Top 10 Alerts
Latest 10 Malware Files
Testimonials
You guys are freakin' awesome, love the program, love the personalized service, and my pc loves it too :D
Justin S.
Vundo (Virtumondo) Registry Values
Scan your Windows registry for Vundo (Virtumondo)
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseOnlineUpdate=rundll32.exe "[%COMMON_APPDATA%]\MouseOnlineUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winauj32.rom,PyiMmOQMPYV
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {20D57A66-F7DF-467d-907B-9B7F4A118AB7}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winipx32.rom,MqrLvZUMRz
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaOnlineOnline=rundll32.exe "[%COMMON_APPDATA%]\JavaOnlineOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {1cf662bf-4afd-4778-8306-1f0eb8284ebb}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 189d2fc9=rundll32.exe "[%SYSTEM%]\tipukuvu.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winamv32.rom,XtAoYJS
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxpa32.rom,GFIWWeTh
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {FE27E908-4C06-4BAE-88A0-655D0CE752CB}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzsg32.rom,qwytmGUKnVcP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelServiceVerifier=rundll32.exe "[%COMMON_APPDATA%]\IntelServiceVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjst32.rom,BeEdDKNHgXsl
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxtq32.rom,MEDxVWqzgF
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyyw32.rom,iDYiUa
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gwirijevoherajo=rundll32.exe "[%LOCAL_APPDATA%]\inufamav.dll",Startup
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F13FEB6.exe=[%PROFILE_TEMP%]\_A00F13FEB6.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F807AA.exe=[%PROFILE_TEMP%]\_A00F807AA.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F22D24E.exe=[%PROFILE_TEMP%]\_A00F22D24E.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F4441A.exe=[%PROFILE_TEMP%]\_A00F4441A.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrtt32.rom,jcmdDh
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aporedoxir=rundll32.exe "[%WINDOWS%]\capryp.dll",Startup
- HKEY_USERS\S-1-5-21-1454471165-823518204-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aporedoxir=rundll32.exe "[%WINDOWS%]\capryp.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winslu32.rom,DjTkYrEWc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelManagerManager=rundll32.exe "[%COMMON_APPDATA%]\IntelManagerManager.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM277b066e=Rundll32.exe "[%SYSTEM%]\ludozagi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 244835f2=rundll32.exe "[%SYSTEM%]\lutazipu.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, totipefagu=Rundll32.exe "[%SYSTEM%]\dujabemo.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, totipefagu=Rundll32.exe "[%SYSTEM%]\dujabemo.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, totipefagu=Rundll32.exe "[%SYSTEM%]\dujabemo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseServiceManager=rundll32.exe "[%COMMON_APPDATA%]\MouseServiceManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftPolicyTray=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftPolicyTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaManagerService=rundll32.exe "[%COMMON_APPDATA%]\JavaManagerService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winopy32.rom,haZtOlMVvsyI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winggf32.rom,ZfmBZFUQNUk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleBackupManager=rundll32.exe "[%COMMON_APPDATA%]\GoogleBackupManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iwefubediday=rundll32.exe "[%LOCAL_APPDATA%]\urogilim.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nvd32_r=rundll32.exe "[%APPDATA%]\unobi.dll" s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjes32.rom,IJTwdsftw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjyn32.rom,SeHhEoDHTuPI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrie32.rom,vwqQjHDreQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ApplePolicyTray=rundll32.exe "[%COMMON_APPDATA%]\ApplePolicyTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayUpdateNotifier=rundll32.exe "[%COMMON_APPDATA%]\DisplayUpdateNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelBackupBackup=rundll32.exe "[%COMMON_APPDATA%]\IntelBackupBackup.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {3feca576-7ad2-4e11-a6ad-6b59d4fb5db9}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleNotifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\GoogleNotifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfp32.rom,QgEzWkRDE
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%SYSTEM%]\yayaBqNF.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\yayvVNdC.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tovososoz=Rundll32.exe "[%COMMON_APPDATA%]\wuluzayi\wuluzayi.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 240e997e=rundll32.exe "[%COMMON_APPDATA%]\kidofale\kidofale.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cmds=rundll32.exe [%PROFILE_TEMP%]\geBtQkIY.dll,c
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dekoyukimo=Rundll32.exe "[%COMMON_APPDATA%]\fonebipi\fonebipi.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bimisekese=Rundll32.exe "[%SYSTEM%]\yipiveto.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bimisekese=Rundll32.exe "[%SYSTEM%]\yipiveto.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvdu32.rom,PLUBqEnFFI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxManagerOnline=rundll32.exe "[%COMMON_APPDATA%]\DirectxManagerOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, e44ad834=rundll32.exe "[%SYSTEM%]\nalkhoyb.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineww32.rom,reyvgAUHjv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ghawavecazucul=rundll32.exe "[%LOCAL_APPDATA%]\ociziqipuzimoc.dll",Startup
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftBackupOnline=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftBackupOnline.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftBackupOnline=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftBackupOnline.dll",DllRegisterServer
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lomemejatu=Rundll32.exe "[%SYSTEM%]\mejejaza.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lomemejatu=Rundll32.exe "[%SYSTEM%]\mejejaza.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayUpdateService=rundll32.exe "[%COMMON_APPDATA%]\DisplayUpdateService.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {84aa61c2-a977-4fd8-9e2f-c768f0387572}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {3E8EC2D9-806B-4C7F-AE7F-F44AD4ABE8B5}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {309311f1-8f50-452e-a98d-69afd7a34aa8}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelOnlineOnline=rundll32.exe "[%COMMON_APPDATA%]\IntelOnlineOnline.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseProfilePolicy=rundll32.exe "[%COMMON_APPDATA%]\MouseProfilePolicy.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseProfilePolicy=rundll32.exe "[%COMMON_APPDATA%]\MouseProfilePolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsBackupUpdate=rundll32.exe "[%COMMON_APPDATA%]\WindowsBackupUpdate.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {446624e1-b767-4443-aa6e-0f355cafd21b}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxPolicyPolicy=rundll32.exe "[%COMMON_APPDATA%]\DirectxPolicyPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxNotifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\DirectxNotifierUpdate.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tazazatem="Rundll32.exe" "[%SYSTEM%]\pedisasa.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardServiceService=rundll32.exe "[%COMMON_APPDATA%]\KeyboardServiceService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrta32.rom,rdBavXoTFjY
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winytj32.rom,zNltaCCJHbhw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftPolicyBackup=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftPolicyBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyicihagonama=rundll32.exe "[%LOCAL_APPDATA%]\isizenocopologo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyicihagonama=rundll32.exe "[%LOCAL_APPDATA%]\uqamanit.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bfasoze=rundll32.exe "[%LOCAL_APPDATA%]\srv3071.dll",Startup
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC26060.exe=[%PROFILE_TEMP%]\_A00FC26060.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxProfileBackup=rundll32.exe "[%COMMON_APPDATA%]\DirectxProfileBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaVerifierTray=rundll32.exe "[%COMMON_APPDATA%]\JavaVerifierTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsManagerUpdate=rundll32.exe "[%COMMON_APPDATA%]\WindowsManagerUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayPolicyNotifier=rundll32.exe "[%COMMON_APPDATA%]\DisplayPolicyNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,rNMlJju
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleUpdateService=rundll32.exe "[%COMMON_APPDATA%]\GoogleUpdateService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winucv32.rom,ioVCLDD
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmkhecdrv=rundll32.exe "xxvwxv.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urspnkdrv=rundll32.exe "ljggdb.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urropodrv=rundll32.exe "qonnoo.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmkhecdrv=rundll32.exe "xxvwxv.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urspnkdrv=rundll32.exe "ljggdb.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urropodrv=rundll32.exe "qonnoo.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtrpqnsys=rundll32.exe "fccddc.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtrpqnsys=rundll32.exe "fccddc.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {e1bc0aab-2c35-40df-8f1d-4fd437df432e}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {ADCD30FF-0119-4906-8A8B-D52D1EED044B}=
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wesomejiju=Rundll32.exe "[%SYSTEM%]\ratifuya.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wesomejiju=Rundll32.exe "[%SYSTEM%]\ratifuya.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlhf32.rom,EAbRjZ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winytj32.rom,UiHUjczPRNJP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,UjhRFk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpzc32.rom,XWUYxwzmycj
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseTrayBackup=rundll32.exe "[%COMMON_APPDATA%]\MouseTrayBackup.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a8eeb996-62aa-4e48-995d-eaddcac47476}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuji32.rom,UjIuqDXnHBk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxpa32.rom,qseffdKcT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugl32.rom,NOwiyK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsServiceBackup=rundll32.exe "[%COMMON_APPDATA%]\WindowsServiceBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayTrayBackup=rundll32.exe "[%COMMON_APPDATA%]\DisplayTrayBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaTrayProfile=rundll32.exe "[%COMMON_APPDATA%]\JavaTrayProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingjd32.rom,NlGrPlH
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rzivapej=rundll32.exe "[%WINDOWS%]\oropalir.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Szuwipavur=rundll32.exe "[%WINDOWS%]\Seatpre.dll",Startup
- HKEY_USERS\S-1-5-21-1343024091-1637723038-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Szuwipavur=rundll32.exe "[%WINDOWS%]\Seatpre.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dogaritavo=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dogaritavo=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dogaritavo=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dogaritavo=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dogaritavo=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winije32.rom,sxTRun
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ubagi=rundll32.exe "[%WINDOWS%]\amicihic.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftManagerManager=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftManagerManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelOnlineUpdate=rundll32.exe "[%COMMON_APPDATA%]\IntelOnlineUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingas32.rom,yXmCpCijS
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseUpdateUpdate=rundll32.exe "[%COMMON_APPDATA%]\MouseUpdateUpdate.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseUpdateUpdate=rundll32.exe "[%COMMON_APPDATA%]\MouseUpdateUpdate.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {1c218bc1-b339-40df-8346-792d2dbaffb5}=
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, royasuheyu=Rundll32.exe "[%SYSTEM%]\fegufula.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, royasuheyu=Rundll32.exe "[%SYSTEM%]\fegufula.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleTrayNotifier=rundll32.exe "[%COMMON_APPDATA%]\GoogleTrayNotifier.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bukuwofaj=Rundll32.exe "[%SYSTEM%]\lusedega.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 3035e760=rundll32.exe "[%SYSTEM%]\togemobo.dll",b
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rowofosugo=Rundll32.exe "[%SYSTEM%]\vasidifu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rowofosugo=Rundll32.exe "[%SYSTEM%]\vasidifu.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ebc7d23c-eacb-4e7b-a879-7df4630ec514}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, haribuwed={ebc7d23c-eacb-4e7b-a879-7df4630ec514}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winydu32.rom,HhpWcSebHjG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaPolicyManager=rundll32.exe "[%COMMON_APPDATA%]\JavaPolicyManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayNotifierBackup=rundll32.exe "[%COMMON_APPDATA%]\DisplayNotifierBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Twujenud=rundll32.exe "[%LOCAL_APPDATA%]\ubonanerulatoq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaServiceNotifier=rundll32.exe "[%COMMON_APPDATA%]\JavaServiceNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winppw32.rom,AJaoWraXYRP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cwucevopebasuse=rundll32.exe "[%WINDOWS%]\mskbec.dll",Startup
- HKEY_USERS\S-1-5-21-1860802093-3840293915-1011314339-1112\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cwucevopebasuse=rundll32.exe "[%WINDOWS%]\mskbec.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mahalerev=Rundll32.exe "[%SYSTEM%]\gulobimu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e067d21e-9c1b-4df2-965b-cffd34956f56}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zidabojip={e067d21e-9c1b-4df2-965b-cffd34956f56}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yusolebezu=Rundll32.exe "kirenalo.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {d1dc124d-8bc4-46d6-a3c5-454c53324f4e}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayManagerVerifier=rundll32.exe "[%COMMON_APPDATA%]\DisplayManagerVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,eBenIwRaAWfU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlot32.rom,vFfQgoBIRMO
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 9c507f03=rundll32.exe "[%PROFILE_TEMP%]\uekjaifx.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM9f634c9f=Rundll32.exe "[%PROFILE_TEMP%]\yktalcll.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7db094b1-c3aa-487c-b75e-cb9654e1a6b4}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {32341e7e-c319-46de-91d0-e30bb1a3caba}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsPolicyNotifier=rundll32.exe "[%COMMON_APPDATA%]\WindowsPolicyNotifier.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=[%SYSTEM%]\vayojema.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khggebsys=rundll32.exe "rqolig.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljgffgsys=rundll32.exe "rqolig.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljgffgsys=rundll32.exe "rqolig.dll",DllRegisterServer
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vativudese=Rundll32.exe "[%SYSTEM%]\sazukojo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintvo32.rom,tcmynE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Alicuyajasu=rundll32.exe "[%WINDOWS%]\qucrtl.dll",Startup
- HKEY_USERS\S-1-5-21-2025429265-152049171-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Alicuyajasu=rundll32.exe "[%WINDOWS%]\qucrtl.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseProfileOnline=rundll32.exe "[%COMMON_APPDATA%]\MouseProfileOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsProfileProfile=rundll32.exe "[%COMMON_APPDATA%]\WindowsProfileProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleProfileManager=rundll32.exe "[%COMMON_APPDATA%]\AppleProfileManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqnj32.rom,jECImRmvQAiQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlik32.rom,gfHCfd
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winssh32.rom,JqCKJfGm
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelNotifierBackup=rundll32.exe "[%COMMON_APPDATA%]\IntelNotifierBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseVerifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\MouseVerifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 1827528597=rundll32.exe "[%PROFILE_TEMP%]\nsw1784.tmp\viewer.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaTrayManager=rundll32.exe "[%COMMON_APPDATA%]\JavaTrayManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsTrayOnline=rundll32.exe "[%COMMON_APPDATA%]\WindowsTrayOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GooglePolicyProfile=rundll32.exe "[%COMMON_APPDATA%]\GooglePolicyProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kpasi=rundll32.exe "[%LOCAL_APPDATA%]\upijobakezako.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleManagerOnline=rundll32.exe "[%COMMON_APPDATA%]\GoogleManagerOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseUpdatePolicy=rundll32.exe "[%COMMON_APPDATA%]\MouseUpdatePolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaPolicyPolicy=rundll32.exe "[%COMMON_APPDATA%]\JavaPolicyPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaUpdateBackup=rundll32.exe "[%COMMON_APPDATA%]\JavaUpdateBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, -1260983479=rundll32.exe "[%PROFILE_TEMP%]\nsaED3A.tmp\runner.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Esazowijehulali=rundll32.exe "[%WINDOWS%]\dupndbri.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleProfileManager=rundll32.exe "[%COMMON_APPDATA%]\GoogleProfileManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseNotifierProfile=rundll32.exe "[%COMMON_APPDATA%]\MouseNotifierProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseManagerVerifier="rundll32.exe" "[%COMMON_APPDATA%]\MouseManagerVerifier.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {f50b3f5e-856e-4757-9bb1-b35d46ca7719}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvsssaudio=rundll32.exe "tutuut.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qomlmlsys=rundll32.exe "xxxvwu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efcyvuaudio=rundll32.exe "tutuut.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qopmlisys=rundll32.exe "xxxvwu.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efccawaudio=rundll32.exe "tutuut.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvvttsys=rundll32.exe "ssqolm.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qopmlisys=rundll32.exe "xxxvwu.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efccawaudio=rundll32.exe "tutuut.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvvttsys=rundll32.exe "ssqolm.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleBackupBackup=rundll32.exe "[%COMMON_APPDATA%]\GoogleBackupBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsPolicyService=rundll32.exe "[%COMMON_APPDATA%]\WindowsPolicyService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincny32.rom,mYXNTeK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelUpdateProfile=rundll32.exe "[%COMMON_APPDATA%]\IntelUpdateProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftNotifierOnline=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftNotifierOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmbz32.rom,PXlNPgyew
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mvosotiz=rundll32.exe "[%WINDOWS%]\osukulemunaja.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, heyinemayo=Rundll32.exe "[%SYSTEM%]\muyipeve.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, heyinemayo=Rundll32.exe "[%SYSTEM%]\muyipeve.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxNotifierNotifier=rundll32.exe "[%COMMON_APPDATA%]\DirectxNotifierNotifier.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khghefsys=rundll32.exe "yaayyw.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khghefsys=rundll32.exe "yaayyw.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {0574d50f-c261-490d-bf39-4e91183c4efb}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, -1260983479=rundll32.exe "[%PROFILE_TEMP%]\nspD9D5.tmp\InstDll.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaProfileProfile=rundll32.exe "[%COMMON_APPDATA%]\JavaProfileProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Agilafo=rundll32.exe "[%LOCAL_APPDATA%]\ajosewis.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaUpdateTray=rundll32.exe "[%COMMON_APPDATA%]\JavaUpdateTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleNotifierOnline=rundll32.exe "[%COMMON_APPDATA%]\AppleNotifierOnline.dll",DllRegisterServer
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lejilupuhi=Rundll32.exe "[%SYSTEM%]\delidubu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lejilupuhi=Rundll32.exe "[%SYSTEM%]\delidubu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqf32.rom,HzPDPQBnXEU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\cbXNGxyv.dll,#1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {e9bd0828-1fd9-410c-a50f-43ebe65d310f}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winioa32.rom,KLcKAM
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 187cdb22=rundll32.exe "[%SYSTEM%]\akwiovnu.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardVerifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\KeyboardVerifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ApplePolicyService=rundll32.exe "[%COMMON_APPDATA%]\ApplePolicyService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pvuvibavukub=rundll32.exe "[%LOCAL_APPDATA%]\omeleqay.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkifupicericox=rundll32.exe "[%LOCAL_APPDATA%]\wtyubskb.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hroqopozekawepa=rundll32.exe "[%WINDOWS%]\ipiyitejedab.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windwl32.rom,aroDlXX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsVerifierVerifier=rundll32.exe "[%COMMON_APPDATA%]\WindowsVerifierVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleServiceProfile=rundll32.exe "[%COMMON_APPDATA%]\GoogleServiceProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaPolicyNotifier=rundll32.exe "[%COMMON_APPDATA%]\JavaPolicyNotifier.dll",DllRegisterServer
- HKEY_USERS\S-1-5-21-1977875383-3941168205-189358416-1009\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hzonixorigeg=rundll32.exe "[%WINDOWS%]\upuvefog.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardServiceBackup=rundll32.exe "[%COMMON_APPDATA%]\KeyboardServiceBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseNotifierOnline=rundll32.exe "[%COMMON_APPDATA%]\MouseNotifierOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hzonixorigeg=rundll32.exe "[%WINDOWS%]\upuvefog.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qrawuv=rundll32.exe "[%WINDOWS%]\efubeditexete.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxProfileVerifier=rundll32.exe "[%COMMON_APPDATA%]\DirectxProfileVerifier.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {0b9928ca-2b38-43c8-be19-a4a6386de417}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkhn32.rom,HJThQRbjjpw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winauj32.rom,eMUBLobf
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tajiduveli=Rundll32.exe "[%SYSTEM%]\kipitusi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tajiduveli=Rundll32.exe "[%SYSTEM%]\kipitusi.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleNotifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\AppleNotifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winopc32.rom,jwAVWQv
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dhuzizaxi=rundll32.exe "[%WINDOWS%]\owomoledunumulo.dll",Startup
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaBackupOnline=rundll32.exe "[%COMMON_APPDATA%]\JavaBackupOnline.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaBackupOnline=rundll32.exe "[%COMMON_APPDATA%]\JavaBackupOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbwu32.rom,khLQpT
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, levapewire="[%SYSTEM%]\Rundll32.exe" "[%SYSTEM%]\zatarozu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, levapewire="[%SYSTEM%]\Rundll32.exe" "[%SYSTEM%]\zatarozu.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnkhigdrv=rundll32.exe "byvsst.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnkhigdrv=rundll32.exe "byvsst.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qonljgsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxxwtusys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrppnsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbbawsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, geddcysys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmlkkksys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnoopnsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opmnnosys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qonopmsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbywvsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifgdbsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkjjjsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hggefgsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, effdcysys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbyabxsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iihefdsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqnonsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssttutsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvttspsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qopmllsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljigfdsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vttuvusys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opmjkjsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnmkllsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tuvurosys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljifgdsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgdeccsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ursqomsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmkjhfsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opollksys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awuvvusys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hggfefsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutqpqsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, geecbxsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqnkhsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opmljisys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifebbsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaxvuusys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byyvwwsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxuvtsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrqrssys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxutrsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxxxusys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqrpnmsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khijhfsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqonnksys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnmlljsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddaaxxsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifgfgsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnmjhfsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwvstsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkjggdsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmljisys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bywvvwsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efcyxxsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqrqosys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnkifgsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwurqsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awtqpnsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbyyysys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqonnnsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifcaasys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khigffsys="rundll32.exe" "ssrqnl.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbywusys=rundll32.exe "ssrqnl.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbywusys=rundll32.exe "ssrqnl.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardServiceVerifier=rundll32.exe "[%COMMON_APPDATA%]\KeyboardServiceVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqse32.rom,pPednYZuFfv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardOnlinePolicy=rundll32.exe "[%COMMON_APPDATA%]\KeyboardOnlinePolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxkg32.rom,RpfxDwGlxPP
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hahomilitu=Rundll32.exe "[%SYSTEM%]\vufeguja.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftBackupManager=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftBackupManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dxeyuguve=rundll32.exe "[%LOCAL_APPDATA%]\otewazucocal.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwrj32.rom,FYmqhF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mmehiqinic=rundll32.exe "[%WINDOWS%]\uyetuciv.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hagufenoko=Rundll32.exe "[%SYSTEM%]\nokufoye.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyapuqicacepepaj=rundll32.exe "[%WINDOWS%]\ojofaveleriweso.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winooc32.rom,HSFVdjkOC
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayBackupUpdate=rundll32.exe "[%COMMON_APPDATA%]\DisplayBackupUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winref32.rom,wvXgyXyxc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayServiceManager=rundll32.exe "[%COMMON_APPDATA%]\DisplayServiceManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsVerifierTray=rundll32.exe "[%COMMON_APPDATA%]\WindowsVerifierTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiwq32.rom,VdrodQDIW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GooglePolicyBackup=rundll32.exe "[%COMMON_APPDATA%]\GooglePolicyBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzir32.rom,SyQDURjefEkO
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincmm32.rom,utRobUD
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {3e8779b2-78a4-4715-9301-5bcfa6e72fa9}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftVerifierService=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftVerifierService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Flapalep=rundll32.exe "[%LOCAL_APPDATA%]\polfleR1.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 1c5f37ec=rundll32.exe "[%SYSTEM%]\fofuhiza.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hovomogoka=Rundll32.exe "[%SYSTEM%]\tegareto.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hovomogoka=Rundll32.exe "[%SYSTEM%]\tegareto.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hovomogoka=Rundll32.exe "[%SYSTEM%]\tegareto.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsManagerOnline=rundll32.exe "[%COMMON_APPDATA%]\WindowsManagerOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Byiteri=rundll32.exe "[%WINDOWS%]\kbmgri.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cxuqo=rundll32.exe "[%WINDOWS%]\kbmgri.dll",Startup
- HKEY_USERS\S-1-5-21-1390067357-1844823847-839522115-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cxuqo=rundll32.exe "[%WINDOWS%]\kbmgri.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelPolicyPolicy=rundll32.exe "[%COMMON_APPDATA%]\IntelPolicyPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjqa32.rom,RmQgDTGZr
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxTrayOnline=rundll32.exe "[%COMMON_APPDATA%]\DirectxTrayOnline.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelServiceTray=rundll32.exe "[%COMMON_APPDATA%]\IntelServiceTray.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelServiceTray=rundll32.exe "[%COMMON_APPDATA%]\IntelServiceTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseVerifierOnline=rundll32.exe "[%COMMON_APPDATA%]\MouseVerifierOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleVerifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\GoogleVerifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingzj32.rom,YVDryeVExK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftOnlinePolicy=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftOnlinePolicy.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vlorogu=rundll32.exe "[%WINDOWS%]\ixipoxaziguquxu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqt32.rom,UGEbPYVi
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwvv32.rom,EsfkEH
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winopc32.rom,RXYsguluRPa
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Awevayik=rundll32.exe "[%WINDOWS%]\ubiyowuy.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gguyuce=rundll32.exe "[%LOCAL_APPDATA%]\orejotohunicapa.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cweyiyapa=rundll32.exe "[%LOCAL_APPDATA%]\xercks.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {da2e0515-f0d5-4773-8191-400ccd50783b}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkjw32.rom,pQzniZNYwBR
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F680DA2.exe=[%PROFILE_TEMP%]\_A00F680DA2.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F326A11.exe=[%PROFILE_TEMP%]\_A00F326A11.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F648CC8.exe=[%PROFILE_TEMP%]\_A00F648CC8.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winith32.rom,XLksxVhQgreJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardServiceManager=rundll32.exe "[%COMMON_APPDATA%]\KeyboardServiceManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzzt32.rom,uRxctIRwdmAZ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%SYSTEM%]\hgGvvvSk.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsProfileUpdate=rundll32.exe "[%COMMON_APPDATA%]\WindowsProfileUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,EFVccrsSfojJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GooglePolicyPolicy=rundll32.exe "[%COMMON_APPDATA%]\GooglePolicyPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayBackupVerifier=rundll32.exe "[%COMMON_APPDATA%]\DisplayBackupVerifier.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardManagerManager=rundll32.exe "[%COMMON_APPDATA%]\KeyboardManagerManager.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardManagerManager=rundll32.exe "[%COMMON_APPDATA%]\KeyboardManagerManager.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {dabb1c43-1596-49c4-9e4d-51ae7a1518bb}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winldd32.rom,jUsXbAXAJG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardUpdateTray=rundll32.exe "[%COMMON_APPDATA%]\KeyboardUpdateTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winywg32.rom,yVLfMTKQ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vikakehiw=Rundll32.exe "[%SYSTEM%]\megejiwe.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleVerifierPolicy=rundll32.exe "[%COMMON_APPDATA%]\AppleVerifierPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseServiceNotifier=rundll32.exe "[%COMMON_APPDATA%]\MouseServiceNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrso32.rom,dVpexpfJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelVerifierVerifier=rundll32.exe "[%COMMON_APPDATA%]\IntelVerifierVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Axadoziyequk=rundll32.exe "[%WINDOWS%]\Anove.dll",e
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, puhidukeva=Rundll32.exe "[%SYSTEM%]\sewanedi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, puhidukeva=Rundll32.exe "[%SYSTEM%]\sewanedi.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayProfileUpdate=rundll32.exe "[%COMMON_APPDATA%]\DisplayProfileUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzfx32.rom,ccAonP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsgn32.rom,TtiPoNd
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tawiduroge=Rundll32.exe "[%SYSTEM%]\fesorega.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjrj32.rom,YQQVpbnM
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrsttaudio=rundll32.exe "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awtqrpaudio=rundll32.exe "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingnp32.rom,xnKLDqnqxbK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\efcDUmjg.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winddp32.rom,sQxnjv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleProfileVerifier=rundll32.exe "[%COMMON_APPDATA%]\AppleProfileVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleNotifierVerifier=rundll32.exe "[%COMMON_APPDATA%]\AppleNotifierVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iihfdeaudio=rundll32.exe "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifdbyaudio=rundll32.exe "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqpppnaudio=rundll32.exe "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssrpqpaudio=rundll32.exe "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmjkhaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtuutuaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtrspoaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaaywxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkkliaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iiifebaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbyawvaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khihfeaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqqqnaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tuvwvsaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fccaxyaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkkjkkaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkhfdcaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgfghiaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iiiihhaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxxyvaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efdccdaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khebaxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxyvvaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkigdaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnmjiaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmlihaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljkjjkaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnmjgeaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tustrraudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opmmjjaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gedbbxaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxwuuaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbyywaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iifdbxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dddabxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvwvuaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbywtaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcbyayaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qomliiaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqpnmaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gedaabaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnonmjaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljiigdaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwtrosys="rundll32.exe" "vttqqn.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcbyvvaudio="rundll32.exe" "byyawu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sstrssaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkkjiaudio="rundll32.exe" "awtsss.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmkiggaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awtqppaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlifghaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbaaaaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byyyyaaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqnlkaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcywuraudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwxvtaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbayxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tuvuttaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmnnkaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvvwuaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khgdawaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaxyvwaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dddbxxaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmllmnaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvusraudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqqqraudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrsqnaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, geeccbaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaabyxaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khghifaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqpnkaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlifgeaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awttstaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmjggaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iiffedaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urspopaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kheebyaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awuvutaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkkhihaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljijjiaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvvwvtaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxxvuaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbxxyxaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxyvwwaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnmmjaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnkhgaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqppnoaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opolmnaudio="rundll32.exe" "byyawu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tusppqaudio="rundll32.exe" "xxxwvt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efffedaudio="rundll32.exe" "awtsss.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljiifcsys=rundll32.exe "vttqqn.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtttrpaudio=rundll32.exe "byyawu.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqrstaudio=rundll32.exe "xxxwvt.dll",s
Scan your system registry for FREE


CURIOLAB S.M.B.A., Amagertorv 15, 2, 1160 Copenhagen K, Denmark, +45.36965533
