Viposhopami.exe "C:\Users\test22\AppData\Local\Temp\64-f4e04-c63-98d8d-23884bc27b79f\Viposhopami.exe"
2896iexplore.exe "C:\Program Files (x86)\Internet Explorer\iexplore.exe" https://www.profitabletrustednetwork.com/e2q8zu9hu?key=a971bbe4a40a7216a1a87d8f455f71e6
2836iexplore.exe "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:2836 CREDAT:145409
604poweroff.tmp "C:\Users\test22\AppData\Local\Temp\is-NK702.tmp\poweroff.tmp" /SL5="$8012C,490199,350720,C:\Program Files\Windows Mail\IMRMEEDGJJ\poweroff.exe" /VERYSILENT
2988Power Off.exe "C:\Program Files (x86)\powerOff\Power Off.exe" -silent -desktopShortcut -programMenu
800Lupisaeguwu.exe "C:\Users\test22\AppData\Local\Temp\85-2a844-436-38eb4-cee5932e512e3\Lupisaeguwu.exe"
3028explorer.exe C:\Windows\Explorer.EXE
1452