Jump to content

Welcome to Geeks to Go
Geeks to Go Welcome
Create Account Login to Account
Photo

Removal instructions for RegCure Pro

- - - - -

  • Please log in to reply
No replies to this topic

#1
Metallica

Metallica

    Spyware Veteran

  • GeekU Moderator
  • 33,101 posts
Content is republished with permission from Malwarebytes.

What is RegCure Pro?

The Malwarebytes research team has determined that RegCure Pro is a "system optimizer". These so-called "system optimizers" use intentional false positives to convince users that their systems have problems. Then they try to sell you their software, claiming it will remove these problems.
More information can be found on our Malwarebytes Labs blog.

How do I know if I am infected with RegCure Pro?

This is how the main screen of the sytem optimizer looks:

main.png

You will find these icons in your taskbar and on your desktop:

icons.png

and see these warnings during install:

warning1.png

warning2.png

and these screens during "operations":

warning7.png

warning6.png

You may see this entry in your list of installed programs:

warning4.png

and these tasks in your Task Scheduler:

warning3.png

How did RegCure Pro get on my computer?

These so-called system optimizers use different methods of getting installed. This particular one was downloaded from their site.

How do I remove RegCure Pro?

Our program Malwarebytes can detect and remove this potentially unwanted application.
We recommend using the built-in uninstaller first, because Malwarebytes will not remove the BitDefender elements and folders that were introduced by this installer, since that could lead to possible conflicts.
  • Please download Malwarebytes to your desktop.
  • Double-click mb3-setup-consumer-{version}.exe and follow the prompts to install the program.
  • Then click Finish.
  • Once the program has fully updated, select Scan Now on the Dashboard. Or select the Threat Scan from the Scan menu.
  • If another update of the definitions is available, it will be implemented before the rest of the scanning procedure.
  • When the scan is complete, make sure that all Threats are selected, and click Remove Selected.
  • Restart your computer when prompted to do so.
Is there anything else I need to do to get rid of RegCure Pro?
  • No, Malwarebytes removes RegCure Pro completely.
  • This PUP creates some scheduled tasks. You can read here how to check for and, if necessary, remove Scheduled Tasks.
How would the full version of Malwarebytes help protect me?

We hope our application and this guide have helped you eradicate this system optimizer.

As you can see below the full version of Malwarebytes would have protected you against the RegCure Pro installer. It would have warned you before the application could install itself, giving you a chance to stop it before it became too late.

protection1.png

and we block access to their domain:

protection2.png

Technical details for experts

You may see these entries in FRST logs:

 (ParetoLogic, Inc.) C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe
 (Digital Care Solutions) C:\Program Files\BDServices\BitDefenderCOM.exe
 R2 BitDefenderCOM; C:\Program Files\BDServices\BitDefenderCom.exe [1028096 2016-12-12] (Digital Care Solutions) [File not signed]
 S3 scan; C:\Program Files\BDServices\scan.dll [627688 2016-12-12] (Bitdefender)
 R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-12-12] (BitDefender S.R.L.)
 C:\Windows\System32\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297
 C:\Windows\System32\Tasks\RegCure Pro Update
 C:\Windows\System32\Tasks\RegCure Pro Startup
 C:\Users\{username}\Desktop\RegCure Pro.lnk
 C:\Windows\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job
 C:\Windows\Tasks\RegCure Pro Startup.job
 C:\Windows\Tasks\RegCure Pro Update.job
 C:\Users\{username}\AppData\Roaming\ParetoLogic
 C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic
 C:\ProgramData\ParetoLogic
 C:\Program Files\BDServices
 C:\Program Files (x86)\ParetoLogic

RegCure Pro (HKLM-x32\...\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}) (Version: 3.3.20.0 - ParetoLogic, Inc.) <==== ATTENTION
Task: {BEC8C965-6E43-4294-8BAC-C90A03F56E85} - System32\Tasks\RegCure Pro Update => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.)
Task: {C3722311-284D-4B53-91F5-8865B32B0759} - System32\Tasks\RegCure Pro Startup => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.)
Task: {ED2F5AC7-0678-4679-83A7-F804AC53C9FB} - System32\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297 => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe [2016-12-15] (ParetoLogic, Inc.) <==== ATTENTION
Task: C:\Windows\Tasks\RegCure Pro Startup.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe
Task: C:\Windows\Tasks\RegCure Pro Update.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe
Task: C:\Windows\Tasks\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job => C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe <==== ATTENTION
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\7ZipDLL.dll
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\LiteZip.dll
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\ExtensionManager.dll
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\CommonLoggingExtension.pxt
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\CommonSpecialist.pxt
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegHookSpecialist.pxt
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\Utility.pxt
() C:\Program Files (x86)\ParetoLogic\RegCure Pro\LiteUnzip.dll

Excerpt of the alterations made by the installer (full log available on request):

File system details [View: All details] (Selection)
---------------------------------------------------
    Adds the folder C:\Program Files\BDServices
       Adds the file bdardrv.dll"="12/12/2016 6:42 PM, 203792 bytes, A
       Adds the file bdavlic.dat"="12/12/2016 6:42 PM, 64 bytes, A
       Adds the file bdquar.dll"="12/12/2016 6:42 PM, 998536 bytes, A
       Adds the file bdsmartdb.dll"="12/12/2016 6:42 PM, 843440 bytes, A
       Adds the file BDUpdateServiceCom.dll"="12/12/2016 6:42 PM, 1818864 bytes, A
       Adds the file BitDefenderCOM.exe"="12/12/2016 6:49 PM, 1028096 bytes, A
       Adds the file BitDefenderCOMPS.dll"="12/12/2016 6:49 PM, 87040 bytes, A
       Adds the file gzflt.sys"="12/12/2016 6:42 PM, 161592 bytes, A
       Adds the file gzflt_create.reg"="12/12/2016 6:42 PM, 1224 bytes, A
       Adds the file gzfltum.dll"="12/12/2016 6:42 PM, 110080 bytes, A
       Adds the file onaccess.log"="1/25/2017 9:14 AM, 0 bytes, A
       Adds the file scan.dll"="12/12/2016 6:42 PM, 627688 bytes, A
       Adds the file scanpath_0.log"="1/25/2017 9:15 AM, 210 bytes, A
       Adds the file smartdb-ntfs.db"="1/25/2017 9:14 AM, 19333120 bytes, A
       Adds the file smartmd5cache.dat"="1/25/2017 9:14 AM, 4194304 bytes, A
       Adds the file trufos.cat"="12/12/2016 6:42 PM, 9533 bytes, A
       Adds the file trufos.dll"="12/12/2016 6:42 PM, 637416 bytes, A
       Adds the file trufos.inf"="12/12/2016 6:42 PM, 3230 bytes, A
       Adds the file trufos.sys"="12/12/2016 6:42 PM, 485512 bytes, A
       Adds the file uninstall.exe"="12/12/2016 6:49 PM, 63800 bytes, A
       Adds the file updaterAndOnDemand.log"="1/25/2017 9:14 AM, 0 bytes, A
    Adds the folder C:\Program Files\BDServices\loc1
       Adds the file bdcore.dll"="1/25/2017 9:20 AM, 144632 bytes, A
       Adds the file definition_installed.txt"="1/25/2017 9:20 AM, 3 bytes, A
       Adds the file versions.dat.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 57030 bytes, A
       Adds the file versions.dat.gz.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 0 bytes, A
       Adds the file versions.id.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 1254 bytes, A
       Adds the file versions.sig.512A26895407AEF4F2964BE772AF939A"="1/25/2017 9:14 AM, 256 bytes, A
    Adds the folder C:\Program Files\BDServices\loc1\Plugins
       Adds the file 7zip.xmd"="1/25/2017 9:14 AM, 31750 bytes, A
       Adds the file access.xmd"="1/25/2017 9:14 AM, 5140 bytes, A
       Adds the file ace.xmd"="1/25/2017 9:14 AM, 12794 bytes, A
       Adds the file adsntfs.xmd"="1/25/2017 9:14 AM, 6089 bytes, A
       Adds the file aitok.cvd"="1/25/2017 9:14 AM, 15540 bytes, A
       Adds the file alz.xmd"="1/25/2017 9:14 AM, 12791 bytes, A
       Adds the file ar.xmd"="1/25/2017 9:14 AM, 2009 bytes, A
       Adds the file arc.xmd"="1/25/2017 9:15 AM, 352 bytes, A
       Adds the file arj.xmd"="1/25/2017 9:15 AM, 8687 bytes, A
       Adds the file aspy_emu.cvd"="1/25/2017 9:15 AM, 307563 bytes, A
       Adds the file auto.000"="1/25/2017 9:22 AM, 8551616 bytes, A
       Adds the file auto.cvd"="1/25/2017 9:15 AM, 269916 bytes, A
       Adds the file auto.xmd"="1/25/2017 9:15 AM, 14536 bytes, A
       Adds the file autoit.xmd"="1/25/2017 9:15 AM, 16766 bytes, A
       Adds the file avxdisk.xmd"="1/25/2017 9:15 AM, 6049 bytes, A
       Adds the file bach.xmd"="1/25/2017 9:15 AM, 3824 bytes, A
       Adds the file boot.xmd"="1/25/2017 9:15 AM, 4198 bytes, A
       Adds the file bzip2.xmd"="1/25/2017 9:15 AM, 22427 bytes, A
       Adds the file cab.xmd"="1/25/2017 9:15 AM, 18632 bytes, A
       Adds the file cache.000"="1/25/2017 9:22 AM, 13712384 bytes, A

       Adds the file cache.016"="1/25/2017 9:24 AM, 16 bytes, A
       Adds the file catdb"="1/25/2017 9:22 AM, 2803250 bytes, A
       Adds the file ceva_dll.cvd"="1/25/2017 9:15 AM, 158583 bytes, A
       Adds the file ceva_emu.cvd"="1/25/2017 9:15 AM, 195625 bytes, A
       Adds the file ceva_vfs.cvd"="1/25/2017 9:15 AM, 763849 bytes, A
       Adds the file ceva_vfs.ivd"="1/25/2017 9:15 AM, 12 bytes, A
       Adds the file cevakrnl.cvd"="1/25/2017 9:15 AM, 600078 bytes, A
       Adds the file cevakrnl.ivd"="1/25/2017 9:15 AM, 91120 bytes, A
       Adds the file cevakrnl.rv0"="1/25/2017 9:15 AM, 360143 bytes, A
       Adds the file cevakrnl.rv1"="1/25/2017 9:15 AM, 434037 bytes, A
       Adds the file cevakrnl.rv2"="1/25/2017 9:15 AM, 355457 bytes, A
       Adds the file cevakrnl.rv3"="1/25/2017 9:15 AM, 1097202 bytes, A
       Adds the file cevakrnl.rv4"="1/25/2017 9:15 AM, 40601 bytes, A
       Adds the file cevakrnl.rv5"="1/25/2017 9:15 AM, 458386 bytes, A
       Adds the file cevakrnl.rv6"="1/25/2017 9:15 AM, 272 bytes, A
       Adds the file cevakrnl.rv7"="1/25/2017 9:15 AM, 405056 bytes, A
       Adds the file cevakrnl.rv8"="1/25/2017 9:15 AM, 363402 bytes, A
       Adds the file cevakrnl.rv9"="1/25/2017 9:15 AM, 32684 bytes, A
       Adds the file cevakrnl.rvd"="1/25/2017 9:15 AM, 109318 bytes, A
       Adds the file cevakrnl.xmd"="1/25/2017 9:15 AM, 315640 bytes, A
       Adds the file chm.xmd"="1/25/2017 9:15 AM, 16227 bytes, A
       Adds the file cookie.cvd"="1/25/2017 9:15 AM, 6507 bytes, A
       Adds the file cookie.xmd"="1/25/2017 9:15 AM, 1231 bytes, A
       Adds the file cpio.xmd"="1/25/2017 9:15 AM, 3995 bytes, A
       Adds the file cran.cvd"="1/25/2017 9:15 AM, 710852 bytes, A
       Adds the file cran.ivd"="1/25/2017 9:15 AM, 145435 bytes, A
       Adds the file dalvik.cvd"="1/25/2017 9:15 AM, 7 bytes, A
       Adds the file dalvik.ivd"="1/25/2017 9:15 AM, 15457432 bytes, A
       Adds the file dalvik.xmd"="1/25/2017 9:15 AM, 25505 bytes, A
       Adds the file dbx.xmd"="1/25/2017 9:15 AM, 2790 bytes, A
       Adds the file disp.xmd"="1/25/2017 9:15 AM, 32855 bytes, A
       Adds the file docfile.xmd"="1/25/2017 9:16 AM, 25217 bytes, A
       Adds the file dummyarch.xmd"="1/25/2017 9:16 AM, 4402 bytes, A
       Adds the file dummyscan.xmd"="1/25/2017 9:16 AM, 4418 bytes, A
       Adds the file e_spyw.cvd"="1/25/2017 9:16 AM, 433026 bytes, A
       Adds the file e_spyw.i00"="1/25/2017 9:16 AM, 3429 bytes, A

       Adds the file e_spyw.ivd"="1/25/2017 9:16 AM, 571564 bytes, A
       Adds the file emalware.000"="1/25/2017 9:14 AM, 656078 bytes, A

       Adds the file emalware.i99"="1/25/2017 9:20 AM, 73 bytes, A
       Adds the file emalware.ivd"="1/25/2017 9:20 AM, 73 bytes, A
       Adds the file engines.cvd"="1/25/2017 9:20 AM, 70979 bytes, A
       Adds the file epoc.xmd"="1/25/2017 9:20 AM, 3187 bytes, A
       Adds the file gvmscripts.cvd"="1/25/2017 9:20 AM, 111791 bytes, A
       Adds the file gzip.xmd"="1/25/2017 9:20 AM, 2356 bytes, A
       Adds the file ha.xmd"="1/25/2017 9:20 AM, 328 bytes, A
       Adds the file hlp.xmd"="1/25/2017 9:20 AM, 5022 bytes, A
       Adds the file hpe.cvd"="1/25/2017 9:20 AM, 4669 bytes, A
       Adds the file hqx.xmd"="1/25/2017 9:20 AM, 2134 bytes, A
       Adds the file html.xmd"="1/25/2017 9:20 AM, 50553 bytes, A
       Adds the file htmltok.cvd"="1/25/2017 9:20 AM, 111895 bytes, A
       Adds the file imp.xmd"="1/25/2017 9:20 AM, 9604 bytes, A
       Adds the file inno.xmd"="1/25/2017 9:20 AM, 1612 bytes, A
       Adds the file instyler.xmd"="1/25/2017 9:20 AM, 30861 bytes, A
       Adds the file iso.xmd"="1/25/2017 9:20 AM, 33210 bytes, A
       Adds the file java.cvd"="1/25/2017 9:20 AM, 2238192 bytes, A
       Adds the file java.xmd"="1/25/2017 9:20 AM, 7607 bytes, A
       Adds the file jay.cvd"="1/25/2017 9:20 AM, 112472 bytes, A
       Adds the file jpeg.cvd"="1/25/2017 9:20 AM, 233894 bytes, A
       Adds the file jpeg.xmd"="1/25/2017 9:20 AM, 138122 bytes, A
       Adds the file krnl.xmd"="1/25/2017 9:20 AM, 5569 bytes, A
       Adds the file lha.xmd"="1/25/2017 9:20 AM, 8886 bytes, A
       Adds the file lib.cvd"="1/25/2017 9:20 AM, 227066 bytes, A
       Adds the file lib.ivd"="1/25/2017 9:20 AM, 28 bytes, A
       Adds the file lib.rvd"="1/25/2017 9:20 AM, 3561 bytes, A
       Adds the file lnk.xmd"="1/25/2017 9:20 AM, 429 bytes, A
       Adds the file lyme.xmd"="1/25/2017 9:20 AM, 1904 bytes, A
       Adds the file machofat.xmd"="1/25/2017 9:20 AM, 10461 bytes, A
       Adds the file mbox.xmd"="1/25/2017 9:20 AM, 2801 bytes, A
       Adds the file mbx.xmd"="1/25/2017 9:20 AM, 1012 bytes, A
       Adds the file mdx.xmd"="1/25/2017 9:20 AM, 92314 bytes, A
       Adds the file mdx_97.cvd"="1/25/2017 9:20 AM, 726631 bytes, A
       Adds the file mdx_97.ivd"="1/25/2017 9:20 AM, 76 bytes, A
       Adds the file mdx_w95.cvd"="1/25/2017 9:20 AM, 59656 bytes, A
       Adds the file mdx_x95.cvd"="1/25/2017 9:20 AM, 9650 bytes, A
       Adds the file mdx_xf.cvd"="1/25/2017 9:20 AM, 4521 bytes, A
       Adds the file mime.xmd"="1/25/2017 9:20 AM, 113095 bytes, A
       Adds the file mobmalware.cvd"="1/25/2017 9:20 AM, 5864 bytes, A
       Adds the file mobmalware.xmd"="1/25/2017 9:20 AM, 8183 bytes, A
       Adds the file mso.xmd"="1/25/2017 9:20 AM, 2299 bytes, A
       Adds the file na.cvd"="1/25/2017 9:20 AM, 205 bytes, A
       Adds the file nelf.cvd"="1/25/2017 9:20 AM, 6456 bytes, A
       Adds the file nelf.xmd"="1/25/2017 9:20 AM, 359 bytes, A
       Adds the file newjava.cvd"="1/25/2017 9:20 AM, 725 bytes, A
       Adds the file nsis.xmd"="1/25/2017 9:20 AM, 17113 bytes, A
       Adds the file objd.xmd"="1/25/2017 9:20 AM, 4873 bytes, A
       Adds the file ocra.xmd"="1/25/2017 9:20 AM, 9043 bytes, A
       Adds the file orice.rvd"="1/25/2017 9:20 AM, 150471 bytes, A
       Adds the file pdf.xmd"="1/25/2017 9:20 AM, 122449 bytes, A
       Adds the file pdftok.cvd"="1/25/2017 9:20 AM, 39449 bytes, A
       Adds the file proc.xmd"="1/25/2017 9:20 AM, 15271 bytes, A
       Adds the file pst.xmd"="1/25/2017 9:20 AM, 23533 bytes, A
       Adds the file pyinstaller.xmd"="1/25/2017 9:20 AM, 7655 bytes, A
       Adds the file quickbfc.xmd"="1/25/2017 9:20 AM, 11729 bytes, A
       Adds the file rar.xmd"="1/25/2017 9:20 AM, 55859 bytes, A
       Adds the file regarch.cvd"="1/25/2017 9:20 AM, 203 bytes, A
       Adds the file regarch.xmd"="1/25/2017 9:20 AM, 16486 bytes, A
       Adds the file regscan.cvd"="1/25/2017 9:20 AM, 15292 bytes, A
       Adds the file regscan.xmd"="1/25/2017 9:20 AM, 374 bytes, A
       Adds the file rpm.xmd"="1/25/2017 9:20 AM, 1155 bytes, A
       Adds the file rtf.xmd"="1/25/2017 9:20 AM, 9071 bytes, A
       Adds the file rup.cvd"="1/25/2017 9:20 AM, 2536 bytes, A
       Adds the file rup.xmd"="1/25/2017 9:20 AM, 672 bytes, A
       Adds the file sdx.cvd"="1/25/2017 9:20 AM, 1595752 bytes, A
       Adds the file sdx.ivd"="1/25/2017 9:20 AM, 3062017 bytes, A
       Adds the file sdx.xmd"="1/25/2017 9:20 AM, 8383 bytes, A
       Adds the file sfx.xmd"="1/25/2017 9:20 AM, 12965 bytes, A
       Adds the file soul.xmd"="1/25/2017 9:20 AM, 10378 bytes, A
       Adds the file swf.xmd"="1/25/2017 9:20 AM, 10648 bytes, A
       Adds the file sysarch.xmd"="1/25/2017 9:20 AM, 1344 bytes, A
       Adds the file syscan.xmd"="1/25/2017 9:20 AM, 3725 bytes, A
       Adds the file tar.xmd"="1/25/2017 9:20 AM, 2514 bytes, A
       Adds the file td0.xmd"="1/25/2017 9:20 AM, 4897 bytes, A
       Adds the file thebat.xmd"="1/25/2017 9:20 AM, 1340 bytes, A
       Adds the file tknscan.cvd"="1/25/2017 9:20 AM, 18724 bytes, A
       Adds the file tnef.xmd"="1/25/2017 9:20 AM, 2582 bytes, A
       Adds the file uif.xmd"="1/25/2017 9:20 AM, 1643 bytes, A
       Adds the file unpack.cvd"="1/25/2017 9:20 AM, 226022 bytes, A
       Adds the file unpack.ivd"="1/25/2017 9:20 AM, 170579 bytes, A
       Adds the file unpack.xmd"="1/25/2017 9:20 AM, 59957 bytes, A
       Adds the file update.txt"="1/25/2017 9:20 AM, 111 bytes, A
       Adds the file uudecode.xmd"="1/25/2017 9:20 AM, 2056 bytes, A
       Adds the file variant.c00"="1/25/2017 9:20 AM, 76 bytes, A
       Adds the file variant.c01"="1/25/2017 9:20 AM, 76 bytes, A
       Adds the file variant.c02"="1/25/2017 9:20 AM, 76 bytes, A
       Adds the file variant.cvd"="1/25/2017 9:20 AM, 4618 bytes, A
       Adds the file vbtok.cvd"="1/25/2017 9:20 AM, 5594 bytes, A
       Adds the file ve.cvd"="1/25/2017 9:20 AM, 126874 bytes, A
       Adds the file ve.ivd"="1/25/2017 9:20 AM, 48 bytes, A
       Adds the file ve.xmd"="1/25/2017 9:20 AM, 107053 bytes, A
       Adds the file vedata.cvd"="1/25/2017 9:20 AM, 688 bytes, A
       Adds the file viza.xmd"="1/25/2017 9:20 AM, 5593 bytes, A
       Adds the file wim.xmd"="1/25/2017 9:20 AM, 8607 bytes, A
       Adds the file wise.xmd"="1/25/2017 9:20 AM, 6075 bytes, A
       Adds the file xar.xmd"="1/25/2017 9:20 AM, 4062 bytes, A
       Adds the file xcookies.xmd"="1/25/2017 9:20 AM, 5904 bytes, A
       Adds the file xishield.xmd"="1/25/2017 9:20 AM, 1516 bytes, A
       Adds the file xlmrd.cvd"="1/25/2017 9:20 AM, 12374 bytes, A
       Adds the file xlmrd.ivd"="1/25/2017 9:20 AM, 37472 bytes, A
       Adds the file xzengine.xmd"="1/25/2017 9:20 AM, 19354 bytes, A
       Adds the file yishield.xmd"="1/25/2017 9:20 AM, 1866 bytes, A
       Adds the file z.xmd"="1/25/2017 9:20 AM, 1796 bytes, A
       Adds the file zip.xmd"="1/25/2017 9:20 AM, 45632 bytes, A
       Adds the file zoo.xmd"="1/25/2017 9:20 AM, 353 bytes, A
    Adds the folder C:\Program Files\BDServices\loc2
       Adds the file definition_installed.txt"="1/25/2017 9:20 AM, 3 bytes, A
    Adds the folder C:\Program Files\BDServices\loc2\Plugins
    Adds the folder C:\Program Files\BDServices\quarantine
    Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro
       Adds the file 7ZipDLL.dll"="12/15/2016 7:01 PM, 563712 bytes, A
       Adds the file colors.xml"="12/15/2016 7:01 PM, 3762 bytes, A
       Adds the file CommonLoggingExtension.pxt"="12/15/2016 7:01 PM, 155264 bytes, A
       Adds the file CommonSpecialist.pxt"="12/15/2016 7:01 PM, 153728 bytes, A
       Adds the file ExtensionManager.dll"="12/15/2016 7:01 PM, 83584 bytes, A
       Adds the file HandleUpdate.dll"="12/15/2016 7:01 PM, 1802752 bytes, A
       Adds the file License.rdat"="1/25/2017 9:14 AM, 0 bytes, A
       Adds the file License_Time.rdat"="1/25/2017 9:14 AM, 48 bytes, A
       Adds the file LiteUnzip.dll"="12/15/2016 7:01 PM, 53352 bytes, A
       Adds the file LiteZip.dll"="12/15/2016 7:01 PM, 45672 bytes, A
       Adds the file LogSettings.xml"="12/15/2016 7:01 PM, 6386 bytes, A
       Adds the file MyResources.dll"="12/15/2016 7:01 PM, 553472 bytes, A
       Adds the file privacy.db"="12/15/2016 7:01 PM, 44816 bytes, A
       Adds the file RB.rdat"="1/25/2017 9:14 AM, 48 bytes, A
       Adds the file RegCurePro.exe"="12/15/2016 7:01 PM, 5822456 bytes, A
       Adds the file RegHookSpecialist.pxt"="12/15/2016 7:01 PM, 138880 bytes, A
       Adds the file SandBoxer.dll"="12/15/2016 7:01 PM, 558720 bytes, A
       Adds the file SBTE.dll"="12/15/2016 7:01 PM, 1028488 bytes, A
       Adds the file settings.xml"="12/15/2016 7:01 PM, 861 bytes, A
       Adds the file sqlite3.dll"="12/15/2016 7:01 PM, 333043 bytes, A
       Adds the file uninstall.exe"="12/15/2016 7:01 PM, 300992 bytes, A
       Adds the file unrar.dll"="12/15/2016 7:01 PM, 160256 bytes, A
       Adds the file UNS.xml"="12/15/2016 7:01 PM, 1118 bytes, A
       Adds the file Utility.pxt"="12/15/2016 7:01 PM, 925824 bytes, A
       Adds the file whitelist.dat"="12/15/2016 7:01 PM, 7528 bytes, A
    Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\html
       Adds the file 0_days.htm"="12/15/2016 7:01 PM, 2635 bytes, A
       Adds the file 0_days_trial.htm"="12/15/2016 7:01 PM, 2589 bytes, A
       Adds the file 1_days.htm"="12/15/2016 7:01 PM, 2643 bytes, A
       Adds the file 15_days.htm"="12/15/2016 7:01 PM, 2711 bytes, A
       Adds the file 2_days.htm"="12/15/2016 7:01 PM, 2603 bytes, A
       Adds the file 30_days.htm"="12/15/2016 7:01 PM, 2636 bytes, A
       Adds the file 5_days.htm"="12/15/2016 7:01 PM, 2639 bytes, A
       Adds the file container_content_bkimg.gif"="12/15/2016 7:01 PM, 114 bytes, A
       Adds the file container_content_leftimg.gif"="12/15/2016 7:01 PM, 298 bytes, A
       Adds the file container_content_rightimg.gif"="12/15/2016 7:01 PM, 296 bytes, A
       Adds the file error_connect.html"="12/15/2016 7:01 PM, 1347 bytes, A
       Adds the file main.css"="12/15/2016 7:01 PM, 2033 bytes, A
       Adds the file main_error.css"="12/15/2016 7:01 PM, 4223 bytes, A
       Adds the file package_titlebar_bkimg.jpg"="12/15/2016 7:01 PM, 573 bytes, A
    Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images
    Adds the folder C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images
    Adds the folder C:\ProgramData\ParetoLogic\RegCure Pro
       Adds the file dc_db.db"="12/15/2016 7:01 PM, 16384 bytes, A
       Adds the file license.dat"="1/25/2017 9:14 AM, 192 bytes, A
       Adds the file License.rdat"="1/25/2017 9:14 AM, 80 bytes, A
       Adds the file License_FirstRun.rdat"="1/25/2017 9:14 AM, 48 bytes, A
       Adds the file License_Time.rdat"="1/25/2017 9:14 AM, 48 bytes, A
       Adds the file RB.rdat"="1/25/2017 9:14 AM, 48 bytes, A
       Adds the file tfn.xml"="1/25/2017 9:15 AM, 243 bytes, A
    In the existing folder C:\Users\{username}\AppData\Roaming
       Adds the file LogFile.txt"="1/25/2017 9:14 AM, 53 bytes, A
    In the existing folder C:\Users\{username}\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch
       Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1214 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro
       Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1232 bytes, A
       Adds the file Uninstall RegCure Pro.lnk"="1/25/2017 9:14 AM, 1227 bytes, A
    Adds the folder C:\Users\{username}\AppData\Roaming\ParetoLogic\RegCure Pro
    In the existing folder C:\Users\{username}\Desktop
       Adds the file RegCure Pro.lnk"="1/25/2017 9:14 AM, 1190 bytes, A
    In the existing folder C:\Windows\System32\drivers
       Adds the file Trufos.sys"="12/12/2016 6:42 PM, 485512 bytes, A
    In the existing folder C:\Windows\System32\Tasks
       Adds the file RegCure Pro Startup"="1/25/2017 9:14 AM, 2630 bytes, A
       Adds the file RegCure Pro Update"="1/25/2017 9:14 AM, 3344 bytes, A
       Adds the file RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297"="1/25/2017 9:14 AM, 4020 bytes, A
    In the existing folder C:\Windows\Tasks
       Adds the file RegCure Pro Startup.job"="1/25/2017 9:14 AM, 468 bytes, A
       Adds the file RegCure Pro Update.job"="1/25/2017 9:14 AM, 466 bytes, A
       Adds the file RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job"="1/25/2017 9:14 AM, 571 bytes, A

Registry details [View: All details] (Selection)
------------------------------------------------
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{419E484A-F3EB-43DC-A622-C7B069FED362}]
       "(Default)"="REG_SZ"", "BDUpdateServiceCom"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{BDE5CCD0-4CD6-433B-B279-B63EB052ECD7}]
       "LocalService"="REG_SZ"", "BitDefenderCOM"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{EF436DD1-6449-4F19-83C2-CF546175C7BF}]
       "(Default)"="REG_SZ"", "BitDefender Threat Scanner"
       "LocalService"="REG_SZ"", "scan"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BDUpdateServiceCom.DLL]
       "AppID"="REG_SZ"", "{419E484A-F3EB-43DC-A622-C7B069FED362}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\scan.DLL]
       "AppID"="REG_SZ"", "{EF436DD1-6449-4F19-83C2-CF546175C7BF}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterfa.1]
       "(Default)"="REG_SZ"", "BDUpdateComInterface Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterfa.1\CLSID]
       "(Default)"="REG_SZ"", "{94915A56-4D71-4F85-B59C-CC040F5AC6F0}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface]
       "(Default)"="REG_SZ"", "BDUpdateComInterface Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface\CLSID]
       "(Default)"="REG_SZ"", "{94915A56-4D71-4F85-B59C-CC040F5AC6F0}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BDUpdateServiceCom.BDUpdateComInterface\CurVer]
       "(Default)"="REG_SZ"", "BDUpdateServiceCom.BDUpdateComInterfa.1"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner]
       "(Default)"="REG_SZ"", "BitDefender RootkitScanner Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner\CLSID]
       "(Default)"="REG_SZ"", "{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner\CurVer]
       "(Default)"="REG_SZ"", "BitDefender.RootkitScanner.1"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner.1]
       "(Default)"="REG_SZ"", "BitDefender RootkitScanner Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.RootkitScanner.1\CLSID]
       "(Default)"="REG_SZ"", "{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner]
       "(Default)"="REG_SZ"", "BitDefender ThreatScanner Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner\CLSID]
       "(Default)"="REG_SZ"", "{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner\CurVer]
       "(Default)"="REG_SZ"", "BitDefender.ThreatScanner.1"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner.1]
       "(Default)"="REG_SZ"", "BitDefender ThreatScanner Class"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BitDefender.ThreatScanner.1\CLSID]
       "(Default)"="REG_SZ"", "{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5874475D-8CFB-4116-86C3-E4B3F920D1C8}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5D93628B-5A5E-4A2C-BBC5-4C11ED61980D}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{65416821-217D-44BD-9C61-F53398FB1B46}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DFC0DC7-FDC5-44C2-8B80-5977BA8F8ACC}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7D3AB682-73FF-4057-BD63-6A1D322F8C50}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{94915A56-4D71-4F85-B59C-CC040F5AC6F0}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AC23221F-A56E-4EA6-932E-3D58EBA81A85}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5AFF088-92F8-41a9-8CAB-E9CDCCE967AC}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DDD399-8C4C-4D2C-836E-AEC6AA9FC30F}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0AE8D562-6C6C-464B-BE79-C3DCC67BDC41}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0F8CA558-E497-47BB-B48A-20F5054AAE5A}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{159D9EDB-C101-4D2C-9159-A1E8F9DFC58C}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1ABEE7DF-2B5F-4E94-B78B-BBF89A0AB4C0}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{24AC7A58-2956-46E7-86D3-FC92F1DB47AB}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{29BA7546-0E58-4652-9A20-C0B136290980}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3AE53837-28BF-47A5-80A3-28653D385811}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{43DD538F-4D52-4184-B25E-DA3027AD03B3}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{47305062-A369-47BF-B155-261F8150B8CD}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{60207A64-A1EB-4E5C-9189-46DAB32891D3}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7F68A0EC-2E94-4439-A376-55C72BA1AF55}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89294107-D2EE-49A6-A385-6B97CD4EF220}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8A546BEC-87B6-47C0-81CB-7A88E17E2936}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9CE8CCDE-4D4D-4876-A105-B85557E4CADE}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A56FAEB7-5BBC-435D-A46D-196E238E96A6}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DEBB822C-0B70-4251-9CB7-486CC9D61B0D}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E8057EA1-41A4-41CA-B283-C0E0013C07CD}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{EC01AC6B-A3CA-450D-8483-27CBEDD182FA}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{34F4FEAF-4921-4B5D-8BE5-CA384BFFC2CE}\1.0]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B}\1.0]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6DBB4BB7-1A78-48E8-AE01-B21507A2BF4A}\1.0]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{02DDD399-8C4C-4D2C-836E-AEC6AA9FC30F}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0AE8D562-6C6C-464B-BE79-C3DCC67BDC41}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{0F8CA558-E497-47BB-B48A-20F5054AAE5A}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{159D9EDB-C101-4D2C-9159-A1E8F9DFC58C}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1ABEE7DF-2B5F-4E94-B78B-BBF89A0AB4C0}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{24AC7A58-2956-46E7-86D3-FC92F1DB47AB}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{29BA7546-0E58-4652-9A20-C0B136290980}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{3AE53837-28BF-47A5-80A3-28653D385811}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{43DD538F-4D52-4184-B25E-DA3027AD03B3}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{47305062-A369-47BF-B155-261F8150B8CD}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{4ABDD67C-44E3-42E0-816D-D7F0E54761DF}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{60207A64-A1EB-4E5C-9189-46DAB32891D3}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{7F68A0EC-2E94-4439-A376-55C72BA1AF55}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{89294107-D2EE-49A6-A385-6B97CD4EF220}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{8A546BEC-87B6-47C0-81CB-7A88E17E2936}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{9CE8CCDE-4D4D-4876-A105-B85557E4CADE}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{A56FAEB7-5BBC-435D-A46D-196E238E96A6}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{DEBB822C-0B70-4251-9CB7-486CC9D61B0D}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E8057EA1-41A4-41CA-B283-C0E0013C07CD}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{EC01AC6B-A3CA-450D-8483-27CBEDD182FA}]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures]
       "RegCure Pro Startup.job"="REG_BINARY, ................................
       "RegCure Pro Startup.job.fp"="REG_DWORD"", -70830203
       "RegCure Pro Update.job"="REG_BINARY, ................................
       "RegCure Pro Update.job.fp"="REG_DWORD"", 1975374077
       "RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job"="REG_BINARY, ................................
       "RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297.job.fp"="REG_DWORD"", 515433264
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost]
       "bdx"="REG_MULTI_SZ, "scan sysagent "
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost\bdx]
       "AuthenticationCapabilities"="REG_DWORD"", 0
       "AuthenticationLevel"="REG_DWORD"", 2
       "CoInitializeSecurityParam"="REG_DWORD"", 1
       "DefaultRpcStackSize"="REG_DWORD"", 1024
       "ImpersonationLevel"="REG_DWORD"", 3
    [HKEY_LOCAL_MACHINE\SOFTWARE\Softwin\BitDefender Threat Scanner]
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\BDServices]
       "InstallDir"="REG_SZ"", "C:\Program Files\BDServices\"
       "Uninstall"="REG_SZ"", "C:\Program Files\BDServices\uninstall.exe"
       "Version"="REG_DWORD"", 8
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\BDServices\apps\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}]
       "(Default)"="REG_SZ"", ""
       "launch"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe"
       "shutdown"="REG_SZ"", ""C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe" -shutdown"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}]
       "DisplayIcon"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe"
       "DisplayName"="REG_SZ"", "RegCure Pro"
       "DisplayVersion"="REG_SZ"", "3.3.20.0"
       "InstallLocation"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro"
       "Publisher"="REG_SZ"", "ParetoLogic, Inc."
       "UninstallString"="REG_SZ"", "C:\Program Files (x86)\ParetoLogic\RegCure Pro\uninstall.exe"
       "URLInfoAbout"="REG_SZ"", "http://www.paretologic.com"
       "VersionMajor"="REG_DWORD"", 3
       "VersionMinor"="REG_DWORD"", 3
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\ParetoLogic\RegCure Pro]
       "Desktop"="REG_DWORD"", 1
       "InstallTime"="REG_QWORD, ....
       "Login"="REG_DWORD"", 1
       "Quick"="REG_DWORD"", 1
       "Silent"="REG_DWORD"", 0
       "Updates"="REG_DWORD"", 1
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BitDefenderCOM]
       "DependOnService"="REG_MULTI_SZ, "RPCSS "
       "DisplayName"="REG_SZ"", "BitDefenderCOM"
       "ErrorControl"="REG_DWORD"", 1
       "ImagePath"="REG_EXPAND_SZ, ""C:\Program Files\BDServices\BitDefenderCom.exe""
       "ObjectName"="REG_SZ"", "LocalSystem"
       "Start"="REG_DWORD"", 2
       "Type"="REG_DWORD"", 16
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Instances]
       "DefaultInstance"="REG_SZ"", "gzflt Instance"
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Instances\gzflt Instance]
       "Altitude"="REG_SZ"", "320820"
       "Flags"="REG_DWORD"", 0
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\gzflt\Parameters]
       "ESFFProc"="REG_MULTI_SZ, ""
       "ESFPProc"="REG_MULTI_SZ, ""
       "ESFRProc"="REG_MULTI_SZ, ""
       "ESProc"="REG_MULTI_SZ, ""
       "FsSp"="REG_MULTI_SZ, ""
       "PProcSp"="REG_MULTI_SZ, ""
       "ProcSp"="REG_MULTI_SZ, ""
       "RegSpNR"="REG_MULTI_SZ, ""
       "RegSpR"="REG_MULTI_SZ, ""
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\scan]
       "DependOnService"="REG_MULTI_SZ, "RPCSS "
       "Description"="REG_SZ"", "scan"
       "DisplayName"="REG_SZ"", "BitDefender Threat Scanner"
       "ErrorControl"="REG_DWORD"", 1
       "ImagePath"="REG_EXPAND_SZ, "%SystemRoot%\System32\svchost.exe -k bdx"
       "ObjectName"="REG_SZ"", "LocalSystem"
       "Start"="REG_DWORD"", 3
       "Type"="REG_DWORD"", 32
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\scan\Parameters]
       "ServiceDll"="REG_EXPAND_SZ, "C:\Program Files\BDServices\scan.dll"
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos]
       "BDM"="REG_DWORD"", 0
       "Description"="REG_SZ"", "Trufos Mini-Filter Driver"
       "DisplayName"="REG_SZ"", "Trufos"
       "ErrorControl"="REG_DWORD"", 1
       "Group"="REG_SZ"", "Boot Bus Extender"
       "ImagePath"="REG_EXPAND_SZ, "system32\DRIVERS\Trufos.sys"
       "Start"="REG_DWORD"", 3
       "Tag"="REG_DWORD"", 7
       "Type"="REG_DWORD"", 2
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Enum]
       "0"="REG_SZ"", "Root\LEGACY_TRUFOS\0000"
       "Count"="REG_DWORD"", 1
       "NextInstance"="REG_DWORD"", 1
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Instances]
       "DefaultInstance"="REG_SZ"", "Trufos Instance"
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Trufos\Instances\Trufos Instance]
       "Altitude"="REG_SZ"", "320770"
       "Flags"="REG_DWORD"", 0
    [HKEY_LOCAL_MACHINE\SYSTEM\gzflt]
    [HKEY_LOCAL_MACHINE\SYSTEM\Trufos]
    [HKEY_USERS\.DEFAULT\Software\SetID]
       "xxwsid_cv"="REG_SZ"", "B390BC4A-9A70-6645-9F4B-A1DA5E8B80F4"
       "xxwsid_mb"="REG_SZ"", "0"
       "xxwsid_sn"="REG_SZ"", "00426-383-5207833-06434"
       "xxwsid_wsid2"="REG_SZ"", "6CEB8016-9B61-4E42-84BA-6FE060B41214"
    [HKEY_CURRENT_USER\Software\ParetoLogic\RegCure Pro]
       "CACHEDSCANCOUNT"="REG_DWORD"", 0
       "DefaultSchedule"="REG_BINARY, ........
       "EndPointID"="REG_SZ"", "50eb952d-e2d6-11e6-b8c5-0a184418186e"
       "FROMSCHEDULE"="REG_DWORD"", 0
       "Height"="REG_DWORD"", 691
       "INSTALLDATE"="REG_SZ"", "08:15:40 25-01-2017"
       "INSTALLDATELOCAL"="REG_SZ"", "09:15:40 25-01-2017"
       "LASTSCAN_STATE"="REG_DWORD"", 1
       "LastScanTime"="REG_BINARY, ....
       "LaunchOnStartup"="REG_DWORD"", 1
       "MALWARE_COUNT"="REG_DWORD"", 1
       "OUTDATED_COUNT"="REG_DWORD"", 365
       "RunCount"="REG_DWORD"", 1
       "SCANCOUNT"="REG_DWORD"", 1
       "ScansStarted"="REG_DWORD"", 1
       "SYSTEMRATING"="REG_DWORD"", 0
       "UPDATEAVAIL"="REG_DWORD"", 2
       "UPDATESTATE"="REG_DWORD"", 1
       "Width"="REG_DWORD"", 1000
       "XPos"="REG_DWORD"", 491
       "YPos"="REG_DWORD"", 66
    [HKEY_CURRENT_USER\Software\ParetoLogic\RegCure Pro\TFN]
       "ExpiresOn"="REG_BINARY, ....
       "LStatus"="REG_DWORD"", 1
       "ScanCountDelay"="REG_DWORD"", 4
       "ServerDiff"="REG_DWORD"", -1440

Malwarebytes log:

Malwarebytes
www.malwarebytes.com

-Log Details-
Scan Date: 1/25/17
Scan Time: 9:36 AM
Logfile: mbamRegCurePro.txt
Administrator: Yes

-Software Information-
Version: 3.0.5.1299
Components Version: 1.0.43
Update Package Version: 1.0.1094
License: Premium

-System Information-
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: {computername}\{username}

-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 357339
Time Elapsed: 7 min, 36 sec

-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

-Scan Details-
Process: 1
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Quarantined, [1842], [336305],1.0.1094

Module: 10
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEZIP.DLL, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\EXTENSIONMANAGER.DLL, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Quarantined, [1842], [336305],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONLOGGINGEXTENSION.PXT, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONSPECIALIST.PXT, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\7ZIPDLL.DLL, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEUNZIP.DLL, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGHOOKSPECIALIST.PXT, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\MYRESOURCES.DLL, Quarantined, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\UTILITY.PXT, Quarantined, [1842], [334871],1.0.1094

Registry Key: 7
PUP.Optional.RegCurePro, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{C547F361-5750-4CD1-9FB6-BC93827CB6C1}, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BEC8C965-6E43-4294-8BAC-C90A03F56E85}, Delete-on-Reboot, [1842], [334911],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C3722311-284D-4B53-91F5-8865B32B0759}, Delete-on-Reboot, [1842], [334911],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{ED2F5AC7-0678-4679-83A7-F804AC53C9FB}, Delete-on-Reboot, [1842], [334911],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro Startup, Delete-on-Reboot, [1842], [334875],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro Update, Delete-on-Reboot, [1842], [334875],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\RegCure Pro_sch_54A5CDF4-E2D6-11E6-B520-080027750297, Delete-on-Reboot, [1842], [334875],1.0.1094

Registry Value: 3
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{BEC8C965-6E43-4294-8BAC-C90A03F56E85}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C3722311-284D-4B53-91F5-8865B32B0759}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094
PUP.Optional.RegCurePro, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{ED2F5AC7-0678-4679-83A7-F804AC53C9FB}|PATH, Delete-on-Reboot, [1842], [334911],1.0.1094

Data Stream: 0
(No malicious items detected)

Folder: 25
PUP.Optional.RegCurePro, C:\PROGRAMDATA\ParetoLogic\RegCure Pro, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\USERS\{username}\APPDATA\ROAMING\ParetoLogic\RegCure Pro, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\USERS\{username}\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\PARETOLOGIC\REGCURE PRO, Delete-on-Reboot, [1842], [352843],1.0.1094

File: 305
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\dc_db.db, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\license.dat, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License_FirstRun.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\License_Time.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\RB.rdat, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\ProgramData\ParetoLogic\RegCure Pro\tfn.xml, Delete-on-Reboot, [1842], [334940],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEZIP.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\EXTENSIONMANAGER.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGCUREPRO.EXE, Delete-on-Reboot, [1842], [336305],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONLOGGINGEXTENSION.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\COMMONSPECIALIST.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\7ZIPDLL.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\LITEUNZIP.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\REGHOOKSPECIALIST.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\MYRESOURCES.DLL, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\PROGRAM FILES (X86)\PARETOLOGIC\REGCURE PRO\UTILITY.PXT, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\USERS\{username}\DESKTOP\REGCURE PRO.LNK, Delete-on-Reboot, [1842], [335014],1.0.1094
PUP.Optional.RegCurePro, C:\USERS\{username}\DESKTOP\REGCUREPROSETUP.EXE, Delete-on-Reboot, [1842], [336305],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\10x10.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\10x10tile.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\background.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\contentwrapper.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\error_internet.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\footerbarfill.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\info_bubble.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_footerbarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_subheadbarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\images\tile_titlebarbase.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\0_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\0_days_trial.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\15_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\1_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\2_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\30_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\5_days.htm, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_bkimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_leftimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\container_content_rightimg.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\error_connect.html, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\main.css, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\main_error.css, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\html\package_titlebar_bkimg.jpg, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_over_small.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\btn.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\btn_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_file.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_generalsettings.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_ignore.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_process.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_schedule.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_speedybackup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\button_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\offeraction.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\offeraction_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\register_small.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\renew_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\settings_button.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\settings_button_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\start.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\start_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_later.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_later_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_now.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\buttons\update_now_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_empty.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_frag.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unfrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unknown.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\defrag\c_unmove.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\bottom_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\close.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\dlg_title.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\max.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\min.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_close.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_close_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\register_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\renew_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tabactive_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tabover_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tab_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tfn_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\tfn_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\title_bar.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\top_logo.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Frame\upper_divider.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\collapse.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\delete.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\driverbg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\expand.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\general\progress_glow.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_email.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_audio.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_doc.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_image.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_other.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\dup_video.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_drivers.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_proc.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\ig_reg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_3rd.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_browser.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_fs.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_im.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_multi.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_office.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_other.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\priv_windows.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_apppath.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_com.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_dll.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_empty.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_extensions.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_filepath.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_font.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_help.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_shortcut.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\reg_uninstall.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\group\startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_about.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_clean.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_driver.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_file.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_junk_settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_maintenance.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_performance.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_process.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_tools.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\header_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_general.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_ignore.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_schedule.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\settings_update.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\headers\vipre.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\cleaned.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\info.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Icons\warning.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\cd.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\cpu.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\disk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\display.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\driver_outdated.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\driver_uptodate.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\floppy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\mouse_key.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\other.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\outdated.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\power.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\printer.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\software.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\system.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\uptodate.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\drivers\usb.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\defrag.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\defrag_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\junk_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\malware_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\privacy_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\maintenance\registry_big.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\bho.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\process.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\process\startup.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware24.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_malware32.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system24.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_system32.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown24.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unknown32.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted24.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_unwanted32.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp24.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\recommendations\rec_userapp32.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\list\other.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-active.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-down.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\clean-over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\computer.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-active.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-down.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\register-hover.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\renew-over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\prefix\renew.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\activate_normal.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\activate_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\active.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\animation.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\bar_bg.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\checkmark.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\close.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\close_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\thankyou.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\time.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\weekly.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\popups\weekly2.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\01.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\02.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\03.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\04.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\05.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\06.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\07.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\08.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\animation\09.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_1.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_10.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_11.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_12.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_13.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_14.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_15.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_16.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_17.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_18.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_19.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_2.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_20.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_21.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_22.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_3.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_4.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_5.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_6.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_7.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_8.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\driver_animation\ani_9.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\check.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\error.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\error_large.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\Fix.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\Fix_over.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\junk.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\malware.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\md5.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\privacy.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\process-animation.gif, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\registry.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\warning.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Scan\warning_large.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\drivers.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\maintenance.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\overview.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\restore.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\scan.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\settings.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\Images\Tabs\tools.png, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\colors.xml, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\HandleUpdate.dll, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\License.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\License_Time.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\LogSettings.xml, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\privacy.db, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\RB.rdat, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\SandBoxer.dll, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\SBTE.dll, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\settings.xml, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\sqlite3.dll, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\uninstall.exe, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\unrar.dll, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\UNS.xml, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Program Files (x86)\ParetoLogic\RegCure Pro\whitelist.dat, Delete-on-Reboot, [1842], [334871],1.0.1094
PUP.Optional.RegCurePro, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro\RegCure Pro.lnk, Delete-on-Reboot, [1842], [352843],1.0.1094
PUP.Optional.RegCurePro, C:\Users\{username}\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic\RegCure Pro\Uninstall RegCure Pro.lnk, Delete-on-Reboot, [1842], [352843],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO_SCH_54A5CDF4-E2D6-11E6-B520-080027750297.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO STARTUP, Delete-on-Reboot, [1842], [334873],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO STARTUP.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO UPDATE, Delete-on-Reboot, [1842], [334873],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\TASKS\REGCURE PRO UPDATE.JOB, Delete-on-Reboot, [1842], [334872],1.0.1094
PUP.Optional.RegCurePro, C:\WINDOWS\SYSTEM32\TASKS\REGCURE PRO_SCH_54A5CDF4-E2D6-11E6-B520-080027750297, Delete-on-Reboot, [1842], [334873],1.0.1094

Physical Sector: 0
(No malicious items detected)


(end)
As mentioned before the full version of Malwarebytes could have protected your computer against this threat.
We use different ways of protecting your computer(s):
  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
  • 0

Advertisements





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

featured
Malware Removal How to Guides Windows 7 System Building Download Files Register welcome

Never used a forum? Learn how.