5.exe "C:\Users\test22\AppData\Local\Temp\New Feature\5.exe"
23844.exe "C:\Users\test22\AppData\Local\Temp\New Feature\4.exe"
2228cmd.exe "C:\Windows\System32\cmd.exe" /c echo WWjSNMM
2720findstr.exe findstr /V /R "^kBqFuWHryiPtDfiJvkiiDXYDRmkOIjdtnwDLTWTiPWEfZhhCcQLTxIkgCvNGKScTRKGBLvPAsZaGaJEEjJaRBvKQQfpbphvWBLngHLQZwkBcdFVSSpxwmDscqPLvhastCctHkfW$" Fino.aac
1768cmd.exe "C:\Windows\system32\cmd.exe" /c rd /s /q C:\ProgramData\gqmibootdplpg & timeout 2 & del /f /q "C:\Users\test22\AppData\Local\Temp\BqzrjlvCjf\Metto.com"
3292timeout.exe timeout 2
3352cmd.exe "C:\Windows\system32\cmd.exe" /c rd /s /q C:\ProgramData\gqmibootdplpg & timeout 2 & del /f /q "C:\Users\test22\AppData\Local\Temp\BqzrjlvCjf\Metto.com"
3392timeout.exe timeout 2
3460PING.EXE ping 127.0.0.1 -n 30
2908cmd.exe "C:\Windows\System32\cmd.exe" /c echo RzfYXJ
1572findstr.exe findstr /V /R "^LFvycdHogwdsMEijFHCSQsbggCHrfhgGFxBASEMdhtGSxuaSlByjELYzooQSIDSwNKLsrHxwVkFMLFTolOTOiwwUviaKNTIJjEyKxqPCitszujICgIITJtTLIRVWgKhwDVAuApN$" Mantenga.eps
556Uso.com C:\Users\test22\AppData\Local\Temp\zzguiZoqUNz\Uso.com Mezzo.mp3
2364PING.EXE ping 127.0.0.1 -n 30
2748