Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] 'GrpConv' = 'grpconv -o'
- [<HKLM>\SOFTWARE\Classes\MSProgramGroup\Shell\Open\Command] '' = '<SYSTEM32>\grpconv.exe %1'
- [<HKLM>\SOFTWARE\Classes\CLSID\{FB562550-BBE6-4298-861A-5C0A6562C272}\Shell\Open\command] '' = '%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe'
- [<HKLM>\SOFTWARE\Classes\RevoUninstallerPro.ruel\shell\open\command] '' = '%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe /implog "%1"'
- '%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe' /bc
- '%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\x86.exe' /Silent
- '%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\ruplp.exe' /regserver /NOREDIRECT
- '<SYSTEM32>\1.exe' /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '%TEMP%\is-36TAO.tmp\1.tmp' /SL5="$400E0,9391017,211968,<SYSTEM32>\1.exe" /VERYSILENT /SUPPRESSMSGBOXES /NORESTART /SP-
- '<SYSTEM32>\grpconv.exe' -o
- '%WINDIR%\regedit.exe' /s "%TEMP%\\regpatch.reg"
- '<SYSTEM32>\runonce.exe' -r
- '<SYSTEM32>\regsvr32.exe' /s "%PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RUExt.dll"
- '<SYSTEM32>\rundll32.exe' SETUPAPI.DLL,InstallHinfSection DefaultInstall 132 %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\revoflt.inf
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-0F60S.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-CUV1Q.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-3COCR.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-JD0C4.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-D7K4M.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-3J1K4.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-4E6BA.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-HPTAC.tmp
- %ALLUSERSPROFILE%\Application Data\VS Revo Group\Revo Uninstaller Pro\is-3NHR4.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-MUTE4.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-OV0KO.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-2A2LI.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7AD6E.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S7IN8.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-321K0.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-UKU2E.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-23VA0.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7O16V.tmp
- %ALLUSERSPROFILE%\Start Menu\Programs\Revo Uninstaller Pro\Revo Uninstaller Pro.lnk
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\x86.exe
- %TEMP%\dup2patcher.dll
- <LS_APPDATA>\VS Revo Group\Revo Uninstaller Pro\data\cachedata.dat
- %TEMP%\aut6.tmp
- %TEMP%\regpatch.reg
- %HOMEPATH%\Desktop\Katılımsız Yonetimi.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\3909592[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\proinstall_thankyou[1].html
- %TEMP%\aut7.tmp
- %ALLUSERSPROFILE%\Desktop\Revo Uninstaller Pro.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller Pro.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Revo Uninstaller Pro\Revo Uninstaller Pro on the Web.url
- %ALLUSERSPROFILE%\Start Menu\Programs\Revo Uninstaller Pro\Uninstall Revo Uninstaller Pro.lnk
- %ALLUSERSPROFILE%\Start Menu\Programs\Revo Uninstaller Pro\Revo Uninstaller Pro Help.lnk
- %WINDIR%\inf\oem3.PNF
- <DRIVERS>\SET5.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\unins000.dat
- %WINDIR%\inf\oem3.inf
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-KDS7E.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-QP2TS.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-OLNIC.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-HGSBV.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-T2BJ8.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-G36L2.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-GQM9U.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-3UKTQ.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-N21FP.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-3QSNJ.tmp
- %TEMP%\aut2.tmp
- <SYSTEM32>\1.exe
- %TEMP%\aut1.tmp
- %TEMP%\gqrgbmt
- %TEMP%\is-36TAO.tmp\1.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-E875E.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-2N7H5.tmp
- %TEMP%\is-QH06O.tmp\_isetup\_shfoldr.dll
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-P78Q5.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-PBFQH.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-PAV7F.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-FRJQ3.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BGHQ1.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-QSB7D.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-UELID.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BEGGC.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S058R.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7GCK7.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-FLF6H.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-DNA5V.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-5QTI7.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-0A78A.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-22P4I.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BAT9Q.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S399K.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-06FPQ.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-4IU30.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-GUKH8.tmp
- <SYSTEM32>\1.exe
- %TEMP%\regpatch.reg
- %TEMP%\aut6.tmp
- %TEMP%\dup2patcher.dll
- %TEMP%\aut7.tmp
- %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\x86.exe
- <SYSTEM32>\1.exe
- %TEMP%\gqrgbmt
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- %TEMP%\is-36TAO.tmp\1.tmp
- %TEMP%\is-QH06O.tmp\_isetup\_shfoldr.dll
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-MUTE4.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\spanish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7AD6E.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\swedish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-2A2LI.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\slovenian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-23VA0.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\ukrainian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S7IN8.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\turkish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-OV0KO.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\traditionalchinese.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-FLF6H.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\serbian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7GCK7.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\russian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-UELID.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\romanian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-KDS7E.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\slovak.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S058R.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\simplifiedchinese.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BEGGC.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\serbianLatin.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-7O16V.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\vietnamese.ini
- from %ALLUSERSPROFILE%\Application Data\VS Revo Group\Revo Uninstaller Pro\is-3NHR4.tmp to %ALLUSERSPROFILE%\Application Data\VS Revo Group\Revo Uninstaller Pro\revouninstallerpro.lic
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-HPTAC.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\License.txt
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-D7K4M.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\Revo Uninstaller Pro Help.pdf
- from <DRIVERS>\SET5.tmp to <DRIVERS>\revoflt.sys
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-4E6BA.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\rupilogs.rupldb
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-3J1K4.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\ruplp.exe
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-3COCR.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoCmd.exe
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-UKU2E.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-321K0.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\revoflt.inf
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-CUV1Q.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\revoflt.sys
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-0F60S.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RUExt.dll
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-JD0C4.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\RevoAppBar.exe
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-FRJQ3.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\portuguese.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-N21FP.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\english.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-G36L2.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\dutch.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-OLNIC.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\danish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-3UKTQ.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\french.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-GQM9U.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\finnish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-3QSNJ.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\estonian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-2N7H5.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\arabic.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-E875E.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\albanian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\is-P78Q5.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\unins000.exe
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-QP2TS.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\czech.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-T2BJ8.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\bulgarian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-HGSBV.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\armenian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-PBFQH.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\german.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-06FPQ.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\kurdish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-S399K.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\korean.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-GUKH8.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\japanese.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-PAV7F.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\portuguesebrazil.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-QSB7D.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\polish.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BGHQ1.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\macedonian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-DNA5V.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\hrvatski.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-22P4I.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\hellenic.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-0A78A.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\hebrew.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-4IU30.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\indonesian.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-BAT9Q.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\italiano.ini
- from %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\is-5QTI7.tmp to %PROGRAM_FILES%\VS Revo Group\Revo Uninstaller Pro\lang\hungarian.ini
- 'ul.to':80
- 'www.re#####nstallerpro.com':80
- 'localhost':1036
- ul.to/ref/3909592
- www.re#####nstallerpro.com/proinstall_thankyou.html
- DNS ASK ul.to
- DNS ASK www.re#####nstallerpro.com
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: 'BUTTON' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'