Current location - Loan Platform Complete Network - Foreign exchange account opening - What are the viruses of pkeusvq.exe and ngpycxm? How completely clear!
What are the viruses of pkeusvq.exe and ngpycxm? How completely clear!
Windows registry editor version 5.00

[HKEY _ Current _ User \ Control Panel \ Desktop]

" AutoEndTasks"=" 1 "

" HungAppTimeout"="200 "

" WaitToKillAppTimeout"="200 "

" WaitTOKillService"="200 "

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ current Control set \ Control]

" WaitToKillServiceTimeout"="200 "

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ current Control set \ Control \ Session Manager \ Memory Management \ prefetch parameters]

" EnablePrefetcher " = dword:000000 1

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Winlogon]

" sfc disable " = dword:0000000 1

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows \ current version \ Explorer \ AlwaysUnloadDLL]

@="0"

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ current control set \ Services \ lanman server \ parameters]

" AutoShareServer " = dword:00000000

" AutoSharewks"=dword:00000000

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ current Control set \ Control \ Windows]

" NoPopUpsOnBoot " = dword:0000000 1

[HKEY class root file]

@ = "Shortcut"

" edit flags " = dword:000000 1

" NeverShowExt " = " "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows \ current version \ Explorer \ remote computer \ NameSpace]

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows \ current version \ Explorer \ remote computer \ NameSpace \ { 2227 a280-3 AEA- 1069-A2DE-08002 b 30309d }]

@ = "Printer"

[HKEY _ user \. Default \ Software \ Microsoft \ Windows \ Current Version \ Explorer]

"Link" = hexadecimal: 00,00,00,00.

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ current Control set \ Control \ Session Manager \ Memory Management \ prefetch parameters]

" EnablePrefetcher " = dword:00000003

[HKEY _ user \. Default \ Control Panel \ Desktop]

" FontSmoothing"="2 "

" font smoothing type " = dword:00000002

[HKEY _ Current _ User \ Software \ Microsoft \ Windows \ Current Version \Internet Settings]

" maxconnectionsper 1 _ 0 server " = dword:00000008

" MaxConnectionsPerServer " = dword:00000008

[HKEY _ LOCAL _ MACHINE \ SYSTEM \ Control set 00 1 \ Control]

" waittokillservicetime out " = " 1000 "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ pkeusvq . exe]

"Debugger" ="c:\\ virus class. exe "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ pkeusvq . exe]

" Debugger"="c:\\ Destroy class。 exe "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ ngpycxm . exe]

"Debugger" ="c:\\ virus class. exe "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ ngpycxm . exe]

" Debugger"="c:\\ Destroy class。 exe "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ game hack。 Txt]

"Debugger" ="c:\\ virus class. exe "

[HKEY _ LOCAL _ MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ current version \ Image File Execution Options \ game hack。 Txt]

" Debugger"="c:\\ Destroy class。 exe "

Please copy it to Notepad, save it as a. reg file, and then run the import!

Restart the computer, and then it will be forbidden to run.

Go to Dortmund Software Station to search the data of ice blade, virus and Trojan horse killing King.

See where its process location is and delete it from its location.

If not, please delete it in safe mode.

You can't copy the code above and forbid it to run.

Install 360 security guards to scan system vulnerabilities and patch your system in time.

Personally, I suspect that there is more than one virus in your system. After completing the above operations, please use anti-virus software to scan your computer comprehensively.