RegAsm.exe "C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe"
2580crypteda.exe "C:\Users\test22\AppData\Local\Temp\1000004001\crypteda.exe"
2848setup2.exe "C:\Users\test22\AppData\Local\Temp\1000009001\setup2.exe"
792stealc_default2.exe "C:\Users\test22\AppData\Local\Temp\1000066001\stealc_default2.exe"
21281.exe "C:\Users\test22\AppData\Local\Temp\1000191001\1.exe"
2928GetSys.exe "C:\Users\test22\AppData\Local\Temp\1000228001\GetSys.exe"
184Amadeus.exe "C:\Users\test22\1000238002\Amadeus.exe"
2636runtime.exe "C:\Users\test22\AppData\Local\Temp\1000243001\runtime.exe"
2228seidr_build.exe "C:\Users\test22\AppData\Local\Temp\1000248001\seidr_build.exe"
1012explorer.exe C:\Windows\Explorer.EXE
1236