Top 10 virus alerts
Latest 10 malware files
Testimonials
You guys are freakin' awesome, love the program, love the personalized service, and my pc loves it too :D
Justin S.
Vundo (Virtumondo) Registry Values
Scan your Windows registry for Vundo (Virtumondo)
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iqogiqa=rundll32.exe "[%WINDOWS%]\ukifatah.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,cRDzWQhPet
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gasokiyul=Rundll32.exe "[%SYSTEM%]\miyebelu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {188424a2-bdfb-4a5a-8905-5a8085b29ae9}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, baluyahuw={188424a2-bdfb-4a5a-8905-5a8085b29ae9}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kapevahiw=Rundll32.exe "[%SYSTEM%]\wukanipo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rafepanun=Rundll32.exe "[%SYSTEM%]\guyalugo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mepayeyal=Rundll32.exe "[%SYSTEM%]\nilofono.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {49da8e0e-a8b0-4aa6-9a62-5f274c6c2684}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vezarazun={49da8e0e-a8b0-4aa6-9a62-5f274c6c2684}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kayohegij=Rundll32.exe "[%SYSTEM%]\kopadodu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sijurafat=Rundll32.exe "[%SYSTEM%]\waluyelo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ec190109-f864-4abb-9c7c-ceb3c01a1b30}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bebodedom={ec190109-f864-4abb-9c7c-ceb3c01a1b30}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pawakemet=Rundll32.exe "[%SYSTEM%]\ligamosa.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mebawuhow=Rundll32.exe "[%SYSTEM%]\dosetiwi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, japeponag=Rundll32.exe "[%SYSTEM%]\dijipire.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, smss32.exe=[%SYSTEM%]\smss32.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hulamifiva="Rundll32.exe" "wafofozu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqre32.rom,IyNhQfSsNQY
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pijefuhuz=Rundll32.exe "[%SYSTEM%]\zuvovade.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {77e327c9-957e-49a7-88f7-5dcae1ced40d}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gewumiziz={77e327c9-957e-49a7-88f7-5dcae1ced40d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMd3bb4339=Rundll32.exe "[%SYSTEM%]\bodalene.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wbuxaqi=rundll32.exe "[%WINDOWS%]\imigozav.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tvemesola=rundll32.exe "[%WINDOWS%]\Uhaximesumiwum.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lemanepuwu=Rundll32.exe "[%SYSTEM%]\kiligefu.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1737bede-b682-48c0-96df-9e50e8a72bf2}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, poluvubin={1737bede-b682-48c0-96df-9e50e8a72bf2}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, darapopav=Rundll32.exe "[%SYSTEM%]\gerogije.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6d523bd4-a0dd-4698-be54-1892da2e85f5}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vikomirar={6d523bd4-a0dd-4698-be54-1892da2e85f5}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gugimizes=Rundll32.exe "[%SYSTEM%]\rizaluzo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {217aa771-34d0-4e57-a1a2-88804a3415a0}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jopoyetab={217aa771-34d0-4e57-a1a2-88804a3415a0}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zatarufel=Rundll32.exe "[%SYSTEM%]\gukojodu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dehaletima=Rundll32.exe "bosilime.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {20565f12-f63e-4a1c-a691-df17370885cd}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, penanujoj={20565f12-f63e-4a1c-a691-df17370885cd}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f570a87b-685f-46a6-bb74-f5d803770c8d}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zahimufur={f570a87b-685f-46a6-bb74-f5d803770c8d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sloxebevax=rundll32.exe "[%WINDOWS%]\oxerowovoxados.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hutesofog=Rundll32.exe "[%SYSTEM%]\wijidapa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ec896535-3ae9-4584-ab14-fa7bd8d3ce62}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yilarobus={ec896535-3ae9-4584-ab14-fa7bd8d3ce62}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,vZPZqs
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mezafakuj=Rundll32.exe "[%SYSTEM%]\vodozagi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6cd06c28-f287-44db-b82b-20281460ff73}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, rojawokan={6cd06c28-f287-44db-b82b-20281460ff73}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fovihinuv=Rundll32.exe "[%SYSTEM%]\famavebe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8ddce58e-cdc3-465a-99c4-fe44c478ae02}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pudevifig={8ddce58e-cdc3-465a-99c4-fe44c478ae02}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, budekugahu=Rundll32.exe "higawaka.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ikejay=rundll32.exe "[%WINDOWS%]\ewenojagiqetetab.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,KtJSBSWSIGrQ
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6bb98269-7470-45f3-a287-e5e1e28c067a}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kamemelak={6bb98269-7470-45f3-a287-e5e1e28c067a}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS="rundll32.exe" winyrd32.rom,AVpZOztWZ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zatarufel=Rundll32.exe "[%SYSTEM%]\borababu.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxnz32.rom,QvbkDWhvUC
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, smss32.exe=[%SYSTEM%]\smss32.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fdelasegadavemom=rundll32.exe "[%WINDOWS%]\aharexur.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kcemuzuhov=rundll32.exe "[%WINDOWS%]\uhawusehih.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xmuloyiqopaca=rundll32.exe "[%WINDOWS%]\ohijozapo.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lwibaca=rundll32.exe "[%WINDOWS%]\Ewidusan.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Blugaratiq=rundll32.exe "[%WINDOWS%]\Whanine.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sifayihip=Rundll32.exe "[%SYSTEM%]\kukolare.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5fd67c24-3a74-4202-9c9f-2cec7a3d7364}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, talawafey={5fd67c24-3a74-4202-9c9f-2cec7a3d7364}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnawo=rundll32.exe "[%WINDOWS%]\okuxeyak.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gajujesos=Rundll32.exe "[%SYSTEM%]\hajajepo.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsgz32.rom,yXmCpCijS
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqez32.rom,nLNimJyhbK
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, womujehir=Rundll32.exe "[%SYSTEM%]\ruyutave.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1b5f22c8-ad7e-446a-b58f-b849429dd35e}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yevisazev={1b5f22c8-ad7e-446a-b58f-b849429dd35e}
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F295A129B.exe=[%PROFILE_TEMP%]\_A00F295A129B.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1FA4ECAB.exe=[%PROFILE_TEMP%]\_A00F1FA4ECAB.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F146F4EA9.exe=[%PROFILE_TEMP%]\_A00F146F4EA9.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hilovawem=Rundll32.exe "[%SYSTEM%]\rorivano.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a0ca4889-ec4f-41bf-8ff4-787fbea561ee}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zeduvodaz={a0ca4889-ec4f-41bf-8ff4-787fbea561ee}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gugimizes=Rundll32.exe "[%SYSTEM%]\mezeweku.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {cf5e68af-04c2-4141-9721-19aca777dee9}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, watedenap={cf5e68af-04c2-4141-9721-19aca777dee9}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zememilos=Rundll32.exe "[%SYSTEM%]\walipevo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {603e996d-8e29-4da7-b0ef-47753edaf09f}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, nozimeyil={603e996d-8e29-4da7-b0ef-47753edaf09f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mtomuduqi=rundll32.exe "[%WINDOWS%]\owufiwupucusez.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqcc32.rom,DmLDOtge
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincmm32.rom,zgQUTkYWTiD
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, todolomaze=Rundll32.exe "fojawuka.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lawazomom=Rundll32.exe "[%SYSTEM%]\wejibeni.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6339a494-ee30-4301-becc-9709175ebf2d}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jalahetid={6339a494-ee30-4301-becc-9709175ebf2d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ihana=rundll32.exe "[%WINDOWS%]\ovihutafuzac.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrzy32.rom,FZnLyQnCTcza
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nunibaniy=Rundll32.exe "[%SYSTEM%]\derubaha.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gugimizes=Rundll32.exe "[%SYSTEM%]\tatoyame.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {043a2619-aaa8-4b72-b135-020024c418a4}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, tivivisuf={043a2619-aaa8-4b72-b135-020024c418a4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Drufuzif=rundll32.exe "[%WINDOWS%]\ubelecug.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Akofiy=rundll32.exe "[%WINDOWS%]\areyepeteroq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run (Disabled by Starter), Akofiy=rundll32.exe "[%WINDOWS%]\areyepeteroq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fekibonip=Rundll32.exe "[%SYSTEM%]\jonatumu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9d330cd7-c168-48db-aff1-e51d37434c89}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, femerejuh={9d330cd7-c168-48db-aff1-e51d37434c89}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pejejemuy=Rundll32.exe "[%SYSTEM%]\jokurati.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {daae7dd0-1311-493d-86f3-1b03a1ce0ef7}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, herojiyif={daae7dd0-1311-493d-86f3-1b03a1ce0ef7}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sifayihip=Rundll32.exe "[%SYSTEM%]\kizoraju.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a5fbd3b5-8048-411d-aaa4-d023af7ae14b}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vegazihog={a5fbd3b5-8048-411d-aaa4-d023af7ae14b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mebawuhow=Rundll32.exe "[%SYSTEM%]\gayelayi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqpqopsys=rundll32.exe "[%WINDOWS%]\syswow64\khijkj.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcyaawsys=rundll32.exe "[%WINDOWS%]\syswow64\khijkj.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {8369650d-536c-4b75-ba0b-8286e86eda0a}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {33ac7d18-dc35-4d1a-940e-afd5fc5c3327}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {47836122-9d2e-476c-9763-b1d366f704e1}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winohf32.rom,YLIQbGZHlHSD
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ralepefas=Rundll32.exe "[%SYSTEM%]\depohowi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f1f8ab2d-7dec-4412-b899-00aa3ef7e8ac}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, litigogub={f1f8ab2d-7dec-4412-b899-00aa3ef7e8ac}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xtajabi=rundll32.exe "[%WINDOWS%]\okuwuwuq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutavuwepi=Rundll32.exe "zadowebi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lugezegom=Rundll32.exe "[%SYSTEM%]\lomitete.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {391f0fd9-0d69-40e6-956f-4e8ae90da3c4}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, juverugad={391f0fd9-0d69-40e6-956f-4e8ae90da3c4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gasokiyul=Rundll32.exe "[%SYSTEM%]\bamukitu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e0d5b65e-9dfa-4e52-a4f0-10ec77327bba}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wapumapuh={e0d5b65e-9dfa-4e52-a4f0-10ec77327bba}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%SYSTEM%]\ddcDvwUN.dll,#1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hoyigalam=Rundll32.exe "[%SYSTEM%]\buzalevu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kabedigute=Rundll32.exe "jukajeyi.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {52e14bf7-eaea-4594-922b-6be5ca0ca24a}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kijehiwel={52e14bf7-eaea-4594-922b-6be5ca0ca24a}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=hvjeeu.dll zjjtmy.dll qhmtpn.dll [%SYSTEM%]\jepewosi.dll bjxavb.dll tndcth.dll [%SYSTEM%]\hizupoye.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qmacowilojihum=rundll32.exe "[%WINDOWS%]\erubewahaz.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wavoyesizu=Rundll32.exe "[%SYSTEM%]\gigopero.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lawazomom=Rundll32.exe "[%SYSTEM%]\hijijevu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8dfbaa9e-797e-4dd7-885a-57bad460974f}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yumahojop={8dfbaa9e-797e-4dd7-885a-57bad460974f}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,vAmXjLAcsgvU
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ilobazijuluca=rundll32.exe "[%WINDOWS%]\upanunaniyanu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mzogawodafu=rundll32.exe "[%WINDOWS%]\uyajimon.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fumeribey=Rundll32.exe "[%SYSTEM%]\jezegunu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5921f453-3254-407d-9a7e-a974a0113c0d}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zozeripid={5921f453-3254-407d-9a7e-a974a0113c0d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nogajinib=Rundll32.exe "[%SYSTEM%]\weziroze.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {61a98d85-4a09-4883-a6b7-2986125410b4}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wunezipan={61a98d85-4a09-4883-a6b7-2986125410b4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ozipo=rundll32.exe "[%WINDOWS%]\ukadanes.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kipafinet=Rundll32.exe "[%SYSTEM%]\fufalovi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nutafedone=Rundll32.exe "lavusita.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ce406aa4-a14d-4194-971a-ca4b42b3c973}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vekugihil={ce406aa4-a14d-4194-971a-ca4b42b3c973}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcyxusdrv=rundll32.exe "jkkjjh.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxvuuudrv=rundll32.exe "jkkjjh.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkosekajomo=rundll32.exe "[%WINDOWS%]\ametozofan.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tipawagib=Rundll32.exe "[%SYSTEM%]\mafolibu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ba7107e3-d83d-4810-9eb0-59210a8939e4}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fazudaded={ba7107e3-d83d-4810-9eb0-59210a8939e4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulutatov=Rundll32.exe "[%SYSTEM%]\kiyeboli.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winina32.rom,EghiYHMP
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fceyifijorecewe=rundll32.exe "[%WINDOWS%]\upeqasunu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gasokiyul=Rundll32.exe "[%SYSTEM%]\dupekayi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {76234f82-2b84-45fc-beaa-db014fd0c74a}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yojefajof={76234f82-2b84-45fc-beaa-db014fd0c74a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dibizatid=Rundll32.exe "[%SYSTEM%]\wawavara.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {fd1ad5e6-251b-4c44-ab74-86645b550853}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kagobivog={fd1ad5e6-251b-4c44-ab74-86645b550853}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xcuyaru=rundll32.exe "[%WINDOWS%]\uwusadiyurega.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwiz32.rom,SUWBpidKEUld
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zunayevon=Rundll32.exe "[%SYSTEM%]\vuhugeya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b026716f-9963-4402-a6d8-ad7312e90eea}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, ronefetaz={b026716f-9963-4402-a6d8-ad7312e90eea}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zunayevon=Rundll32.exe "[%SYSTEM%]\yapigifa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {559498ac-535d-4175-9efb-c77a0f910a52}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yuhejozus={559498ac-535d-4175-9efb-c77a0f910a52}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mebawuhow=Rundll32.exe "[%SYSTEM%]\loligewa.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yukohogayu=Rundll32.exe "zijojere.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iqiyik=rundll32.exe "[%WINDOWS%]\ojizoloc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, siyimigok=Rundll32.exe "[%SYSTEM%]\vatokivu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8d81525d-0858-4808-a1e2-4835e1d6660c}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pemusadif={8d81525d-0858-4808-a1e2-4835e1d6660c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {f50b3f5e-856e-4757-9bb1-b35d46ca7719}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {733e9132-53ca-4c97-9ac9-145c4502fa20}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {1a75f101-126e-46a3-97b1-91a96d161c15}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yagebayizi=Rundll32.exe "[%SYSTEM%]\gepibura.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Jxicuhuhoneniqe=rundll32.exe "[%WINDOWS%]\usugumesa.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nzuyucowo=rundll32.exe "[%WINDOWS%]\adigovitogolopu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sazazusik=Rundll32.exe "[%SYSTEM%]\seduvumo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumumakah=Rundll32.exe "[%SYSTEM%]\marewugo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7d4d0b97-fdd0-45c0-863a-fe0db64db4c2}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hukejisiy={7d4d0b97-fdd0-45c0-863a-fe0db64db4c2}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wunodihov=Rundll32.exe "[%SYSTEM%]\wiparugo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d64c3531-abca-49a2-8e05-f9d93a5bb7fa}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sefatitoh={d64c3531-abca-49a2-8e05-f9d93a5bb7fa}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaxyxvdrv=rundll32.exe "khggda.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxvtrrdrv=rundll32.exe "khggda.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtutqodrv=rundll32.exe "khggda.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtutqodrv=rundll32.exe "khggda.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qomkhesys=rundll32.exe "vttqnk.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkjigfsys=rundll32.exe "vttqnk.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkjigfsys=rundll32.exe "vttqnk.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kxiwes=rundll32.exe "[%WINDOWS%]\eyegopepubitukix.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kxiwes=rundll32.exe "[%WINDOWS%]\eyegopepubitukix.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tewanopiz=Rundll32.exe "[%SYSTEM%]\madujeri.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5c1c90dd-9b53-4bbf-a4fb-2e4b84a6029f}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, julizafof={5c1c90dd-9b53-4bbf-a4fb-2e4b84a6029f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gerapazay=Rundll32.exe "[%SYSTEM%]\kepivuji.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfb32.rom,WXaQupIKOO
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bowogihud=Rundll32.exe "[%SYSTEM%]\yeyozoda.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zunayevon=Rundll32.exe "[%SYSTEM%]\pojavoru.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {73ff7b5e-8bb5-4acd-9dcf-8bed75267d52}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dirutaziy={73ff7b5e-8bb5-4acd-9dcf-8bed75267d52}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bozuguwof=Rundll32.exe "[%SYSTEM%]\vojifuje.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {057c59a6-a3b2-40e8-ba95-cded2e65d85f}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, safohureh={057c59a6-a3b2-40e8-ba95-cded2e65d85f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lugezegom=Rundll32.exe "[%SYSTEM%]\mezeweku.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b0b0e11b-a275-49f0-9bdd-56095f1d83b1}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, luharuzik={b0b0e11b-a275-49f0-9bdd-56095f1d83b1}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5db35189-019e-461d-acfe-a4a049e65632}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vituzapur={5db35189-019e-461d-acfe-a4a049e65632}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljklkkdrv=rundll32.exe "[%PROFILE_TEMP%]\qonkki.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnmmkisys=rundll32.exe "[%PROFILE_TEMP%]\geecbb.dll",DllRegisterServer
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F20ADF70.exe=[%PROFILE_TEMP%]\_A00F20ADF70.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ryuguqapiweso=rundll32.exe "[%WINDOWS%]\oextap.dll",e
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ryuguqapiweso=rundll32.exe "[%WINDOWS%]\oextap.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lobozodeke=Rundll32.exe "[%SYSTEM%]\sefewana.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d06c3e66-ce6a-4d7a-9894-5dcf0b7fc405}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yoyadepaf={d06c3e66-ce6a-4d7a-9894-5dcf0b7fc405}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gasokiyul=Rundll32.exe "[%SYSTEM%]\nudehiye.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yrulazopesi=rundll32.exe "[%WINDOWS%]\ocafomor.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dibizatid=Rundll32.exe "[%SYSTEM%]\sebajuyo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2041a876-f8b0-42e4-a5bc-5506fa57ed69}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fehugugiz={2041a876-f8b0-42e4-a5bc-5506fa57ed69}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, muzojohuh=Rundll32.exe "[%SYSTEM%]\hamohive.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winllf32.rom,QyiBHrPs
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mebawuhow=Rundll32.exe "[%SYSTEM%]\fonaneki.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {4cc880ea-ac20-4194-843e-a825cc32f7c7}=
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}=STS
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, SSODL={EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sidulebip="Rundll32.exe" "[%COMMON_APPDATA%]\bufufodu\bufufodu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vigivumij=Rundll32.exe "[%SYSTEM%]\loyuwisa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e180218a-f0fe-4c95-83ea-2a82b652ac02}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pemefedey={e180218a-f0fe-4c95-83ea-2a82b652ac02}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tojapibom=Rundll32.exe "[%SYSTEM%]\guvuvara.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {01f7a3cf-68f7-41c1-a067-14b9dee7a4ba}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mohihifam={01f7a3cf-68f7-41c1-a067-14b9dee7a4ba}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, girulowib=Rundll32.exe "[%SYSTEM%]\kewomavo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e5b1b433-2283-4bf7-8f2c-7515b80a88cb}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jadomolel={e5b1b433-2283-4bf7-8f2c-7515b80a88cb}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljgdbydrv=rundll32.exe "[%PROFILE_TEMP%]\awutsp.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cbbyxusys=rundll32.exe "[%PROFILE_TEMP%]\geecbb.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=avgrsstx.dll biscki.dll [%SYSTEM%]\wofomobu.dll [%SYSTEM%]\febudipi.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMb39ee22a=Rundll32.exe "[%SYSTEM%]\febudipi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, b0add1b6=rundll32.exe "[%SYSTEM%]\hapejulu.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yagebayizi=Rundll32.exe "[%SYSTEM%]\gepibura.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pisizutur=Rundll32.exe "[%SYSTEM%]\dilakupi.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wimefekodo=Rundll32.exe "puyebeko.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nohokowez=Rundll32.exe "[%SYSTEM%]\yejedufi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {48861bb9-b693-4751-b3f4-48d941d435c4}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, ziwayanom={48861bb9-b693-4751-b3f4-48d941d435c4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nihuwodej=Rundll32.exe "[%SYSTEM%]\gipofosi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2bf99e87-5979-4876-87ee-2191202b6193}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, duwehelak={2bf99e87-5979-4876-87ee-2191202b6193}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jxicuhuhoneniqe=rundll32.exe "[%WINDOWS%]\usugumesa.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fipenafoy=Rundll32.exe "[%SYSTEM%]\gedogeye.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d037a2c6-c7b0-4458-8785-b301cb796c1d}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vujiderut={d037a2c6-c7b0-4458-8785-b301cb796c1d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kadahehas=Rundll32.exe "[%SYSTEM%]\molugivu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, witiyetob=Rundll32.exe "[%SYSTEM%]\boliraka.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sdab="[%PROGRAM_FILES%]\ICROSO~1.NET\fast.exe" -vt ndrv
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM13c23b54=Rundll32.exe "[%SYSTEM%]\xfwwwgcp.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winldd32.rom,IydzOmxxpBRr
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, puhiyasud=Rundll32.exe "[%SYSTEM%]\pepilose.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2c62cff8-2562-439d-b684-b5b171c984e8}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zokoyebis={2c62cff8-2562-439d-b684-b5b171c984e8}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Edozumutokarat=rundll32.exe "[%WINDOWS%]\ekecohot.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yeyosumez=Rundll32.exe "[%SYSTEM%]\divimuvo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b1cb1df1-5abd-48f3-8fad-025f8ff35ea8}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, guvawaney={b1cb1df1-5abd-48f3-8fad-025f8ff35ea8}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7d6fd2f5-6aa5-47e8-bb57-278995c024f1}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lohasarut={7d6fd2f5-6aa5-47e8-bb57-278995c024f1}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f5a1205d-8ea6-4bb1-a68f-d45d9ea70811}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bawonihes={f5a1205d-8ea6-4bb1-a68f-d45d9ea70811}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c24c407f-ac19-4f03-bf02-ad2c65314804}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vuvelehig={c24c407f-ac19-4f03-bf02-ad2c65314804}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0a1d47d4-b749-47c5-8072-03d3b827da70}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kehapesem={0a1d47d4-b749-47c5-8072-03d3b827da70}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9ea3bcc5-070b-426b-8045-33f08f3422c2}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mehukanar={9ea3bcc5-070b-426b-8045-33f08f3422c2}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7fa22023-6b85-4d2d-9659-77408c46cb45}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lagibahed={7fa22023-6b85-4d2d-9659-77408c46cb45}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c75f64d2-4323-49f5-a91d-629cfa7c3897}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lumikuluz={c75f64d2-4323-49f5-a91d-629cfa7c3897}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5c8a1630-c98a-4d27-9d58-534eaef2c19e}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sakirepof={5c8a1630-c98a-4d27-9d58-534eaef2c19e}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dibizatid=Rundll32.exe "[%SYSTEM%]\fizudifu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5514ede7-bd0b-43d7-beaa-9d63f9db6be2}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fazikigej={5514ede7-bd0b-43d7-beaa-9d63f9db6be2}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nirivudit=Rundll32.exe "[%SYSTEM%]\satusope.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kifemuvoju=Rundll32.exe "lojolami.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nirivudit=Rundll32.exe "[%SYSTEM%]\vopereso.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kifemuvoju=Rundll32.exe "dowikabu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Obohigusu=rundll32.exe "[%WINDOWS%]\inecabenuwiq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnawo=rundll32.exe "[%WINDOWS%]\ifodihoducexuc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Awifojihum=rundll32.exe "[%WINDOWS%]\eticajuh.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, radeloyap=Rundll32.exe "[%SYSTEM%]\gufipato.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f3efd5b5-97af-4ef0-b5d8-d2e018a945d8}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wuyabumup={f3efd5b5-97af-4ef0-b5d8-d2e018a945d8}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, movifafok=Rundll32.exe "[%SYSTEM%]\nokanoza.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {92200ab6-5723-43a6-b4fc-6a74b2fb54fe}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vulumuhiy={92200ab6-5723-43a6-b4fc-6a74b2fb54fe}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, totodanima=Rundll32.exe "jiwofehu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a4d13f30-55a5-49bb-8b90-2a71ea9673a9}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {45c2a50f-8f4a-496e-af02-d0207525bf5a}=
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F152506.exe=[%PROFILE_TEMP%]\_A00F152506.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FA6E2A.exe=[%PROFILE_TEMP%]\_A00FA6E2A.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FADACF.exe=[%PROFILE_TEMP%]\_A00FADACF.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run_Hidden, 320d18a1=rundll32.exe "[%SYSTEM%]\hgakalkc.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run_Hidden, BM313e2b3d=Rundll32.exe "[%SYSTEM%]\cbtelvxc.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ekmwfb=RUNDLL32.EXE [%SYSTEM%]\mshyadkp.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ganikuyoy=Rundll32.exe "[%SYSTEM%]\madubiha.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {11fba410-0846-4196-90cc-f2dad3213631}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dayuwegev={11fba410-0846-4196-90cc-f2dad3213631}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fefirokib=Rundll32.exe "[%SYSTEM%]\gurelido.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {883374a3-2cf1-4a61-b185-a457f987eeac}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vorupofig={883374a3-2cf1-4a61-b185-a457f987eeac}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rxizif=rundll32.exe "[%WINDOWS%]\owipoxub.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, buziyejul=Rundll32.exe "[%SYSTEM%]\pununade.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d1cdf693-d912-4b3a-b100-e036b3fc11ad}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lawofujok={d1cdf693-d912-4b3a-b100-e036b3fc11ad}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sasiwizal=Rundll32.exe "[%SYSTEM%]\jemufoka.dll",a
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6F77F3.exe=[%PROFILE_TEMP%]\_A00F6F77F3.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F15ECAB.exe=[%PROFILE_TEMP%]\_A00F15ECAB.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1CF64C8.exe=[%PROFILE_TEMP%]\_A00F1CF64C8.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FEA312.exe=[%PROFILE_TEMP%]\_A00FEA312.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F10D2EF3.exe=[%PROFILE_TEMP%]\_A00F10D2EF3.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F10EC56.exe=[%PROFILE_TEMP%]\_A00F10EC56.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F8115E.exe=[%PROFILE_TEMP%]\_A00F8115E.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run_Hidden, BM273daae2=Rundll32.exe "[%PROFILE_TEMP%]\dprtcggr.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzyt32.rom,mRWTnVDrSO
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, winupdate86.exe=[%SYSTEM%]\winupdate86.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, payudunih=Rundll32.exe "[%SYSTEM%]\gohiluza.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Khuqixo=rundll32.exe "[%WINDOWS%]\ukumowem.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pedokajiv=Rundll32.exe "[%SYSTEM%]\suhalewo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pedokajiv=Rundll32.exe "[%SYSTEM%]\fagometo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {dd857e31-f0df-44c2-aab3-ee24e26a7e5c}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gubebugaz={dd857e31-f0df-44c2-aab3-ee24e26a7e5c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rxecesuxid=rundll32.exe "[%WINDOWS%]\icanaduq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqxv32.rom,VZcAgo
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ruyojutow=Rundll32.exe "[%SYSTEM%]\hujinuya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {efd15c8b-3c02-42d2-81fb-08ade2bb144d}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mezazerok={efd15c8b-3c02-42d2-81fb-08ade2bb144d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, 4a8a2a1f=rundll32.exe "[%PROFILE_TEMP%]\lyisicri.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vhoreridubaya=rundll32.exe "[%WINDOWS%]\oginarigap.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bejabuzeg=Rundll32.exe "[%SYSTEM%]\mozubolu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mqava=rundll32.exe "[%WINDOWS%]\iqebabuy.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jasodufeke=Rundll32.exe "[%SYSTEM%]\pojabese.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fudazoned=Rundll32.exe "[%SYSTEM%]\lirupiyi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {35666d91-b096-4e28-bf1d-6078c1a296e3}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, morarawes={35666d91-b096-4e28-bf1d-6078c1a296e3}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fudazoned=Rundll32.exe "[%SYSTEM%]\bavobopu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jdami=rundll32.exe "[%WINDOWS%]\ocebuzitowayew.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kefubawuw=Rundll32.exe "[%SYSTEM%]\bayakara.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1c976d76-aa86-4871-823c-6b9ae6788351}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, miralevek={1c976d76-aa86-4871-823c-6b9ae6788351}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rakewegog=Rundll32.exe "[%SYSTEM%]\nesonavo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d5a50ae5-5f23-4dd1-9db5-c3c85a551f27}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, boledejot={d5a50ae5-5f23-4dd1-9db5-c3c85a551f27}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {44d8811c-b0e3-46d3-a1df-409c97f4274f}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gukuyehat={44d8811c-b0e3-46d3-a1df-409c97f4274f}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1f04c099-71a9-431e-9dff-6ed2e8c287b5}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, nihopukub={1f04c099-71a9-431e-9dff-6ed2e8c287b5}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutavuwepi=Rundll32.exe "segorado.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lugezegom=Rundll32.exe "[%SYSTEM%]\vevinaho.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {60e09391-5662-4b43-9243-ad6388effa84}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, rawibehug={60e09391-5662-4b43-9243-ad6388effa84}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, foregitih=Rundll32.exe "[%SYSTEM%]\tuzatazo.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winllf32.rom,EghiYHMP
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pelagakuy=Rundll32.exe "[%SYSTEM%]\hijusuza.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mebawuhow=Rundll32.exe "[%SYSTEM%]\nalusihe.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {c108ae59-c97f-4517-8b74-5590be3c2a82}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ilobazijuluca=rundll32.exe "[%WINDOWS%]\obanapiq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vigivumij=Rundll32.exe "[%SYSTEM%]\suwedijo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sotezebiyo=Rundll32.exe "rigagine.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,xRecSOetQBEa
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, notefumas=Rundll32.exe "[%SYSTEM%]\hamobaku.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Aketiweyifegizu=rundll32.exe "[%WINDOWS%]\esucukalibiki.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tugerered=Rundll32.exe "[%SYSTEM%]\yirepoje.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f5df7cc9-252b-4287-9c2b-deab25ee6da0}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zelotidad={f5df7cc9-252b-4287-9c2b-deab25ee6da0}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kepujigefa="Rundll32.exe" "zumidiba.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfb32.rom,itDfMjIeYF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nusisuviz=Rundll32.exe "[%SYSTEM%]\jilehobe.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsgz32.rom,GhghyBlruszT
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, davonuful=Rundll32.exe "[%SYSTEM%]\wavovozi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f3f9af65-c0af-40a4-b199-85db5fb718ce}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, digujitaz={f3f9af65-c0af-40a4-b199-85db5fb718ce}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,aCNTuocVv
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {34decfe8-bb87-4e66-8cbc-60fd1c81cb5d}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kapotusih={34decfe8-bb87-4e66-8cbc-60fd1c81cb5d}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winina32.rom,nSBXUYm
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winohf32.rom,UcJPFROuWtgj
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kesewuhudu=Rundll32.exe "[%COMMON_APPDATA%]\tubesola\tubesola.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winohf32.rom,gmlwcqkoEE
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=,,[%SYSTEM%]\mebokewe.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pebunebowe=Rundll32.exe "[%SYSTEM%]\yiriyidi.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winurk32.rom,GtMKVIYvQ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dcaguhasaj=rundll32.exe "[%WINDOWS%]\ulubejuyokuyep.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rubeduyuj=Rundll32.exe "[%SYSTEM%]\zogeyupa.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yitakinato=Rundll32.exe "saherola.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nahivumow=Rundll32.exe "[%SYSTEM%]\kesekepe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2606753c-c40d-462c-b7dd-7d89ec8ee8f8}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zuturegew={2606753c-c40d-462c-b7dd-7d89ec8ee8f8}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM6106168c=Rundll32.exe "[%COMMON_APPDATA%]\bohakete\bohakete.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bewajiwohe=Rundll32.exe "[%COMMON_APPDATA%]\morazolu\morazolu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Onoyayujupiliyo=rundll32.exe "[%WINDOWS%]\usapaguheyekiten.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vramosexasuxomo=rundll32.exe "[%WINDOWS%]\isawiduc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sohogazow=Rundll32.exe "[%SYSTEM%]\rafomife.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vayafiwivo=Rundll32.exe "wavemile.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\tuvUMccD.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpij32.rom,IdmyHoJGlSdq
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hulamifiva=Rundll32.exe "wafofozu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqxv32.rom,SYiUvOtc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xsoxotoyefuluga=rundll32.exe "[%WINDOWS%]\anejevulaseja.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 1453655f=rundll32.exe "[%SYSTEM%]\vywvpwhx.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, poburukepu=Rundll32.exe "[%COMMON_APPDATA%]\gevumabo\gevumabo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winoye32.rom,PNqfWtBzDgS
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hetotupol=Rundll32.exe "[%SYSTEM%]\vativise.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {988f70dc-c34a-4914-95ee-fb13d82cbbbd}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, biroziwes={988f70dc-c34a-4914-95ee-fb13d82cbbbd}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {129fa2a1-408c-4824-83a4-5001581fd01e}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {f0ba0854-9d72-4958-9c33-6f4b4f6fe805}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxbwys=RUNDLL32.EXE [%SYSTEM%]\mszbvcje.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cpahu=rundll32.exe "[%WINDOWS%]\ilujehucopoje.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, d84e1b82=rundll32.exe "[%SYSTEM%]\pwiflixb.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ksemixezibeceris=rundll32.exe "[%WINDOWS%]\avuwuwul.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gltaub=RUNDLL32.EXE [%SYSTEM%]\msxzyckc.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnawo=rundll32.exe "[%WINDOWS%]\egabowix.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winigi32.rom,GRymeD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winakd32.rom,njpLmPGHyyZ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bkejiyup=rundll32.exe "[%WINDOWS%]\isilemahedila.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DllRunning=rundll32.exe "[%PROFILE_TEMP%]\rrewsjsu.dll",setvm
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fboroxiyetuk=rundll32.exe "[%WINDOWS%]\uzutagacuticab.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rotatigov=Rundll32.exe "[%SYSTEM%]\yuvamifi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rirawapola=Rundll32.exe "pujiyiho.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kanakokop=Rundll32.exe "[%SYSTEM%]\nusayuta.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {417f4498-82ef-4e0e-967f-2638dd4855d4}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fipekajeg={417f4498-82ef-4e0e-967f-2638dd4855d4}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a50a75a6-25d6-44e1-b456-237940674fbc}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sehekugaz={a50a75a6-25d6-44e1-b456-237940674fbc}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {02bd5fd4-49d7-4772-a04e-323ed6b39cd6}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hupesefuh={02bd5fd4-49d7-4772-a04e-323ed6b39cd6}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {80027727-0682-4cd0-8fd2-76e290303a35}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gijejiraf={80027727-0682-4cd0-8fd2-76e290303a35}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nahivumow=Rundll32.exe "[%SYSTEM%]\kesekepe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5b5fa37e-bb91-4659-8f66-872bd4eca4c4}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sabegonuy={5b5fa37e-bb91-4659-8f66-872bd4eca4c4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ruyojutow=Rundll32.exe "[%SYSTEM%]\wubefivu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {77b05bb8-f344-488a-b8ad-a475ead9b8f7}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, duyebukad={77b05bb8-f344-488a-b8ad-a475ead9b8f7}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwiz32.rom,GfKDTLWxxU
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mgimiqejej=rundll32.exe "[%WINDOWS%]\ozifapoyo.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7e6f5cc6-d04f-46f8-89fe-b7277840a1bf}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bufabihoz=Rundll32.exe "[%SYSTEM%]\zebelivu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6455197e-0b5d-4c5c-ab39-62f039770e71}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kumoharoy={6455197e-0b5d-4c5c-ab39-62f039770e71}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Edozumutokarat=rundll32.exe "[%WINDOWS%]\evawaliy.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bagokorup=Rundll32.exe "[%SYSTEM%]\guwakeba.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ea1688ac-df70-48c7-a87a-314b525a559b}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, johemotig={ea1688ac-df70-48c7-a87a-314b525a559b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lekanogun=Rundll32.exe "[%SYSTEM%]\pimimoso.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0057ec4e-9e3d-42a8-8002-f1281bd0e37d}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yadopuseg={0057ec4e-9e3d-42a8-8002-f1281bd0e37d}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dvupetuwefok=rundll32.exe "[%WINDOWS%]\ahiberebevami.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, woloneziv=Rundll32.exe "[%COMMON_APPDATA%]\nomepeya\nomepeya.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, woloneziv=Rundll32.exe "[%COMMON_APPDATA%]\nomepeya\nomepeya.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, woloneziv=Rundll32.exe "[%COMMON_APPDATA%]\nomepeya\nomepeya.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, woloneziv=Rundll32.exe "[%COMMON_APPDATA%]\nomepeya\nomepeya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5f8471b5-d008-4bbb-a38e-2e7967b4193d}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, buzukiniw={5f8471b5-d008-4bbb-a38e-2e7967b4193d}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxnz32.rom,dgZZZewm
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {06627252-dbc7-4012-aaac-16fb74060c0c}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fuhawejoh={06627252-dbc7-4012-aaac-16fb74060c0c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mutulujiz=Rundll32.exe "[%SYSTEM%]\rukosabo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mpopovugiya=rundll32.exe "[%WINDOWS%]\iqiponamevede.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,eQBEFtHCKNo
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cbodoxuxabibid=rundll32.exe "[%WINDOWS%]\ipadovujepope.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nzilepuficuzu=rundll32.exe "[%WINDOWS%]\ivoxoxuxuvijuki.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, davonuful=Rundll32.exe "[%SYSTEM%]\pijelodo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8bb832a9-ca1b-4c16-b415-2d720c9d923e}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dujurakig={8bb832a9-ca1b-4c16-b415-2d720c9d923e}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jobusakeg=Rundll32.exe "[%SYSTEM%]\kovabova.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {27bfea3a-f50e-48f2-8708-cec4121724f4}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bosusuvan={27bfea3a-f50e-48f2-8708-cec4121724f4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jurinotiy=Rundll32.exe "[%SYSTEM%]\fuweyofa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ad73e4c9-a128-4c1e-bb3e-a6cf12abe323}=gahurihor
Scan your system registry for FREE

Comments

