Technical Information
- [<HKLM>\System\CurrentControlSet\Services\Windows_Optimizer] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\Windows_Optimizer] 'ImagePath' = '%ProgramFiles(x86)%\Windows Optimizer\optimizer.exe'
- %TEMP%\is-lelss.tmp\<File name>.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\profiles\is-u15lf.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-v0vrj.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-79d09.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-4seas.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-95qqe.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-4o396.tmp
- %ProgramFiles(x86)%\windows movie maker\mui\0409\is-fegd0.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-ck8d6.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-ehnl4.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-qdtnu.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-tfj3u.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-riuud.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-8agio.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-t2o42.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-m2p58.tmp
- %PROGRAMDATA%\microsoft\windows\start menu\programs\windows movie maker\windows movie maker.lnk
- C:\users\public\desktop\windows movie maker.lnk
- %APPDATA%\microsoft\internet explorer\quick launch\windows movie maker.lnk
- %PROGRAMDATA%\optimizer\load_config.ini
- %ProgramFiles(x86)%\windows optimizer\is-ctv46.tmp
- %ProgramFiles(x86)%\windows optimizer\is-u6utu.tmp
- %ProgramFiles(x86)%\windows optimizer\is-1sqvb.tmp
- %TEMP%\is-2kdi3.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-2kdi3.tmp\_isetup\_setup64.tmp
- %TEMP%\is-2kdi3.tmp\_isetup\_regdll.tmp
- %TEMP%\is-cdkce.tmp\optimizer-setup.tmp
- %TEMP%\is-2nu9q.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-2nu9q.tmp\_isetup\_setup64.tmp
- %TEMP%\is-2nu9q.tmp\_isetup\_regdll.tmp
- %TEMP%\is-f91cr.tmp\optimizer-setup.tmp
- %ProgramFiles(x86)%\windows movie maker\unins000.dat
- %PROGRAMDATA%\microsoft\windows\start menu\programs\windows movie maker\uninstall windows movie maker.lnk
- %PROGRAMDATA%\microsoft\windows\start menu\programs\windows movie maker\windows movie maker on the web.url
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-p6q3p.tmp
- <LS_APPDATA>\microsoft\movie maker\mediatab.dat
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-rvjsi.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-krmdq.tmp
- %ProgramFiles(x86)%\windows movie maker\is-d8rs1.tmp
- %ProgramFiles(x86)%\windows movie maker\is-abnfc.tmp
- %ProgramFiles(x86)%\windows movie maker\is-86mgs.tmp
- %APPDATA%\solidloader\is-kstlr.tmp
- %ProgramFiles(x86)%\windows movie maker\is-jrgss.tmp
- %ProgramFiles(x86)%\windows movie maker\is-feg9o.tmp
- %ProgramFiles(x86)%\windows movie maker\is-cao0h.tmp
- %ProgramFiles(x86)%\windows movie maker\is-eshh5.tmp
- %TEMP%\is-11t83.tmp\_isetup\_setup64.tmp
- %TEMP%\is-11t83.tmp\_isetup\_regdll.tmp
- %TEMP%\is-a3ga9.tmp\<File name>.tmp
- %TEMP%\is-gfubl.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-gfubl.tmp\_isetup\_setup64.tmp
- %TEMP%\is-gfubl.tmp\_isetup\_regdll.tmp
- %TEMP%\is-11t83.tmp\_isetup\_shfoldr.dll
- %ProgramFiles(x86)%\windows movie maker\is-pibhc.tmp
- %ProgramFiles(x86)%\windows movie maker\is-qhn8q.tmp
- %ProgramFiles(x86)%\windows movie maker\is-qocea.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-of2vu.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-3m4a0.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-muofs.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-eqppg.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-0c5vl.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-up6ku.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-u0udr.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\is-a02f9.tmp
- %WINDIR%\syswow64\is-6a7u7.tmp
- %ProgramFiles(x86)%\windows movie maker\is-9cdfl.tmp
- %ProgramFiles(x86)%\windows movie maker\is-f52bp.tmp
- %ProgramFiles(x86)%\windows movie maker\is-03hrf.tmp
- %ProgramFiles(x86)%\windows movie maker\is-iskar.tmp
- %ProgramFiles(x86)%\windows movie maker\is-j0pgc.tmp
- %ProgramFiles(x86)%\windows movie maker\is-j32qu.tmp
- %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-7i1ki.tmp
- %PROGRAMDATA%\optimizer\log.ini
- %TEMP%\is-gfubl.tmp\_isetup\_regdll.tmp
- %TEMP%\is-gfubl.tmp\_isetup\_setup64.tmp
- %TEMP%\is-gfubl.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-lelss.tmp\<File name>.tmp
- %TEMP%\is-11t83.tmp\_isetup\_regdll.tmp
- %TEMP%\is-11t83.tmp\_isetup\_setup64.tmp
- %TEMP%\is-11t83.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-a3ga9.tmp\<File name>.tmp
- %TEMP%\is-2nu9q.tmp\_isetup\_regdll.tmp
- %TEMP%\is-2nu9q.tmp\_isetup\_setup64.tmp
- %TEMP%\is-2nu9q.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-f91cr.tmp\optimizer-setup.tmp
- %TEMP%\is-2kdi3.tmp\_isetup\_regdll.tmp
- %TEMP%\is-2kdi3.tmp\_isetup\_setup64.tmp
- %TEMP%\is-2kdi3.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-cdkce.tmp\optimizer-setup.tmp
- from %ProgramFiles(x86)%\windows movie maker\is-eshh5.tmp to %ProgramFiles(x86)%\windows movie maker\unins000.exe
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-7i1ki.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4d.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-rvjsi.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4e.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-p6q3p.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4f.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-t2o42.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4g.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-8agio.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4h.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-riuud.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4i.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-tfj3u.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4j.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-qdtnu.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4k.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-of2vu.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4b.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-krmdq.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4c.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-ehnl4.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4l.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-4o396.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4o.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-95qqe.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\colorfades.xml
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-4seas.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\effects.xml
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-79d09.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\rehansplit.xml
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-v0vrj.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\wmtfxtransitions.xml
- from %ProgramFiles(x86)%\windows movie maker\shared\profiles\is-u15lf.tmp to %ProgramFiles(x86)%\windows movie maker\shared\profiles\blank.txt
- from %ProgramFiles(x86)%\windows movie maker\mui\0409\is-fegd0.tmp to %ProgramFiles(x86)%\windows movie maker\mui\0409\moviemk.chm
- from %ProgramFiles(x86)%\windows optimizer\is-1sqvb.tmp to %ProgramFiles(x86)%\windows optimizer\optimizer.exe
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-m2p58.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4m.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-ck8d6.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4n.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\addontfx\is-3m4a0.tmp to %ProgramFiles(x86)%\windows movie maker\shared\addontfx\bfxset4a.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\is-muofs.tmp to %ProgramFiles(x86)%\windows movie maker\shared\sample2.jpg
- from %ProgramFiles(x86)%\windows movie maker\shared\is-eqppg.tmp to %ProgramFiles(x86)%\windows movie maker\shared\sample1.jpg
- from %ProgramFiles(x86)%\windows movie maker\is-jrgss.tmp to %ProgramFiles(x86)%\windows movie maker\solidloader.exe
- from %APPDATA%\solidloader\is-kstlr.tmp to %APPDATA%\solidloader\load_config.ini
- from %ProgramFiles(x86)%\windows movie maker\is-86mgs.tmp to %ProgramFiles(x86)%\windows movie maker\optimizer-setup.exe
- from %ProgramFiles(x86)%\windows movie maker\is-abnfc.tmp to %ProgramFiles(x86)%\windows movie maker\style.cjstyles
- from %ProgramFiles(x86)%\windows movie maker\is-d8rs1.tmp to %ProgramFiles(x86)%\windows movie maker\transitions.txt
- from %ProgramFiles(x86)%\windows movie maker\is-cao0h.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2ae.dll
- from %ProgramFiles(x86)%\windows movie maker\is-pibhc.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2eres.dll
- from %ProgramFiles(x86)%\windows movie maker\is-qhn8q.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2ext.dll
- from %ProgramFiles(x86)%\windows movie maker\is-qocea.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2filt.dll
- from %ProgramFiles(x86)%\windows movie maker\is-feg9o.tmp to %ProgramFiles(x86)%\windows movie maker\load_config.ini
- from %ProgramFiles(x86)%\windows movie maker\is-j32qu.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2fxa.dll
- from %ProgramFiles(x86)%\windows movie maker\is-iskar.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2res.dll
- from %ProgramFiles(x86)%\windows movie maker\is-03hrf.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2res2.dll
- from %ProgramFiles(x86)%\windows movie maker\is-f52bp.tmp to %ProgramFiles(x86)%\windows movie maker\zcode.exe
- from %ProgramFiles(x86)%\windows movie maker\is-9cdfl.tmp to %ProgramFiles(x86)%\windows movie maker\license-win.txt
- from %WINDIR%\syswow64\is-6a7u7.tmp to %WINDIR%\syswow64\framework.ocx
- from %ProgramFiles(x86)%\windows movie maker\shared\is-a02f9.tmp to %ProgramFiles(x86)%\windows movie maker\shared\empty.txt
- from %ProgramFiles(x86)%\windows movie maker\shared\is-u0udr.tmp to %ProgramFiles(x86)%\windows movie maker\shared\filters.xml
- from %ProgramFiles(x86)%\windows movie maker\shared\is-up6ku.tmp to %ProgramFiles(x86)%\windows movie maker\shared\news.png
- from %ProgramFiles(x86)%\windows movie maker\shared\is-0c5vl.tmp to %ProgramFiles(x86)%\windows movie maker\shared\paint.png
- from %ProgramFiles(x86)%\windows movie maker\is-j0pgc.tmp to %ProgramFiles(x86)%\windows movie maker\wmm2fxb.dll
- from %ProgramFiles(x86)%\windows optimizer\is-u6utu.tmp to %ProgramFiles(x86)%\windows optimizer\system_shell.exe
- from %ProgramFiles(x86)%\windows optimizer\is-ctv46.tmp to %ProgramFiles(x86)%\windows optimizer\load_config.ini
- DNS ASK ap#.###videosoft.com
- ClassName: 'MovieMakerWndClass' WindowName: ''
- ClassName: 'msctls_statusbar32' WindowName: ''
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'ToolbarWindow32' WindowName: ''
- '%TEMP%\is-lelss.tmp\<File name>.tmp' /SL5="$80216,7519384,54272,<Full path to file>"
- '%TEMP%\is-a3ga9.tmp\<File name>.tmp' /SL5="$80242,7519384,54272,<Full path to file>" /VERYSILENT /SP-
- '%ProgramFiles(x86)%\windows movie maker\optimizer-setup.exe'
- '%ProgramFiles(x86)%\windows movie maker\solidloader.exe'
- '%TEMP%\is-f91cr.tmp\optimizer-setup.tmp' /SL5="$B0214,1028290,54272,%ProgramFiles(x86)%\Windows Movie Maker\optimizer-setup.exe"
- '%ProgramFiles(x86)%\windows movie maker\zcode.exe'
- '%ProgramFiles(x86)%\windows movie maker\optimizer-setup.exe' /VERYSILENT /SP-
- '%TEMP%\is-cdkce.tmp\optimizer-setup.tmp' /SL5="$90240,1028290,54272,%ProgramFiles(x86)%\Windows Movie Maker\optimizer-setup.exe" /VERYSILENT /SP-
- '%ProgramFiles(x86)%\windows optimizer\system_shell.exe' "reg" "mex"
- '%ProgramFiles(x86)%\windows optimizer\optimizer.exe'
- '%ProgramFiles(x86)%\windows movie maker\optimizer-setup.exe' ' (with hidden window)
- '%ProgramFiles(x86)%\windows movie maker\optimizer-setup.exe' /VERYSILENT /SP-' (with hidden window)
- '%WINDIR%\syswow64\regsvr32.exe' /s "<SYSTEM32>\framework.ocx"