04da518dba672b84731c6b0bcd206b48 | System Startup | LASSH

Welcome to our new version of sysinfo.org

System Startup details for 04da518dba672b84731c6b0bcd206b48

Location
Registry Key
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\
Display Name
SpybotDeletingD9389
Filename
cmd.exe
File MD5 Hash
EEB024F2C81F0D55936FB825D21A91D6
Command
cmd /c del "C:\WINDOWS\system32\wsnpoem\audio.dll"