AM, 25505 bytes, A Adds the file dbx.xmd"="1/25/2017 9:15 AM, 2790 bytes, A Adds the file disp.xmd"="1/25/2017 9:15 AM, 32855 bytes, A Adds the file docfile.xmd"="1/25/2017 9:16 AM, 25217 bytes, A Adds the file dummyarch.xmd"="1/25/2017 9:16 AM, 4402 bytes, A Adds the file dummyscan.xmd"="1/25/2017 9:16 AM, 4418 bytes, A Adds the file e_spyw.cvd"="1/25/2017 9:16 AM, 433026 bytes, A Adds the file e_spyw.i00"="1/25/2017 9:16 AM, 3429 bytes, A Adds the file e_spyw.ivd"="1/25/2017 9:16 AM, 571564 bytes, A Adds the file emalware.000"="1/25/2017 9:14 AM, 656078 bytes, A Adds the file emalware.i99"="1/25/2017 9:20 AM, 73 bytes, A Adds the file emalware.ivd"="1/25/2017 9:20 AM, 73 bytes, A Adds the file engines.cvd"="1/25/2017 9:20 AM, 70979 bytes, A Adds the file epoc.xmd"="1/25/2017 9:20 AM, 3187 bytes, A Adds the file gvmscripts.cvd"="1/25/2017 9:20 AM, 111791 bytes, A Adds the file gzip.xmd"="1/25/2017 9:20 AM, 2356 bytes, A Adds the file ha.xmd"="1/25/2017 9:20 AM, 328 bytes, A Adds the file hlp.xmd"="1/25/2017 9:20 AM, 5022 bytes, A Adds the file hpe.cvd"="1/25/2017 9:20 AM, 4669 bytes, A Adds the file hqx.xmd"="1/25/2017 9:20 AM, 2134 bytes, A Adds the file html.xmd"="1/25/2017 9:20 AM, 50553 bytes, A Adds the file htmltok.cvd"="1/25/2017 9:20 AM, 111895 bytes, A Adds the file imp.xmd"="1/25/2017 9:20 AM, 9604 bytes, A Adds the file inno.xmd"="1/25/2017 9:20 AM, 1612 bytes, A Adds the file instyler.xmd"="1/25/2017 9:20 AM, 30861 bytes, A Adds the file iso.xmd"="1/25/2017 9:20 AM, 33210 bytes, A Adds the file java.cvd"="1/25/2017 9:20 AM, 2238192 bytes, A Adds the file java.xmd"="1/25/2017 9:20 AM, 7607 bytes, A Adds the file jay.cvd"="1/25/2017 9:20 AM, 112472 bytes, A Adds the file jpeg.cvd"="1/25/2017 9:20 AM, 233894 bytes, A Adds the file jpeg.xmd"="1/25/2017 9:20 AM, 138122 bytes, A Adds the file krnl.xmd"="1/25/2017 9:20 AM, 5569 bytes, A Adds the file lha.xmd"="1/25/2017 9:20 AM, 8886 bytes, A Adds the file lib.cvd"="1/25/2017 9:20 AM, 227066 bytes, A Adds the file lib.ivd"="1/25/2017 9:20 AM, 28 bytes, A Adds the file lib.rvd"="1/25/2017 9:20 AM, 3561 bytes, A Adds the file lnk.xmd"="1/25/2017 9:20 AM, 429 bytes, A Adds the file lyme.xmd"="1/25/2017 9:20 AM, 1904 bytes, A Adds the file machofat.xmd"="1/25/2017 9:20 AM, 10461 bytes, A Adds the file mbox.xmd"="1/25/2017 9:20 AM, 2801 bytes, A Adds the file mbx.xmd"="1/25/2017 9:20 AM, 1012 bytes, A Adds the file mdx.xmd"="1/25/2017 9:20 AM, 92314 bytes, A Adds the file mdx_97.cvd"="1/25/2017 9:20 AM, 726631 bytes, A Adds the file mdx_97.ivd"="1/25/2017 9:20 AM, 76 bytes, A Adds the file mdx_w95.cvd"="1/25/2017 9:20 AM, 59656 bytes, A Adds the file mdx_x95.cvd"="1/25/2017 9:20 AM, 9650 bytes, A Adds the file mdx_xf.cvd"="1/25/2017 9:20 AM, 4521 bytes, A Adds the file mime.xmd"="1/25/2017 9:20 AM, 113095 bytes, A Adds the file mobmalware.cvd"="1/25/2017 9:20 AM, 5864 bytes, A Adds the file mobmalware.xmd"="1/25/2017 9:20 AM, 8183 bytes, A Adds the file mso.xmd"="1/25/2017 9:20 AM, 2299 bytes, A Adds the file na.cvd"="1/25/2017 9:20 AM, 205 bytes, A Adds the file nelf.cvd"="1/25/2017 9:20 AM, 6456 bytes, A Adds the file nelf.xmd"="1/25/2017 9:20 AM, 359 bytes, A Adds the file newjava.cvd"="1/25/2017 9:20 AM, 725 bytes, A Adds the file nsis.xmd"="1/25/2017 9:20 AM, 17113 bytes, A Adds the file objd.xmd"="1/25/2017 9:20 AM, 4873 bytes, A Adds the file ocra.xmd"="1/25/2017 9:20 AM, 9043 bytes, A Adds the file orice.rvd"="1/25/2017 9:20 AM, 150471 bytes, A Adds the file pdf.xmd"="1/25/2017 9:20 AM, 122449 bytes, A Adds the file pdftok.cvd"="1/25/2017 9:20 AM, 39449 bytes, A Adds the file proc.xmd"="1/25/2017 9:20 AM, 15271 bytes, A Adds the file pst.xmd"="1/25/2017 9:20 AM, 23533 bytes, A Adds the file pyinstaller.xmd"="1/25/2017 9:20 AM, 7655 bytes, A Adds the file quickbfc.xmd"="1/25/2017 9:20 AM, 11729 bytes, A Adds the file rar.xmd"="1/25/2017 9:20 AM, 55859 bytes, A Adds the file regarch.cvd"="1/25/2017 9:20 AM, 203 bytes, A Adds the file regarch.xmd"="1/25/2017 9:20 AM, 16486 bytes, A Adds the file regscan.cvd"="1/25/2017 9:20 AM, 15292 bytes, A Adds the file regscan.xmd"="1/25/2017 9:20 AM, 374 bytes, A Adds the file rpm.xmd"="1/25/2017 9:20 AM, 1155 bytes, A Adds the file rtf.xmd"="1/25/2017 9:20 AM, 9071 bytes, A Adds the file rup.cvd"="1/25/2017 9:20 AM, 2536 bytes, A Adds the file rup.xmd"="1/25/2017 9:20 AM, 672 bytes, A Adds the file sdx.cvd"="1/25/2017 9:20 AM, 1595752 bytes, A Adds the file sdx.ivd"="1/25/2017 9:20 AM, 3062017 bytes, A Adds the file sdx.xmd"="1/25/2017 9:20 AM, 8383 bytes, A Adds the file sfx.xmd"="1/25/2017 9:20 AM, 12965 bytes, A Adds the file soul.xmd"="1/25/2017 9:20 AM, 10378 bytes, A Adds the file swf.xmd"="1/25/2017 9:20 AM, 10648 bytes, A Adds the file sysarch.xmd"="1/25/2017 9:20 AM, 1344 bytes, A Adds the file syscan.xmd"="1/25/2017 9:20 AM, 3725 bytes, A Adds the file tar.xmd"="1/25/2017 9:20 AM, 2514 bytes, A Adds the file td0.xmd"="1/25/2017 9:20 AM, 4897 bytes, A Adds the file thebat.xmd"="1/25/2017 9:20 AM, 1340 bytes, A Adds the file tknscan.cvd"="1/25/2017 9:20 AM, 18724 bytes, A Adds the file tnef.xmd"="1/25/2017 9:20 AM, 2582 bytes, A Adds the file uif.xmd"="1/25/2017 9:20 AM, 1643 bytes, A Adds the file unpack.cvd"="1/25/2017 9:20 AM, 226022 bytes, A Adds the file unpack.ivd"="1/25/2017 9:20 AM, 170579 bytes, A Adds the file unpack.xmd"="1/25/2017 9:20 AM, 59957 bytes, A Adds the file update.txt"="1/25/2017 9:20 AM, 111 bytes, A Adds the file uudecode.xmd"="1/25/2017 9:20 AM, 2056 bytes, A Adds the file variant.c00"="1/25/2017 9:20 AM, 76 bytes, A Adds the file variant.c01"="1/25/2017 9:20 AM, 76 bytes, A Adds the file variant.c02"="1/25/2017 9:20 AM, 76 bytes, A Adds the file variant.cvd"="1/25/2017 9:20 AM, 4618 bytes, A Adds the file vbtok.cvd"="1/25/2017 9:20 AM, 5594 bytes, A Adds the file ve.cvd"="1/25/2017 9:20 AM, 126874 bytes, A Adds the file ve.ivd"="1/25/2017 9:20 AM, 48 bytes, A Adds the file ve.xmd"="1/25/2017 9:20 AM, 107053 bytes, A Adds the file vedata.cvd"="1/25/2017 9:20 AM, 688 bytes, A Adds the file viza.xmd"="1/25/2017 9:20 AM, 5593 bytes, A Adds the file wim.xmd"="1/25/2017 9:20 AM, 8607 bytes, A Adds the file wise.xmd"="1/25/2017 9:20 AM, 6075 bytes, A Adds the file xar.xmd"="1/25/2017 9:20 AM, 4062 bytes, A Adds the file xcookies.xmd"="1/25/2017 9:20 AM, 5904 bytes, A Adds the file xishield.xmd"="1/25/2017 9:20 AM, 1516 bytes, A Adds the file xlmrd.cvd"="1/25/2017 9:20 AM, 12374 bytes, A Adds the file xlmrd.ivd"="1/25/2017 9:20 AM, 37472 bytes, A Adds the file xzengine.xmd"="1/25/2017 9:20 AM, 19354 bytes, A Adds the file yishield.xmd"="1/25/2017 9:20 AM, 1866 bytes, A Adds the file z.xmd"="1/25/2017 9:20 AM, 1796 bytes, A Adds the file zip.xmd"="1/25/2017 9:20 AM, 45632 bytes, A Adds the file zoo.xmd"="1/25/2017 9:20 AM, 353 bytes, A Adds the folder C:\Program Files\BDServices\loc2 Adds the file definition_installed.txt"="1/25/2017 9:20 AM, 3 bytes, A Adds the folder C:\Program Files\BDServices\loc2\Plugins Adds the folder C:\Program Files\BDServices\quarantine Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro Adds the file 7ZipDLL.dll"="12/15/2016 7:01 PM, 563712 bytes, A Adds the file colors.xml"="12/15/2016 7:01 PM, 3762 bytes, A Adds the file CommonLoggingExtension.pxt"="12/15/2016 7:01 PM, 155264 bytes, A Adds the file CommonSpecialist.pxt"="12/15/2016 7:01 PM, 153728 bytes, A Adds the file ExtensionManager.dll"="12/15/2016 7:01 PM, 83584 bytes, A Adds the file HandleUpdate.dll"="12/15/2016 7:01 PM, 1802752 bytes, A Adds the file License.rdat"="1/25/2017 9:14 AM, 0 bytes, A Adds the file License_Time.rdat"="1/25/2017 9:14 AM, 48 bytes, A Adds the file LiteUnzip.dll"="12/15/2016 7:01 PM, 53352 bytes, A Adds the file LiteZip.dll"="12/15/2016 7:01 PM, 45672 bytes, A Adds the file LogSettings.xml"="12/15/2016 7:01 PM, 6386 bytes, A Adds the file MyResources.dll"="12/15/2016 7:01 PM, 553472 bytes, A Adds the file privacy.db"="12/15/2016 7:01 PM, 44816 bytes, A Adds the file RB.rdat"="1/25/2017 9:14 AM, 48 bytes, A Adds the file RegCurePro.exe"="12/15/2016 7:01 PM, 5822456 bytes, A Adds the file RegHookSpecialist.pxt"="12/15/2016 7:01 PM, 138880 bytes, A Adds the file SandBoxer.dll"="12/15/2016 7:01 PM, 558720 bytes, A Adds the file SBTE.dll"="12/15/2016 7:01 PM, 1028488 bytes, A Adds the file settings.xml"="12/15/2016 7:01 PM, 861 bytes, A Adds the file sqlite3.dll"="12/15/2016 7:01 PM, 333043 bytes, A Adds the file uninstall.exe"="12/15/2016 7:01 PM, 300992 bytes, A Adds the file unrar.dll"="12/15/2016 7:01 PM, 160256 bytes, A Adds the file UNS.xml"="12/15/2016 7:01 PM, 1118 bytes, A Adds the file Utility.pxt"="12/15/2016 7:01 PM, 925824 bytes, A Adds the file whitelist.dat"="12/15/2016 7:01 PM, 7528 bytes, A Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\html Adds the file 0_days.htm"="12/15/2016 7:01 PM, 2635 bytes, A Adds the file 0_days_trial.htm"="12/15/2016 7:01 PM, 2589 bytes, A Adds the file 1_days.htm"="12/15/2016 7:01 PM, 2643 bytes, A Adds the file 15_days.htm"="12/15/2016 7:01 PM, 2711 bytes, A Adds the file 2_days.htm"="12/15/2016 7:01 PM, 2603 bytes, A Adds the file 30_days.htm"="12/15/2016 7:01 PM, 2636 bytes, A Adds the file 5_days.htm"="12/15/2016 7:01 PM, 2639 bytes, A Adds the file container_content_bkimg.gif"="12/15/2016 7:01 PM, 114 bytes, A Adds the file container_content_leftimg.gif"="12/15/2016 7:01 PM, 298 bytes, A Adds the file container_content_rightimg.gif"="12/15/2016 7:01 PM, 296 bytes, A Adds the file error_connect.html"="12/15/2016 7:01 PM, 1347 bytes, A Adds the file main.css"="12/15/2016 7:01 PM, 2033 bytes, A Adds the file main_error.css"="12/15/2016 7:01 PM, 4223 bytes, A Adds the file package_titlebar_bkimg.jpg"="12/15/2016 7:01 PM, 573 bytes, A Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images Adds the folder C:\ProgramData\ParetoLogic\RegCure Pro Adds the file dc_db.db"="12/15/2016 7:01 PM, 16384 bytes, A Adds the file license.dat"="1/25/2017 9:14 AM, 192 bytes, A Adds the file License.rdat"="1/25/2017 9:14 AM, 80 bytes, A Adds the file License_FirstRun.rdat"="1/25/2017 9:14 AM, 48 bytes, A Adds the file License_Time.rdat"="1/25/2017 9:14 AM, 48 bytes, A Adds the file RB.rdat"="1/25/2017 9:14 AM, 48 bytes, A Adds the file tfn.xml"="1/25/2017 9:15 AM, 243 bytes, A In the existing folder C:\Users\{username}\AppData\Roaming Adds the file LogFile.txt"="1/25/2017 9:14 AM, 53 bytes, A In the existing folder C:\Users\{username}\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1214 bytes, A Adds the folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1232 bytes, A Adds the file Uninstall RegCure Pro.lnk"="1/25/2017 9:14 AM, 1227 bytes, A Adds the folder C:\Users\{username}\AppData\Roaming\ParetoLogic\RegCure Pro In the existing folder C:\Users\{username}\Desktop Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1190 bytes, A In the existing folder C:\Windows\System32\drivers Adds the file Trufos.sys"="12/12/2016 6:42 PM, 485512 bytes, A In the existing folder C:\Windows\System32\Tasks Adds the file RegCure Pro Startup"="1/25/2017 9:14 AM, 2630 bytes, A Adds the file RegCure Pro Update"="1/25/2017 9:14 AM, 3344 bytes, A Adds the file RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297"="1/25/2017 9:14 AM, 4020 bytes, A In the existing folder C:\Windows\Tasks Adds the file RegCure Pro Startup.job"="1/25/2017 9:14 AM, 468 bytes, A Adds the file RegCure Pro Update.job"="1/25/2017 9:14 AM, 466 bytes, A Adds the file RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job"="1/25/2017 9:14 AM, 571 bytes, A Registry details [View: All details] (Selection) ------------------------------------------------ [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{419E484A-F3EB-43DC-A622-C7B069FED362}] "(Default)"="REG_SZ"", "BDUpdateServiceCom" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{BDE5CCD0-4CD6-433B-B279-B63EB052ECD7}] "LocalService"="REG_SZ"", "BitDefenderCOM" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EF436DD1-6449-4F19-83C2-CF546175C7BF}] "(Default)"="REG_SZ"", "BitDefender Threat Scanner" "LocalService"="REG_SZ"", "scan" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BDUpdateServiceCom.DLL] "AppID"="REG_SZ"", "{419E484A-F3EB-43DC-A622-C7B069FED362}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\scan.DLL] "AppID"="REG_SZ"", "{EF436DD1-6449-4F19-83C2-CF546175C7BF}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterfa.1] "(Default)"="REG_SZ"", "BDUpdateComInterface Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterfa.1\CLSID] "(Default)"="REG_SZ"", "{94915A56-4D71-4F85-B59C-CC040F5AC6F0}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface] "(Default)"="REG_SZ"", "BDUpdateComInterface Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface\CLSID] "(Default)"="REG_SZ"", "{94915A56-4D71-4F85-B59C-CC040F5AC6F0}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface\CurVer] "(Default)"="REG_SZ"", "BDUpdateServiceCom.BDUpdateComInterfa.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner] "(Default)"="REG_SZ"", "BitDefender RootkitScanner Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner\CLSID] "(Default)"="REG_SZ"", "{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner\CurVer] "(Default)"="REG_SZ"", "BitDefender.RootkitScanner.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner.1] "(Default)"="REG_SZ"", "BitDefender RootkitScanner Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner.1\CLSID] "(Default)"="REG_SZ"", "{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner] "(Default)"="REG_SZ"", "BitDefender ThreatScanner Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner\CLSID] "(Default)"="REG_SZ"", "{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner\CurVer] "(Default)"="REG_SZ"", "BitDefender.ThreatScanner.1" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner.1] "(Default)"="REG_SZ"", "BitDefender ThreatScanner Class" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner.1\CLSID] "(Default)"="REG_SZ"", "{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5874475D-8CFB-4116-86C3-E4B3F920D1C8}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D93628B-5A5E-4A2C-BBC5-4C11ED61980D}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65416821-217D-44BD-9C61-F53398FB1B46}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7D3AB682-73FF-4057-BD63-6A1D322F8C50}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94915A56-4D71-4F85-B59C-CC040F5AC6F0}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC23221F-A56E-4EA6-932E-3D58EBA81A85}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DDD399-8C4C-4D2C-836E-AEC6AA9FC30F}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0AE8D562-6C6C-464B-BE79-C3DCC67BDC41}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0F8CA558-E497-47BB-B48A-20F5054AAE5A}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{159D9EDB-C101-4D2C-9159-A1E8F9DFC58C}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1ABEE7DF-2B5F-4E94-B78B-BBF89A0AB4C0}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{24AC7A58-2956-46E7-86D3-FC92F1DB47AB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29BA7546-0E58-4652-9A20-C0B136290980}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3AE53837-28BF-47A5-80A3-28653D385811}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{43DD538F-4D52-4184-B25E-DA3027AD03B3}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{47305062-A369-47BF-B155-261F8150B8CD}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{60207A64-A1EB-4E5C-9189-46DAB32891D3}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7F68A0EC-2E94-4439-A376-55C72BA1AF55}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89294107-D2EE-49A6-A385-6B97CD4EF220}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8A546BEC-87B6-47C0-81CB-7A88E17E2936}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9CE8CCDE-4D4D-4876-A105-B85557E4CADE}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A56FAEB7-5BBC-435D-A46D-196E238E96A6}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DEBB822C-0B70-4251-9CB7-486CC9D61B0D}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E8057EA1-41A4-41CA-B283-C0E0013C07CD}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EC01AC6B-A3CA-450D-8483-27CBEDD182FA}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{34F4FEAF-4921-4B5D-8BE5-CA384BFFC2CE}\1.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B}\1.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6DBB4BB7-1A78-48E8-AE01-B21507A2BF4A}\1.0] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{02DDD399-8C4C-4D2C-836E-AEC6AA9FC30F}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0AE8D562-6C6C-464B-BE79-C3DCC67BDC41}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0F8CA558-E497-47BB-B48A-20F5054AAE5A}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{159D9EDB-C101-4D2C-9159-A1E8F9DFC58C}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1ABEE7DF-2B5F-4E94-B78B-BBF89A0AB4C0}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{24AC7A58-2956-46E7-86D3-FC92F1DB47AB}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{29BA7546-0E58-4652-9A20-C0B136290980}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3AE53837-28BF-47A5-80A3-28653D385811}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{43DD538F-4D52-4184-B25E-DA3027AD03B3}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{47305062-A369-47BF-B155-261F8150B8CD}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{60207A64-A1EB-4E5C-9189-46DAB32891D3}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7F68A0EC-2E94-4439-A376-55C72BA1AF55}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{89294107-D2EE-49A6-A385-6B97CD4EF220}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{8A546BEC-87B6-47C0-81CB-7A88E17E2936}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9CE8CCDE-4D4D-4876-A105-B85557E4CADE}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{A56FAEB7-5BBC-435D-A46D-196E238E96A6}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DEBB822C-0B70-4251-9CB7-486CC9D61B0D}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E8057EA1-41A4-41CA-B283-C0E0013C07CD}] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EC01AC6B-A3CA-450D-8483-27CBEDD182FA}] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures] "RegCure Pro Startup.job"="REG_BINARY, ................................ "RegCure Pro Startup.job.fp"="REG_DWORD"", -70830203 "RegCure Pro Update.job"="REG_BINARY, ................................ "RegCure Pro Update.job.fp"="REG_DWORD"", 1975374077 "RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job"="REG_BINARY, ................................ "RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job.fp"="REG_DWORD"", 515433264 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost] "bdx"="REG_MULTI_SZ, "scan sysagent " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\bdx] "AuthenticationCapabilities"="REG_DWORD"", 0 "AuthenticationLevel"="REG_DWORD"", 2 "CoInitializeSecurityParam"="REG_DWORD"", 1 "DefaultRpcStackSize"="REG_DWORD"", 1024 "ImpersonationLevel"="REG_DWORD"", 3 [HKEY_LOCAL_MACHINE\SOFTWARE\Softwin\BitDefender Threat Scanner] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\BDServices] "InstallDir"="REG_SZ"", "C:\Program Files\BDServices\" "Uninstall"="REG_SZ"", "C:\Program Files\BDServices\uninstall.exe" "Version"="REG_DWORD"", 8 [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\BDServices\apps\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}] "(Default)"="REG_SZ"", "" "launch"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe" "shutdown"="REG_SZ"", ""C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe" -shutdown" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}] "DisplayIcon"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe" "DisplayName"="REG_SZ"", "RegCure Pro" "DisplayVersion"="REG_SZ"", "3.3.20.0" "InstallLocation"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro" "Publisher"="REG_SZ"", "ParetoLogic, Inc." "UninstallString"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\uninstall.exe" "URLInfoAbout"="REG_SZ"", "http://www.paretologic.com" "VersionMajor"="REG_DWORD"", 3 "VersionMinor"="REG_DWORD"", 3 [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\ParetoLogic\RegCure Pro] "Desktop"="REG_DWORD"", 1 "InstallTime"="REG_QWORD, .... "Login"="REG_DWORD"", 1 "Quick"="REG_DWORD"", 1 "Silent"="REG_DWORD"", 0 "Updates"="REG_DWORD"", 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BitDefenderCOM] "DependOnService"="REG_MULTI_SZ, "RPCSS " "DisplayName"="REG_SZ"", "BitDefenderCOM" "ErrorControl"="REG_DWORD"", 1 "ImagePath"="REG_EXPAND_SZ, ""C:\Program Files\BDServices\BitDefenderCom.exe"" "ObjectName"="REG_SZ"", "LocalSystem" "Start"="REG_DWORD"", 2 "Type"="REG_DWORD"", 16 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Instances] "DefaultInstance"="REG_SZ"", "gzflt Instance" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Instances\gzflt Instance] "Altitude"="REG_SZ"", "320820" "Flags"="REG_DWORD"", 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Parameters] "ESFFProc"="REG_MULTI_SZ, "" "ESFPProc"="REG_MULTI_SZ, "" "ESFRProc"="REG_MULTI_SZ, "" "ESProc"="REG_MULTI_SZ, "" "FsSp"="REG_MULTI_SZ, "" "PProcSp"="REG_MULTI_SZ, "" "ProcSp"="REG_MULTI_SZ, "" "RegSpNR"="REG_MULTI_SZ, "" "RegSpR"="REG_MULTI_SZ, "" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\scan] "DependOnService"="REG_MULTI_SZ, "RPCSS " "Description"="REG_SZ"", "scan" "DisplayName"="REG_SZ"", "BitDefender Threat Scanner" "ErrorControl"="REG_DWORD"", 1 "ImagePath"="REG_EXPAND_SZ, "%SystemRoot%\System32\svchost.exe -k bdx" "ObjectName"="REG_SZ"", "LocalSystem" "Start"="REG_DWORD"", 3 "Type"="REG_DWORD"", 32 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\scan\Parameters] "ServiceDll"="REG_EXPAND_SZ, "C:\Program Files\BDServices\scan.dll" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos] "BDM"="REG_DWORD"", 0 "Description"="REG_SZ"", "Trufos Mini-Filter Driver" "DisplayName"="REG_SZ"", "Trufos" "ErrorControl"="REG_DWORD"", 1 "Group"="REG_SZ"", "Boot Bus Extender" "ImagePath"="REG_EXPAND_SZ, "system32\DRIVERS\Trufos.sys" "Start"="REG_DWORD"", 3 "Tag"="REG_DWORD"", 7 "Type"="REG_DWORD"", 2 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Enum] "0"="REG_SZ"", "Root\LEGACY_TRUFOS\0000" "Count"="REG_DWORD"", 1 "NextInstance"="REG_DWORD"", 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Instances] "DefaultInstance"="REG_SZ"", "Trufos Instance" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Instances\Trufos Instance] "Altitude"="REG_SZ"", "320770" "Flags"="REG_DWORD"", 0 [HKEY_LOCAL_MACHINE\SYSTEM\gzflt] [HKEY_LOCAL_MACHINE\SYSTEM\Trufos] [HKEY_USERS\.DEFAULT\Software\SetID] "xxwsid_cv"="REG_SZ"", "B390BC4A-9A70-6645-9F4B-A1DA5E8B80F4" "xxwsid_mb"="REG_SZ"", "0" "xxwsid_sn"="REG_SZ"", "00426-383-5207833-06434" "xxwsid_wsid2"="REG_SZ"", "6CEB8016-9B61-4E42-84BA-6FE060B41214" [HKEY_CURRENT_USER\Software\ParetoLogic\RegCure Pro] "CACHEDSCANCOUNT"="REG_DWORD"", 0 "DefaultSchedule"="REG_BINARY, ........ "EndPointID"="REG_SZ"", "50eb952d-e2d6-11e6-b8c5-0a184418186e" "FROMSCHEDULE"="REG_DWORD"", 0 "Height"="REG_DWORD"", 691 "INSTALLDATE"="REG_SZ"", "08:15:40 25-01-2017" "INSTALLDATELOCAL"="REG_SZ"", "09:15:40 25-01-2017" "LASTSCAN_STATE"="REG_DWORD"", 1 "LastScanTime"="REG_BINARY, .... "LaunchOnStartup"="REG_DWORD"", 1 "MALWARE_COUNT"="REG_DWORD"", 1 "OUTDATED_COUNT"="REG_DWORD"", 365 "RunCount"="REG_DWORD"", 1 "SCANCOUNT"="REG_DWORD"", 1 "ScansStarted"="REG_DWORD"", 1 "SYSTEMRATING"="REG_DWORD"", 0 "UPDATEAVAIL"="REG_DWORD"", 2 "UPDATESTATE"="REG_DWORD"", 1 "Width"="REG_DWORD"", 1000 "XPos"="REG_DWORD"", 491 "YPos"="REG_DWORD"", 66 [HKEY_CURRENT_USER\Software\ParetoLogic\RegCure Pro\TFN] "ExpiresOn"="REG_BINARY, .... "LStatus"="REG_DWORD"", 1 "ScanCountDelay"="REG_DWORD"", 4 "ServerDiff"="REG_DWORD"", -1440 Malwarebytes log: Malwarebytes www.malwarebytes.com -Log Details- Scan Date: 1/25/17 Scan Time: 9:36 AM Logfile: mbamRegCurePro.txt Administrator: Yes -Software Information- Version: 3.0.5.1299 Components Version: 1.0.43 Update Package Version: 1.0.1094 License: Premium -System Information- OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: {computername}\{username} -Scan Summary- Scan Type: Threat Scan Result: Completed Objects Scanned: 357339 Time Elapsed: 7 min, 36 sec -Scan Options- Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled -Scan Details- Process: 1 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Quarantined, [1842], [336305],1.0.1094 Module: 10 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEZIP.DLL, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\EXTENSIONMANAGER.DLL, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Quarantined, [1842], [336305],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONLOGGINGEXTENSION.PXT, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONSPECIALIST.PXT, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\7ZIPDLL.DLL, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEUNZIP.DLL, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGHOOKSPECIALIST.PXT, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\MYRESOURCES.DLL, Quarantined, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\UTILITY.PXT, Quarantined, [1842], [334871],1.0.1094 Registry Key: 7 PUP.Optional.RegCurePro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BEC8C965-6E43-4294-8BAC-C90A03F56E85}, Delete-on-Reboot, [1842], [334911],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C3722311-284D-4B53-91F5-8865B32B0759}, Delete-on-Reboot, [1842], [334911],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{ED2F5AC7-0678-4679-83A7-F804AC53C9FB}, Delete-on-Reboot, [1842], [334911],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro Startup, Delete-on-Reboot, [1842], [334875],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro Update, Delete-on-Reboot, [1842], [334875],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297, Delete-on-Reboot, [1842], [334875],1.0.1094 Registry Value: 3 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BEC8C965-6E43-4294-8BAC-C90A03F56E85}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C3722311-284D-4B53-91F5-8865B32B0759}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094 PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{ED2F5AC7-0678-4679-83A7-F804AC53C9FB}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094 Data Stream: 0 (No malicious items detected) Folder: 25 PUP.Optional.RegCurePro, C:\PROGRAMDATA\ParetoLogic\RegCure Pro, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\USERS\{username}\APPDATA\ROAMING\ParetoLogic\RegCure Pro, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\USERS\{username}\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\PARETOLOGIC\REGCURE PRO, Delete-on-Reboot, [1842], [352843],1.0.1094 File: 305 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\dc_db.db, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\license.dat, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License_FirstRun.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License_Time.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\RB.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\tfn.xml, Delete-on-Reboot, [1842], [334940],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEZIP.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\EXTENSIONMANAGER.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Delete-on-Reboot, [1842], [336305],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONLOGGINGEXTENSION.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONSPECIALIST.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\7ZIPDLL.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEUNZIP.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGHOOKSPECIALIST.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\MYRESOURCES.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\UTILITY.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\USERS\{username}\DESKTOP\REGCURE PRO.LNK, Delete-on-Reboot, [1842], [335014],1.0.1094 PUP.Optional.RegCurePro, C:\USERS\{username}\DESKTOP\REGCUREPROSETUP.EXE, Delete-on-Reboot, [1842], [336305],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\10x10.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\10x10tile.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\background.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\contentwrapper.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\error_internet.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\footerbarfill.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\info_bubble.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_footerbarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_subheadbarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_titlebarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\0_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\0_days_trial.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\15_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\1_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\2_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\30_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\5_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_bkimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_leftimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_rightimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\error_connect.html, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\main.css, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\main_error.css, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\package_titlebar_bkimg.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_over_small.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\btn.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\btn_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_file.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_generalsettings.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_ignore.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_process.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_schedule.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_speedybackup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\offeraction.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\offeraction_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_small.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\renew_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\settings_button.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\settings_button_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\start.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\start_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_later.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_later_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_now.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_now_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_empty.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_frag.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unfrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unknown.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unmove.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\bottom_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\close.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\dlg_title.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\max.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\min.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_close.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_close_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\renew_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tabactive_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tabover_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tab_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tfn_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tfn_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\title_bar.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\top_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\upper_divider.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\collapse.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\delete.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\driverbg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\expand.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\progress_glow.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_email.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_audio.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_doc.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_image.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_other.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_video.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_drivers.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_proc.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_reg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_3rd.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_browser.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_fs.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_im.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_multi.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_office.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_other.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_windows.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_apppath.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_com.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_dll.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_empty.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_extensions.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_filepath.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_font.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_help.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_shortcut.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_uninstall.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_about.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_clean.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_driver.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_file.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_junk_settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_maintenance.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_performance.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_process.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_tools.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_general.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_ignore.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_schedule.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\vipre.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\cleaned.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\info.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\warning.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\cd.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\cpu.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\disk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\display.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\driver_outdated.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\driver_uptodate.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\floppy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\mouse_key.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\other.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\outdated.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\power.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\printer.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\software.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\system.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\uptodate.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\usb.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\defrag_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\junk_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\malware_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\privacy_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\registry_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\process.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware24.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware32.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system24.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system32.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown24.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown32.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted24.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted32.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp24.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp32.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\other.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-active.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-down.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\computer.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-active.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-down.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-hover.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\renew-over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\activate_normal.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\activate_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\active.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\animation.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\bar_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\checkmark.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\close.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\close_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\thankyou.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\time.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\weekly.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\weekly2.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\01.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\02.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\03.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\04.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\05.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\06.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\07.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\08.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\09.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_1.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_10.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_11.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_12.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_13.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_14.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_15.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_16.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_17.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_18.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_19.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_2.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_20.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_21.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_22.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_3.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_4.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_5.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_6.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_7.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_8.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_9.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\check.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\error.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\error_large.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\Fix.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\Fix_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\md5.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\process-animation.gif, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\warning.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\warning_large.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\drivers.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\maintenance.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\overview.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\scan.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\tools.png, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\colors.xml, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\HandleUpdate.dll, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\License.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\License_Time.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\LogSettings.xml, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\privacy.db, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\RB.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\SandBoxer.dll, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\SBTE.dll, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\settings.xml, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\sqlite3.dll, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\uninstall.exe, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\unrar.dll, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\UNS.xml, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\whitelist.dat, Delete-on-Reboot, [1842], [334871],1.0.1094 PUP.Optional.RegCurePro, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro\RegCure Pro.lnk, Delete-on-Reboot, [1842], [352843],1.0.1094 PUP.Optional.RegCurePro, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro\Uninstall RegCure Pro.lnk, Delete-on-Reboot, [1842], [352843],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO_SCH_54A5CDF4-E2D6-11E6-B520-080027750297.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO STARTUP, Delete-on-Reboot, [1842], [334873],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO STARTUP.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO UPDATE, Delete-on-Reboot, [1842], [334873],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO UPDATE.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094 PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO_SCH_54A5CDF4-E2D6-11E6-B520-080027750297, Delete-on-Reboot, [1842], [334873],1.0.1094 Physical Sector: 0 (No malicious items detected) (end) As mentioned before the full version of Malwarebytes could have protected your computer against this threat. We use different ways of protecting your computer(s): Dynamically Blocks Malware Sites & Servers Malware Execution Prevention Save yourself the hassle and get protected.