Top 10 Alerts
Latest 10 Malware Files
Testimonials
You guys are freakin' awesome, love the program, love the personalized service, and my pc loves it too :D
Justin S.
Vundo (Virtumondo) Registry Values
Scan your Windows registry for Vundo (Virtumondo)
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khgeebdrv=rundll32.exe "fcbaww.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljiifcsys=rundll32.exe "vttqqn.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vtttrpaudio=rundll32.exe "byyawu.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqrstaudio=rundll32.exe "xxxwvt.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khgeebdrv=rundll32.exe "fcbaww.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftUpdateProfile=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftUpdateProfile.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftProfileVerifier=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftProfileVerifier.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftProfileVerifier=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftProfileVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelTrayOnline=rundll32.exe "[%COMMON_APPDATA%]\IntelTrayOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Omafehucu=rundll32.exe "[%LOCAL_APPDATA%]\uhecukexugu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftNotifierNotifier=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftNotifierNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleNotifierManager=rundll32.exe "[%COMMON_APPDATA%]\AppleNotifierManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwcu32.rom,BYbIjSRJkGr
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleProfileBackup=rundll32.exe "[%COMMON_APPDATA%]\GoogleProfileBackup.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleProfileBackup=rundll32.exe "[%COMMON_APPDATA%]\GoogleProfileBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiot32.rom,jfaQJIG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqk32.rom,iGJEFyvd
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM7bddc45c=Rundll32.exe "[%PROFILE_TEMP%]\qeurfras.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqopnndrv=rundll32.exe "nnkkhi.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqopnndrv=rundll32.exe "nnkkhi.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlklmjsys=rundll32.exe "yabcyx.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlklmjsys=rundll32.exe "yabcyx.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windjg32.rom,reyvgAUHjv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsServiceProfile=rundll32.exe "[%COMMON_APPDATA%]\WindowsServiceProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrps32.rom,EcbvPSsX
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {6928c803-aa5d-4b3a-9943-3c3f784a02bd}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqxl32.rom,XBFhgm
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hagisihidu=Rundll32.exe "[%SYSTEM%]\roveruwu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrtt32.rom,BYPlMKQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Exabuxabib=rundll32.exe "[%LOCAL_APPDATA%]\ijiqotoli.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMe3e01bb5=Rundll32.exe "[%SYSTEM%]\pihuwali.dll",a
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wuvotayine=Rundll32.exe "[%SYSTEM%]\veyevida.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wuvotayine=Rundll32.exe "[%SYSTEM%]\veyevida.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelUpdateTray=rundll32.exe "[%COMMON_APPDATA%]\IntelUpdateTray.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelUpdateTray=rundll32.exe "[%COMMON_APPDATA%]\IntelUpdateTray.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Otulewapafi=rundll32.exe "[%WINDOWS%]\uwitucivi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winddp32.rom,FOOhPLmv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintuc32.rom,CEpReXfnXjA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkzh32.rom,fLdvxqWbmPPh
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hdozijegoh=rundll32.exe "[%LOCAL_APPDATA%]\omebuworucato.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,tpcGxb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tizesapeya=Rundll32.exe "[%SYSTEM%]\kopurege.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tizesapeya=Rundll32.exe "[%SYSTEM%]\kopurege.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tizesapeya=Rundll32.exe "[%SYSTEM%]\kopurege.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxUpdateTray=rundll32.exe "[%COMMON_APPDATA%]\DirectxUpdateTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winboy32.rom,ZDjJFAq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqdd32.rom,FSXYhcEGi
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, motewiwane=Rundll32.exe "pusogumu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineax32.rom,cCMyksbhRVh
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayVerifierTray=rundll32.exe "[%COMMON_APPDATA%]\DisplayVerifierTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxBackupBackup=rundll32.exe "[%COMMON_APPDATA%]\DirectxBackupBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbwh32.rom,WQMNudnr
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbqi32.rom,XrtpsdafH
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winury32.rom,uwQklCQqyasI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxpa32.rom,YFpSkqtOa
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxBackupBackup="rundll32.exe" "[%COMMON_APPDATA%]\DirectxBackupBackup.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardUpdateProfile=rundll32.exe "[%COMMON_APPDATA%]\KeyboardUpdateProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnfi32.rom,CDSJgfLrIUS
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uqukowal=rundll32.exe "[%WINDOWS%]\edomigivajiyuhax.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkep32.rom,kStysRsJ
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gofepohiju=Rundll32.exe "[%SYSTEM%]\fubatuzo.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gofepohiju=Rundll32.exe "[%SYSTEM%]\fubatuzo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrvc32.rom,kCUjSRVBoK
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bpizerisub=rundll32.exe "[%WINDOWS%]\oziqatuz.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaVerifierUpdate=rundll32.exe "[%COMMON_APPDATA%]\JavaVerifierUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardPolicyProfile=rundll32.exe "[%COMMON_APPDATA%]\KeyboardPolicyProfile.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winffq32.rom,NiZLWOA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsjl32.rom,TbENCHg
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjak32.rom,ngwLZxClFgWE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardBackupManager=rundll32.exe "[%COMMON_APPDATA%]\KeyboardBackupManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvna32.rom,cyeokg
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleTrayProfile=rundll32.exe "[%COMMON_APPDATA%]\AppleTrayProfile.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 64c2c353=rundll32.exe "[%SYSTEM%]\urqQghef.dll",b
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaManagerUpdate=rundll32.exe "[%COMMON_APPDATA%]\JavaManagerUpdate.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaManagerUpdate=rundll32.exe "[%COMMON_APPDATA%]\JavaManagerUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winytj32.rom,fPqSyTRYDjzR
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ojuzarikomemapi=rundll32.exe "[%WINDOWS%]\efemugux.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxNotifierOnline=rundll32.exe "[%COMMON_APPDATA%]\DirectxNotifierOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iruheniqeduk=rundll32.exe "[%WINDOWS%]\ewodalosa.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseTrayProfile=rundll32.exe "[%COMMON_APPDATA%]\MouseTrayProfile.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efffcdsys=rundll32.exe "gedaww.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efffcdsys=rundll32.exe "gedaww.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gboropiranohidi=rundll32.exe "[%WINDOWS%]\ajuticuh.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxUpdateService=rundll32.exe "[%COMMON_APPDATA%]\DirectxUpdateService.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftManagerUpdate=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftManagerUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardPolicyNotifier=rundll32.exe "[%COMMON_APPDATA%]\KeyboardPolicyNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winurk32.rom,tQwJUrwa
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windco32.rom,ndcSZJRR
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelOnlineOnline="rundll32.exe" "[%COMMON_APPDATA%]\IntelOnlineOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run, Umeyovuviyakid=rundll32.exe "[%WINDOWS%]\avoyopubop.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleNotifierNotifier=rundll32.exe "[%COMMON_APPDATA%]\GoogleNotifierNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqse32.rom,QmwHuRrnehzr
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}=STS
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, SSODL={EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mxalizebufisaw=rundll32.exe "[%WINDOWS%]\ufetiqaq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsOnlineProfile=rundll32.exe "[%COMMON_APPDATA%]\WindowsOnlineProfile.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM739d509d=Rundll32.exe "[%SYSTEM%]\zelokore.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 70ae6301=rundll32.exe "[%SYSTEM%]\wuholove.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rozefudoni=Rundll32.exe "[%SYSTEM%]\jafijohe.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rozefudoni=Rundll32.exe "[%SYSTEM%]\jafijohe.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rozefudoni=Rundll32.exe "[%SYSTEM%]\jafijohe.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxTrayBackup=rundll32.exe "[%COMMON_APPDATA%]\DirectxTrayBackup.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Khugejejohehucuc=rundll32.exe "[%WINDOWS%]\ijakilugoqoralo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjit32.rom,nKVXLmAOJI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,OBaLscTEt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelVerifierNotifier=rundll32.exe "[%COMMON_APPDATA%]\IntelVerifierNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkjk32.rom,IFUKZGZ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {d85530e8-d39d-49d0-9f36-300d594556d2}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,ZAnnMofHRx
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dsocofipu=rundll32.exe "[%LOCAL_APPDATA%]\KBDENlE.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqf32.rom,vAoHzRadYc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winojr32.rom,qTVMwQDc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dkisoju=rundll32.exe "[%WINDOWS%]\ofezuzeqijiw.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleTrayOnline=rundll32.exe "[%COMMON_APPDATA%]\GoogleTrayOnline.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {ee5a1465-1e73-4784-8f63-45983fdf0db8}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingzj32.rom,oybiCxbUv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jfivu=rundll32.exe "[%LOCAL_APPDATA%]\igotigihagon.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,MdkHnyH
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qwupekuda=rundll32.exe "[%WINDOWS%]\utamutivolubu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Iturenezuduqiyal=rundll32.exe "[%WINDOWS%]\apapurif.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iturenezuduqiyal=rundll32.exe "[%WINDOWS%]\apapurif.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhcj32.rom,nEwikXwU
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lbasuharuculihi=rundll32.exe "[%WINDOWS%]\ohopegog.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winscb32.rom,KGVDXCk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleVerifierVerifier=rundll32.exe "[%COMMON_APPDATA%]\AppleVerifierVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintcm32.rom,glGVVSWShgH
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqk32.rom,VFXcSzMvJWyy
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrtt32.rom,enchGA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsManagerService=rundll32.exe "[%COMMON_APPDATA%]\WindowsManagerService.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dyifem=rundll32.exe "[%WINDOWS%]\equgomukedomigiv.dll",Startup
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pitedehega=Rundll32.exe "[%SYSTEM%]\bimefili.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvfe32.rom,FbTAQRwVHigw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qsoxiwok=rundll32.exe "[%WINDOWS%]\ivivatebi.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qsoxiwok=rundll32.exe "[%WINDOWS%]\epixozabo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfqj32.rom,vJxvSXMNoJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,FyKvPfj
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftVerifierVerifier=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftVerifierVerifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjsf32.rom,vQhMpbGYOx
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AppleTrayNotifier=rundll32.exe "[%COMMON_APPDATA%]\AppleTrayNotifier.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uwomizufe=rundll32.exe "[%LOCAL_APPDATA%]\ayuliyojoqo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelPolicyProfile=rundll32.exe "[%COMMON_APPDATA%]\IntelPolicyProfile.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {ce86878f-d099-4ffc-a4dc-e51d192063b1}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnxv32.rom,cswNSUr
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Acexewomewomewo=rundll32.exe "[%WINDOWS%]\ocerasew.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,EhZrTMhJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldeqomew=rundll32.exe "[%LOCAL_APPDATA%]\itiviciduh.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM57910724=Rundll32.exe "[%COMMON_APPDATA%]\yaponema\yaponema.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM57910724=Rundll32.exe "[%COMMON_APPDATA%]\yaponema\yaponema.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windwl32.rom,LSdIutKC
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftProfileVerifier=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftProfileVerifier.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lcilibazuk=rundll32.exe "[%WINDOWS%]\umahukoziyequki.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvjl32.rom,aTBbwTVbX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windju32.rom,faQesvrJZqSk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkesuvozera=rundll32.exe "[%WINDOWS%]\sabcpebt.dll",Startup
- HKEY_USERS\S-1-5-21-789336058-117609710-725345543-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vkesuvozera=rundll32.exe "[%WINDOWS%]\sabcpebt.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhlt32.rom,XySzbisSD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsOnlinePolicy=rundll32.exe "[%COMMON_APPDATA%]\WindowsOnlinePolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GoogleServiceVerifier=rundll32.exe "[%COMMON_APPDATA%]\GoogleServiceVerifier.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsServiceService=rundll32.exe "[%COMMON_APPDATA%]\WindowsServiceService.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WindowsServiceService=rundll32.exe "[%COMMON_APPDATA%]\WindowsServiceService.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {5e85c971-f9e7-4f4d-a059-14fa00220c7a}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winebd32.rom,DkadIzF
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelProfileManager=rundll32.exe "[%COMMON_APPDATA%]\IntelProfileManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvuw32.rom,XdcvoyV
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rtolejataza=rundll32.exe "[%WINDOWS%]\uyuwavatebiwe.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DisplayServiceTray="rundll32.exe" "[%COMMON_APPDATA%]\DisplayServiceTray.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbqi32.rom,wWEzhrSAkwz
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Wzuzudora=rundll32.exe "[%LOCAL_APPDATA%]\ohoxisigihajile.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winffq32.rom,OWPBUD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MouseManagerPolicy=rundll32.exe "[%COMMON_APPDATA%]\MouseManagerPolicy.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjit32.rom,LybqLExWHm
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,EsfkEH
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Omaciyakidalosac=rundll32.exe "[%WINDOWS%]\iwunenor.dll",Startup
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6E2042.exe=[%PROFILE_TEMP%]\_A00F6E2042.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincuv32.rom,JLrShQOjVb
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e2a0ad94-ab68-4783-b85c-4a22d621f46c}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sunivebes={e2a0ad94-ab68-4783-b85c-4a22d621f46c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vpavicogotobu=rundll32.exe "[%WINDOWS%]\ehupekamosarev.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzpm32.rom,hbPIiA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugx32.rom,UkDbAlmnhEjt
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bziqufehori=rundll32.exe "[%WINDOWS%]\okekipip.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DirectxPolicyManager=rundll32.exe "[%COMMON_APPDATA%]\DirectxPolicyManager.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, JavaVerifierOnline=rundll32.exe "[%COMMON_APPDATA%]\JavaVerifierOnline.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwgk32.rom,XwiTgBVweT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqk32.rom,TbVxPs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnwo32.rom,JsVkjcvrlo
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, IntelProfileUpdate=rundll32.exe "[%COMMON_APPDATA%]\IntelProfileUpdate.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Onaratuqi=rundll32.exe "[%WINDOWS%]\ufogejop.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MicrosoftOnlineUpdate=rundll32.exe "[%COMMON_APPDATA%]\MicrosoftOnlineUpdate.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnfi32.rom,lMkATDiaCimk
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pqicibebaxixoy=rundll32.exe "[%LOCAL_APPDATA%]\ezawawan.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqk32.rom,cxtnhTBrO
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlku32.rom,ISgyUNAYPkz
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {22342b44-5b98-4b30-9d53-c182ad8df217}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lmahiwita=rundll32.exe "[%LOCAL_APPDATA%]\umofumuligizoyow.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mxeme=rundll32.exe "[%WINDOWS%]\ofonisap.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kjacowemowemo=rundll32.exe "[%WINDOWS%]\uqaqubub.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uficazizuferos=rundll32.exe "[%LOCAL_APPDATA%]\ugogihaji.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, KeyboardManagerUpdate=rundll32.exe "[%COMMON_APPDATA%]\KeyboardManagerUpdate.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jjajuca=rundll32.exe "[%WINDOWS%]\uweqabih.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqqh32.rom,OzSoVKPk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzsj32.rom,GReXPyN
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM97f223ea=Rundll32.exe "[%SYSTEM%]\fagunake.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 94c11076=rundll32.exe "[%SYSTEM%]\gezafuje.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, voyenituda=Rundll32.exe "[%SYSTEM%]\tapeyeni.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwss32.rom,nXQLEaUlGGu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrtt32.rom,wUgGvcBaq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyza32.rom,jcEhIft
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mnosone=rundll32.exe "[%WINDOWS%]\igaqizoq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winphq32.rom,wOTRun
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a4d13f30-55a5-49bb-8b90-2a71ea9673a9}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldeqomew=rundll32.exe "[%LOCAL_APPDATA%]\ozarogehuda.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pzasuko=rundll32.exe "[%WINDOWS%]\okijogumaj.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winptu32.rom,vgvwUGSoAtlm
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mumitegoze=Rundll32.exe "[%SYSTEM%]\wisolike.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mumitegoze=Rundll32.exe "[%SYSTEM%]\wisolike.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\geBqNghE.dll,#1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Emeyuhiqopuhuhiq=rundll32.exe "[%WINDOWS%]\awoxaroyuy.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 046654b0=rundll32.exe "[%SYSTEM%]\ppxikxka.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnfi32.rom,gXZcszpl
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lmomenakohodo=rundll32.exe "[%WINDOWS%]\icelusasiyuwam.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, podubosafe=Rundll32.exe "[%SYSTEM%]\yakerige.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, podubosafe=Rundll32.exe "[%SYSTEM%]\yakerige.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbyq32.rom,EgBnxVBkaSP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuji32.rom,qvTztZeg
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Msonukukububovid=rundll32.exe "[%WINDOWS%]\uxesowuwulevefi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldeqomew=rundll32.exe "[%LOCAL_APPDATA%]\ocovuhoxuqux.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fhidejogumajapim=rundll32.exe "[%LOCAL_APPDATA%]\akivedid.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bvukozuvovepur=rundll32.exe "[%LOCAL_APPDATA%]\afokidalo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windho32.rom,SfwlPvHqKfs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winigd32.rom,FZHwmqDIVJuF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Exeyufom=rundll32.exe "[%WINDOWS%]\ixomabimonusijeg.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineoy32.rom,avczedjkW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cmds=rundll32.exe [%PROFILE_TEMP%]\ljjHwUMd.dll,c
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\fccdawUm.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 6644d847=rundll32.exe "[%PROFILE_TEMP%]\qlyshpqt.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a30a9115-7df6-4bcd-9f60-034fbcf1325e}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7f4ff6d5-e71d-4b1a-ad0b-a660c1fd1837}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jxiyeho=rundll32.exe "[%WINDOWS%]\ozirafox.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uyotuhe=rundll32.exe "[%WINDOWS%]\ananorixatabiv.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnez32.rom,ZJxzmFWtLNI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyxe32.rom,LOQTKXBhpW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjak32.rom,ssApjopcUF
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfb32.rom,vhhXFud
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gnejacuqe=rundll32.exe "[%WINDOWS%]\oyiyakidalo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqt32.rom,GFIWWeTh
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuji32.rom,ifjCswsvb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oyiwiducena=rundll32.exe "[%WINDOWS%]\asoferos.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mhicokilomi=rundll32.exe "[%WINDOWS%]\exomuyosamav.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {4e3e60f5-f691-475f-afba-cf9fcab47c15}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlfo32.rom,bUvdrpKrDhNJ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nvotuxec=rundll32.exe "[%LOCAL_APPDATA%]\imufokeyibe.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winury32.rom,tJjhzPmhFw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bsejoyuyeve=rundll32.exe "[%LOCAL_APPDATA%]\icoperam.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winipx32.rom,KWZayDEbWY
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rmevunavi=rundll32.exe "[%SYSTEM%]\config\systemprofile\AppData\Local\ufohotepopeg.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrie32.rom,KEjFyFDpIE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincwa32.rom,sQxnjv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winajk32.rom,pXFNPhxfxrof
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkhn32.rom,iePyPlvC
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvfe32.rom,NnKHzwNtgUcS
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nohovojole=Rundll32.exe "[%SYSTEM%]\sokodewu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nohovojole=Rundll32.exe "[%SYSTEM%]\sokodewu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SYSUPD=[%WINDOWS%]\sysupd.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqnj32.rom,jDXYpDdlNf
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gbonoji=rundll32.exe "[%LOCAL_APPDATA%]\iyudodex.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winruq32.rom,InHWAUExVq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwes32.rom,NznPPBPqyf
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windho32.rom,jJAiARx
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {85891cf5-118e-44af-8682-a7b08d33a9e7}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pzewigame=rundll32.exe "[%WINDOWS%]\etikilug.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nogebafeya=Rundll32.exe "[%SYSTEM%]\malaruwo.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nogebafeya=Rundll32.exe "[%SYSTEM%]\malaruwo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincir32.rom,VRXodgPFgB
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xrowal=rundll32.exe "[%WINDOWS%]\wiuexp.dll",Startup
- HKEY_USERS\S-1-5-21-1295729371-856704032-35062214-1140\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xrowal=rundll32.exe "[%WINDOWS%]\wiuexp.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintvo32.rom,JxtJthmtV
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldeqomew=rundll32.exe "[%LOCAL_APPDATA%]\iyapomukimu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ufefiwuhuropifa=rundll32.exe "[%WINDOWS%]\ewosunufu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windco32.rom,bhQkUpFsn
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dkijuf=rundll32.exe "[%WINDOWS%]\egikenakohodop.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfp32.rom,vuwQOMisyi
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yanerijagu=Rundll32.exe "[%SYSTEM%]\javewuro.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yanerijagu=Rundll32.exe "[%SYSTEM%]\javewuro.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tviwufeworitu=rundll32.exe "[%LOCAL_APPDATA%]\enunevudamumokek.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winobp32.rom,FIiQSVsk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gtevuweju=rundll32.exe "[%LOCAL_APPDATA%]\uloxiwuhuqero.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldeqomew=rundll32.exe "[%LOCAL_APPDATA%]\iqoqububukuk.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrys32.rom,xQfpbgTnBz
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bjuxowurafoxo=rundll32.exe "[%WINDOWS%]\enexuhijuc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Emalidupayaz=rundll32.exe "[%WINDOWS%]\ogukurubo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjty32.rom,MJvLDnRvLnq
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pzuna=rundll32.exe "[%WINDOWS%]\ezecahexofipuj.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincaz32.rom,xeUpuhksb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bduyow=rundll32.exe "[%WINDOWS%]\Dhaqodamujumuq.dat",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xgula=rundll32.exe "[%SYSTEM%]\config\systemprofile\AppData\Local\onucuxiqivoqulic.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xgula=rundll32.exe "[%SYSTEM%]\config\systemprofile\AppData\Local\onucuxiqivoqulic.dll",Startup
- HKEY_USERS\S-1-5-21-1722648497-618387101-3576511121-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xgula=rundll32.exe "[%SYSTEM%]\config\systemprofile\AppData\Local\onucuxiqivoqulic.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {2b3cbdc2-8ab6-45b1-b59e-7b0dee595917}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {280ee6f9-e414-4d35-8fef-8180bb5ac916}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rzacuheyekit=rundll32.exe "[%WINDOWS%]\Ybazaqe.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqpmnaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddaawvaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddaawvaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qloja=rundll32.exe "[%WINDOWS%]\omonites.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ikupucizep=rundll32.exe "[%WINDOWS%]\igexulodi.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmmjjsys=rundll32.exe "hgfgfg.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssrrsssys=rundll32.exe "hgfgfg.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssrrsssys=rundll32.exe "hgfgfg.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiij32.rom,iVlIdCvVH
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 8cf3c546=rundll32.exe "[%SYSTEM%]\yurezasa.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dubihufuru=Rundll32.exe "[%SYSTEM%]\kabujupe.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljkhfeaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutursaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efccywsys=rundll32.exe "mlkigd.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbayvsys=rundll32.exe "mlkigd.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaxwwuaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ddbayvsys=rundll32.exe "mlkigd.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaxwwuaudio=rundll32.exe "pmnnnn.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Erohoqirace=rundll32.exe "[%LOCAL_APPDATA%]\acajubijamehigat.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gnahicacepepajo=rundll32.exe "[%WINDOWS%]\omiruwok.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwjm32.rom,GPyLAUwDc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fgoxe=rundll32.exe "[%LOCAL_APPDATA%]\enehidozotuqole.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wopiyuteza=Rundll32.exe "[%SYSTEM%]\zabunego.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wopiyuteza=Rundll32.exe "[%SYSTEM%]\zabunego.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxpa32.rom,cItRVLAiQJl
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jqalomuredi=rundll32.exe "[%LOCAL_APPDATA%]\ilutefesufiy.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kdanutiya=rundll32.exe "[%LOCAL_APPDATA%]\sDa0fls.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ykoca=rundll32.exe "[%WINDOWS%]\agoreriyon.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uzegubalikoqat=rundll32.exe "[%WINDOWS%]\avakobox.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlrl32.rom,DhijIuEfOibU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlku32.rom,DHhMFYljb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qwunidedug=rundll32.exe "[%WINDOWS%]\icaqoziy.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, derorageze=Rundll32.exe "[%SYSTEM%]\ledanozo.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, derorageze=Rundll32.exe "[%SYSTEM%]\ledanozo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmxr32.rom,WgDezzFss
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xvudo=rundll32.exe "[%LOCAL_APPDATA%]\acesaxupetozuxa.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Enoyol=rundll32.exe "[%WINDOWS%]\osudalumihudusi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ovexusik=rundll32.exe "[%WINDOWS%]\auTRECN.dll",Startup
- HKEY_USERS\S-1-5-21-3836103347-3328985345-3458430647-1129\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ovexusik=rundll32.exe "[%WINDOWS%]\auTRECN.dll",Startup
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgdddesys=rundll32.exe "iifdda.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgdddesys=rundll32.exe "iifdda.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hggeeesys=rundll32.exe "fccywt.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgdefesys=rundll32.exe "fccywt.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgdefesys=rundll32.exe "fccywt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxxvwusys=rundll32.exe "ddawts.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnkljgsys=rundll32.exe "ddawts.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khihgdsys=rundll32.exe "wvvuvu.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnkljgsys=rundll32.exe "ddawts.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khihgdsys=rundll32.exe "wvvuvu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyaw32.rom,lAkBfYkpatj
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Djodeku=rundll32.exe "[%WINDOWS%]\elopiliyo.dll",Startup
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urpnmksys=rundll32.exe "fccywt.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urpnmksys=rundll32.exe "fccywt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincmm32.rom,dBcYuIop
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssrspmsys=rundll32.exe "awurqq.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmliifaudio=rundll32.exe "pmkihg.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khiiigaudio=rundll32.exe "pmkihg.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awwxwtsys=rundll32.exe "awurqq.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awwxwtsys=rundll32.exe "awurqq.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yabyyysys=rundll32.exe "yabxut.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkhfdsys=rundll32.exe "yabxut.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnomjsys=rundll32.exe "awurqq.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlkhfdsys=rundll32.exe "yabxut.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnomjsys=rundll32.exe "awurqq.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfp32.rom,hVQZXTs
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iihgffsys=rundll32.exe "khifef.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ursponsys=rundll32.exe "khifef.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opollisys=rundll32.exe "awwuss.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ursponsys=rundll32.exe "khifef.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opollisys=rundll32.exe "awwuss.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awuttqsys=rundll32.exe "nnomnm.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwtqnaudio=rundll32.exe "cbbyvv.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awtromaudio=rundll32.exe "cbbyvv.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgfcbasys=rundll32.exe "nnomnm.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvtrssaudio=rundll32.exe "geeebc.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnkijsys=rundll32.exe "awttqp.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqppmksys=rundll32.exe "awtspp.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, awtromaudio=rundll32.exe "cbbyvv.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgfcbasys=rundll32.exe "nnomnm.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvtrssaudio=rundll32.exe "geeebc.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pmnkijsys=rundll32.exe "awttqp.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rqppmksys=rundll32.exe "awtspp.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvtrosys=rundll32.exe "nnomnm.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvtrosys=rundll32.exe "nnomnm.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincir32.rom,WihHePsg
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khgebysys=rundll32.exe "kheeff.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvvsqrsys=rundll32.exe "kheeff.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvvsqrsys=rundll32.exe "kheeff.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vcurawur=rundll32.exe "[%LOCAL_APPDATA%]\edosucef.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,yMwomK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintfn32.rom,IWUtNzkc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vrifaw=rundll32.exe "[%WINDOWS%]\izuyalogujage.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winees32.rom,qbtSCdhFU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfnw32.rom,EnfCeWUoPuGQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ehometeqa=rundll32.exe "[%LOCAL_APPDATA%]\unigucineputehob.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 2ce5704e=rundll32.exe "[%SYSTEM%]\sglhkvod.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lponucokuhupotov=rundll32.exe "[%WINDOWS%]\uledejuzakax.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winllf32.rom,lXihqODyop
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Acexewomewomewo=rundll32.exe "[%WINDOWS%]\ewugitul.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqua32.rom,iMkEXDECJLKV
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ndujesuxi=rundll32.exe "[%LOCAL_APPDATA%]\emepovaxesakor.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxqa32.rom,TGZXiVlIdCv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bvukozuvovepur=rundll32.exe "[%LOCAL_APPDATA%]\isajemilape.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a7e81b89-df38-40c8-a767-6fbecb65b862}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rkicopaniyawevan=rundll32.exe "[%WINDOWS%]\apezexiz.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,GSjtmXUtCUN
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fivugekuge=Rundll32.exe "[%SYSTEM%]\mutupapo.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpgg32.rom,AspZdlcSewrX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineii32.rom,SVgDHpQs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsqx32.rom,QdJRcQGhQdw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvtj32.rom,QgEzWkRDE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhjn32.rom,KnuzuoUSXc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winruq32.rom,HPIaSvLDHr
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windjg32.rom,jfnKbCWlXSOY
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vjejixez=rundll32.exe "[%LOCAL_APPDATA%]\uwocefuwejatazal.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winggf32.rom,WTSMtTlgrvZJ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fvuqidaci=rundll32.exe "[%LOCAL_APPDATA%]\egovoyox.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pyewojulo=rundll32.exe "[%WINDOWS%]\anebuzit.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7d7db869-3021-4cd2-af0a-b3cad75ece31}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ycaguyiboxa=rundll32.exe "[%LOCAL_APPDATA%]\opefisawan.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, e8b22f19=rundll32.exe "[%SYSTEM%]\vrtehcxj.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BMeb811c85=Rundll32.exe "[%SYSTEM%]\eoaxlwmu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpdj32.rom,MKCMHEDkDpt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincqr32.rom,kpSHkj
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ybuqijamehig=rundll32.exe "[%WINDOWS%]\Apejokez.dat",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Acexewomewomewo=rundll32.exe "[%WINDOWS%]\ehohegurixu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuji32.rom,qtRKapPJcJkt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlvh32.rom,nWTipqOqNW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhsx32.rom,agKpCtWxdOM
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gpoxozuzif=rundll32.exe "[%LOCAL_APPDATA%]\ocaqaxacoden.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrso32.rom,EeqPiFjHj
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lgedapulenarohil=rundll32.exe "[%WINDOWS%]\ofikukub.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pubulehubi=Rundll32.exe "[%SYSTEM%]\palifomu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pubulehubi=Rundll32.exe "[%SYSTEM%]\palifomu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ljgedeaudio=rundll32.exe "gedbxy.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmkkkaudio=rundll32.exe "gedbxy.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, effeebsys=rundll32.exe "ssqolm.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnonooaudio=rundll32.exe "gedbxy.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutsposys=rundll32.exe "ssqolm.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qopmnmsys=rundll32.exe "khiiij.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nnonooaudio=rundll32.exe "gedbxy.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tutsposys=rundll32.exe "ssqolm.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qopmnmsys=rundll32.exe "khiiij.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkep32.rom,StfQZcyLVXdT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingzj32.rom,fwmuLT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Elipivagoxoyi=rundll32.exe "[%WINDOWS%]\mimsvd.dll",Startup
- HKEY_USERS\S-1-5-21-2853717760-2450136782-3467078915-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Elipivagoxoyi=rundll32.exe "[%WINDOWS%]\mimsvd.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {06df596b-3170-4f07-be10-86e31456bc56}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winybl32.rom,RwqCCdMAvma
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhmp32.rom,RYjKpxUgb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vtatolemahedilaw=rundll32.exe "[%WINDOWS%]\obiqamabimonusij.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqua32.rom,pJACnhxALHew
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=[%SYSTEM%]\vomuganu.dll [%SYSTEM%]\besigaza.dll
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kimiripeku=Rundll32.exe "[%SYSTEM%]\danuzihi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kimiripeku=Rundll32.exe "[%SYSTEM%]\danuzihi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nxuwozuvovepurif=rundll32.exe "[%WINDOWS%]\eduhulalihoc.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\acuheceweweciqus.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qjuriyubadero=rundll32.exe "[%LOCAL_APPDATA%]\ujelavarowi.dll",Startup
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hizalewone=Rundll32.exe "[%SYSTEM%]\wepanibe.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hizalewone=Rundll32.exe "[%SYSTEM%]\wepanibe.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hizalewone=Rundll32.exe "[%SYSTEM%]\wepanibe.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hizalewone=Rundll32.exe "[%SYSTEM%]\wepanibe.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hjovojuxapiv=rundll32.exe "[%WINDOWS%]\uhijadazayuju.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iwuvudiwoniqiv=rundll32.exe "[%WINDOWS%]\onecahal.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gfocazucu=rundll32.exe "[%WINDOWS%]\ekosohah.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSSMSGS=rundll32.exe winaet32.rom,yXmCpCijS
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqqh32.rom,yKfxhcVAftAt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyrd32.rom,lHrkPDQcI
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ppazogo=rundll32.exe "[%WINDOWS%]\ogumaziz.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmdb32.rom,jshKmLT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nbosuqav=rundll32.exe "[%WINDOWS%]\mueTodf.dll",Startup
- HKEY_USERS\S-1-5-21-1493405453-569077445-1844645045-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nbosuqav=rundll32.exe "[%WINDOWS%]\mueTodf.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, efffgfsys=rundll32.exe "[%PROFILE_TEMP%]\xxxust.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqoppsys=rundll32.exe "mlmkll.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqoppsys=rundll32.exe "mlmkll.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqhx32.rom,ycEMscIZVNL
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuzg32.rom,LtdsLUmEV
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winigd32.rom,yxInxAnwpav
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Omiho=rundll32.exe "[%LOCAL_APPDATA%]\uxebahuk.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrwv32.rom,LOQTKXBhpW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlwq32.rom,aDxuzc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winajk32.rom,EZDobvTbk
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pjesafiq=rundll32.exe "[%WINDOWS%]\eyihekafomohu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winees32.rom,yQIHsqpvj
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oyufevo=rundll32.exe "[%LOCAL_APPDATA%]\etaneseyom.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,RXwAwspnMK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winioa32.rom,QvkkOEVUeUgt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvsh32.rom,ZjuNUpABPkw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlfo32.rom,lpeBulVPWPWE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnxv32.rom,FxuDKw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winevl32.rom,GVcxqwbuu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xyucenocopolo=rundll32.exe "[%LOCAL_APPDATA%]\avuxominopafe.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpfi32.rom,zcXzGLh
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ycuqeve=rundll32.exe "[%WINDOWS%]\olifaxac.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sfawu=rundll32.exe "[%WINDOWS%]\mskbclt.dll",Startup
- HKEY_USERS\S-1-5-21-2025429265-329068152-1606980848-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sfawu=rundll32.exe "[%WINDOWS%]\mskbclt.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugy32.rom,VJkJbvso
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sveyikebegu=rundll32.exe "[%LOCAL_APPDATA%]\axezikagupise.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windnb32.rom,GFIWWeTh
Scan your system registry for FREE


CURIOLAB S.M.B.A., Amagertorv 15, 2, 1160 Copenhagen K, Denmark, +45.36965533
