Top 10 Alerts
Latest 10 Malware Files
Testimonials
You guys are freakin' awesome, love the program, love the personalized service, and my pc loves it too :D
Justin S.
Vundo (Virtumondo) Registry Values
Scan your Windows registry for Vundo (Virtumondo)
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, \YUR5505.exe=[%SYSTEM%]\YUR5505.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, \YUR4FD7.exe=[%SYSTEM%]\YUR4FD7.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kjudugavopi=rundll32.exe "[%WINDOWS%]\aqazalebinurifuc.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbyq32.rom,ArasNqnM
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winllf32.rom,AlCFfLOyjX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhlt32.rom,vOqOzPFFIyuu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ajorucuyajasu=rundll32.exe "[%LOCAL_APPDATA%]\igoqesaci.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugx32.rom,YLYNoZewHpe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintfb32.rom,rEtvWD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\ideturetozunes.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,gmlwcqkoEE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnux32.rom,CMdHcfHdNCVF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pnohixef=rundll32.exe "[%WINDOWS%]\iqocekiriyijike.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wvuzac=rundll32.exe "[%WINDOWS%]\owiqicoxicakihev.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {b1a64443-6fca-41ce-8d51-5f8991257555}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cwojupofuyipid=rundll32.exe "[%WINDOWS%]\ofinasulejacoyu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ppipuyodegexi=rundll32.exe "[%WINDOWS%]\c3dmprc.dll",Startup
- HKEY_USERS\S-1-5-21-2720952774-3016918114-1121973010-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ppipuyodegexi=rundll32.exe "[%WINDOWS%]\c3dmprc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nmuxe=rundll32.exe "[%WINDOWS%]\efocobojebuq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpan32.rom,uKIlWZWXLyw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqf32.rom,CaazvDieAToA
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bgehomixef=rundll32.exe "[%LOCAL_APPDATA%]\aqozutazetifig.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {5216bc01-b8dd-4e48-b96e-77710e54016b}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rbapaneca=rundll32.exe "[%WINDOWS%]\utukepemiyuv.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vdorekanugazixo=rundll32.exe "[%LOCAL_APPDATA%]\osasifad.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintas32.rom,eVAIVgSuG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfp32.rom,aryFmyENuk
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sbujovol=rundll32.exe "[%WINDOWS%]\ozinisixeji.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Imepud=rundll32.exe "[%LOCAL_APPDATA%]\arifumakuladoleq.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjhh32.rom,uTHjxhxLfMvD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\anukakejupe.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmnu32.rom,uBjqDHc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, muborohot=Rundll32.exe "[%SYSTEM%]\digezuru.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1c58d7d0-1979-4f00-b9d6-a4d768b84151}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, levoduduv={1c58d7d0-1979-4f00-b9d6-a4d768b84151}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oririxuqotol=rundll32.exe "[%LOCAL_APPDATA%]\esalokah.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 202f6654=rundll32.exe "[%SYSTEM%]\fscgtyuj.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM231c55c8=Rundll32.exe "[%SYSTEM%]\ncaoyqbr.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gmepa=rundll32.exe "[%LOCAL_APPDATA%]\inuxitigokid.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Emolafecuf=rundll32.exe "[%WINDOWS%]\ecowiges.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ndadib=rundll32.exe "[%LOCAL_APPDATA%]\idihahoz.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dmuzacufotizicif=rundll32.exe "[%LOCAL_APPDATA%]\irufedahemofi.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Smusowilo=rundll32.exe "[%WINDOWS%]\iqizegosulize.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, getojizida=Rundll32.exe "[%SYSTEM%]\bovuduwu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, getojizida=Rundll32.exe "[%SYSTEM%]\bovuduwu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rmepuse=rundll32.exe "[%WINDOWS%]\mdenmse.dll",Startup
- HKEY_USERS\S-1-5-21-1275210071-1844237615-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rmepuse=rundll32.exe "[%WINDOWS%]\mdenmse.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, xxyawwsys=rundll32.exe "cbxywt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, byvwtqsys=rundll32.exe "cbxywt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tuvvuuaudio=rundll32.exe "[%PROFILE_TEMP%]\dddebx.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dddbabaudio=rundll32.exe "[%PROFILE_TEMP%]\dddebx.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tusqpqaudio=rundll32.exe "[%PROFILE_TEMP%]\byvvtq.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqpppsys=rundll32.exe "cbxywt.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ssqpppsys=rundll32.exe "cbxywt.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbfc32.rom,hYexPi
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunAdvanced Uninstaller, Nxisowilojihume=rundll32.exe "[%LOCAL_APPDATA%]\acecelozugeca.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nxisowilojihume=rundll32.exe "[%LOCAL_APPDATA%]\acecelozugeca.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {0dd98ba3-25b7-4913-88af-cfbdb28da4ce}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Imane=rundll32.exe "[%WINDOWS%]\ucatefed.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iyodiya=rundll32.exe "[%WINDOWS%]\ilinagecaguh.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nojotigisi=Rundll32.exe "[%SYSTEM%]\hulawira.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winphd32.rom,CjZANnmjcPD
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzsj32.rom,OgCucX
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rumasalige=Rundll32.exe "[%SYSTEM%]\bihegafi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yliyayidadotib=rundll32.exe "[%WINDOWS%]\osoxofipuj.dll",Startup
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hkosok=rundll32.exe "[%WINDOWS%]\wkbrowl.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjef32.rom,HDvphXyXmCpC
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhes32.rom,SWiFTKVXqtXU
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {9f157d03-3dcc-4b4e-87ce-35f464bd3c3d}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windjg32.rom,COuRJnhGHyw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Cwojupofuyipid=rundll32.exe "[%WINDOWS%]\ofinasulejacoyu.dll",Startup
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=gicgzf.dll [%SYSTEM%]\nujugeze.dll [%SYSTEM%]\tehunevo.dll [%SYSTEM%]\fokazifi.dll
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vujoyehoko=Rundll32.exe "[%SYSTEM%]\wugipaka.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vujoyehoko=Rundll32.exe "[%SYSTEM%]\wugipaka.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tnakarivewavad=rundll32.exe "[%WINDOWS%]\iqusozomufa.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wviwivosogikekib=rundll32.exe "[%WINDOWS%]\emoresiqaquzuw.dll",Startup
- HKEY_USERS\S-1-5-21-1993962763-1682526488-1606980848-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wviwivosogikekib=rundll32.exe "[%WINDOWS%]\emoresiqaquzuw.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winghk32.rom,cvijDsIed
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingsw32.rom,popASMDhxWMx
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yogadirosi=Rundll32.exe "[%SYSTEM%]\juyadewi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xlolibece=rundll32.exe "[%WINDOWS%]\uviroyuy.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winack32.rom,XncRnBIxcZI
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pcevojotohunica=rundll32.exe "[%WINDOWS%]\unizuwipiqow.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsdk32.rom,UnZzXqyVa
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khgefgaudio=rundll32.exe "opopmj.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wvwvutsys=rundll32.exe "efcddd.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mlmklkaudio=rundll32.exe "opopmj.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vttqolaudio=rundll32.exe "opopmj.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcbyaxsys=rundll32.exe "efcddd.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vttqolaudio=rundll32.exe "opopmj.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fcbyaxsys=rundll32.exe "efcddd.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvaf32.rom,WTGoYhEvoX
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sfuyubon=rundll32.exe "[%WINDOWS%]\enojiqig.dll",Startup
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {41b3f7e3-a07e-4758-905b-ef142023b568}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hohikelus={41b3f7e3-a07e-4758-905b-ef142023b568}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {61ae48fc-57e1-42b4-9d8a-138aa7454bd2}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kawonevik={61ae48fc-57e1-42b4-9d8a-138aa7454bd2}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmawubalikoq=rundll32.exe "[%WINDOWS%]\uxigirif.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {dd3ec823-d3a1-48b3-a18a-a1958795a18a}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfav32.rom,onvAXF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pjijucohotucej=rundll32.exe "[%WINDOWS%]\ojegumaj.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cbujecer=rundll32.exe "[%WINDOWS%]\dpaspitk.dll",Startup
- HKEY_USERS\S-1-5-21-790525478-1343024091-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cbujecer=rundll32.exe "[%WINDOWS%]\dpaspitk.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winruq32.rom,VgGUrjoOayG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\uqoyeciferabatid.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrnp32.rom,tyBVjNz
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwuq32.rom,wmfsocYCcF
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwts32.rom,EJWDlU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mcufaj=rundll32.exe "[%LOCAL_APPDATA%]\ovaraxijumafuxu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winigi32.rom,XUXCOExO
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiot32.rom,VIXeYIJGisf
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mtanetox=rundll32.exe "[%WINDOWS%]\ihomihudu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Agaziyoni=rundll32.exe "[%LOCAL_APPDATA%]\uhoqepoquqoqe.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {f7f6584c-864b-411d-a410-bb2de0d33ca1}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cqenigegopepubit=rundll32.exe "[%WINDOWS%]\uvozekawepazu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nbifuharuculi=rundll32.exe "[%WINDOWS%]\awufoyemuyosam.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winomn32.rom,IWAwCAmooP
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fhidejogumajapim=rundll32.exe "[%LOCAL_APPDATA%]\ijakoxev.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugy32.rom,URsTTkrvj
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winohf32.rom,jNTTMu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winejr32.rom,nfXLYfJoCSwC
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, helubuwopi=Rundll32.exe "[%SYSTEM%]\vogujesi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, helubuwopi=Rundll32.exe "[%SYSTEM%]\vogujesi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bcehelukigatek=rundll32.exe "[%WINDOWS%]\izebereriyonidop.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cporavadejuzakax=rundll32.exe "[%WINDOWS%]\ctwmcrce.dll",Startup
- HKEY_USERS\S-1-5-21-138283526-3986576245-1126850232-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cporavadejuzakax=rundll32.exe "[%WINDOWS%]\ctwmcrce.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSSMSGS=rundll32.exe winauj32.rom,MYGIgn
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wtayihebajogani=rundll32.exe "[%LOCAL_APPDATA%]\afusudihoso.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Byufariwita=rundll32.exe "[%LOCAL_APPDATA%]\itoloput.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjef32.rom,pKVkSiK
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bmoyixibabu=rundll32.exe "[%WINDOWS%]\unebazuko.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gevewepeso=Rundll32.exe "[%SYSTEM%]\rapedomi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gevewepeso=Rundll32.exe "[%SYSTEM%]\rapedomi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hcekarobifa=rundll32.exe "[%WINDOWS%]\umusuleboduyevi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwyt32.rom,sgPZlarHTIA
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1C489693.exe=[%PROFILE_TEMP%]\_A00F1C489693.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winldd32.rom,ugdqulo
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,LDOtgeMUVvc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pnepaqiqejejoh=rundll32.exe "[%WINDOWS%]\anotamag.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwcu32.rom,gIWzdJOum
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=[%SYSTEM%]\bihonede.dll,[%SYSTEM%]\lodayija.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Troyabocuka=rundll32.exe "[%WINDOWS%]\ojazanijudulige.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winyms32.rom,zNQgHGAOs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsjl32.rom,icLqqBrPL
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winopy32.rom,hupSkPc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bvukozuvovepur=rundll32.exe "[%LOCAL_APPDATA%]\ezeqowal.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jkumopacajuhiqij=rundll32.exe "[%LOCAL_APPDATA%]\oyugupid.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Afiheraxi=rundll32.exe "[%LOCAL_APPDATA%]\otoloputuyezevu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mporitemek=rundll32.exe "[%LOCAL_APPDATA%]\awuwexuluq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mtanetox=rundll32.exe "[%WINDOWS%]\azuboxagijobake.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnmi32.rom,peVeZvfcRDz
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS="rundll32.exe" winvaf32.rom,icVhXvNSFvF
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Frinifexemexizod=rundll32.exe "[%WINDOWS%]\uzovusukase.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rnejude=rundll32.exe "[%WINDOWS%]\odababudepiguyor.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhxc32.rom,mWlJwwxOA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbwu32.rom,wQZaPEv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winzoh32.rom,ogxLgCD
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qregep=rundll32.exe "[%WINDOWS%]\emetodigipamepo.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tjigisura=rundll32.exe "[%WINDOWS%]\esategigusobo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpij32.rom,XaKAfw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ukuguhasajubija=rundll32.exe "[%WINDOWS%]\oyegozav.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yfigeyuvas=rundll32.exe "[%WINDOWS%]\iliwuqew.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,KRtDNEHuTlbs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbwh32.rom,BgoCnhYoRVc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Obema=rundll32.exe "[%WINDOWS%]\unuxajedecodaqox.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ofifilesola=rundll32.exe "[%LOCAL_APPDATA%]\utevunikanuj.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingaw32.rom,MKAaMRkachZ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\hgGaaBrR.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cmds=rundll32.exe [%PROFILE_TEMP%]\mlJayWpP.dll,c
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingnp32.rom,kJyvdrvrZqM
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfcb32.rom,JQwqTXTRiRCz
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winohf32.rom,oUMlEQEaeQMO
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlta32.rom,oZyhvPu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqyu32.rom,GFrfhrtw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winulo32.rom,eVIZEKCyPgzn
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\iyucegaqab.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,oSQKDTrm
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugx32.rom,RiprRe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winaia32.rom,eMZolvmvB
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuwf32.rom,WfEfbqbOCqDw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vnigesubaseb=rundll32.exe "[%LOCAL_APPDATA%]\awolaqoc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hhetekibehavaqeg=rundll32.exe "[%WINDOWS%]\ecixuqugaroro.dll",Startup
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC98E05.exe=[%PROFILE_TEMP%]\_A00FC98E05.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC86285.exe=[%PROFILE_TEMP%]\_A00FC86285.exe
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhyo32.rom,kTJQqYXOQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\uviwekes.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM63dcc3f7=Rundll32.exe "[%SYSTEM%]\bonafanu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 000000af=rundll32.exe "[%SYSTEM%]\gefuvura.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincuv32.rom,uAIySU
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvna32.rom,vjYvFcea
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windly32.rom,NXepEw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnig32.rom,wSgMDND
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhes32.rom,yXmCpCijS
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kdiqe=rundll32.exe "[%WINDOWS%]\ixeregadaga.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbrv32.rom,YmWcazLpq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineoy32.rom,nzcnZk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,jrmdcd
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, Bsukusocaceza=rundll32.exe "[%LOCAL_APPDATA%]\lmluxms.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Amugila=rundll32.exe "[%WINDOWS%]\esuvasax.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqvg32.rom,uCEcNFDaR
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuiw32.rom,DClVjNQUPMy
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqk32.rom,XIsKuUxZ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiot32.rom,bvNvzI
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvld32.rom,IvGRecquHX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrdz32.rom,eWUgUqIoBCt
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {dd4a65c7-61d7-445f-bcf1-5065f765eaf9}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincir32.rom,OuHmDwEBV
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbed32.rom,hnsnmk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winznh32.rom,oRcuQm
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqhx32.rom,TuYpnAIiAWk
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,CBnSRVirrGx
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nyevumokekegasud=rundll32.exe "[%WINDOWS%]\onukizaxifiv.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhsx32.rom,KRtDNEHuTlbs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjsf32.rom,LQxwbHdsDcL
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Byocog=rundll32.exe "[%LOCAL_APPDATA%]\ihofutocal.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bxuduhogajim=rundll32.exe "[%WINDOWS%]\udejivanoq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khigdadrv=rundll32.exe "iifgfe.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vttqqpsys=rundll32.exe "wvvurs.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqnnnsys=rundll32.exe "wvvurs.dll",DllRegisterServer
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqnnnsys=rundll32.exe "wvvurs.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, opqnnnsys=rundll32.exe "wvvurs.dll",DllRegisterServer
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pwefirogodinir=rundll32.exe "[%WINDOWS%]\kbrel1.dll",Startup
- HKEY_USERS\S-1-5-21-1960408961-583907252-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pwefirogodinir=rundll32.exe "[%WINDOWS%]\kbrel1.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineay32.rom,ouyYHUdBcM
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jjayevu=rundll32.exe "[%WINDOWS%]\ugurerew.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pcevojotohunica=rundll32.exe "[%WINDOWS%]\ihenaroh.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhjn32.rom,GMFbasAssIK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winurk32.rom,KHbXRhdGxJ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMf3151433=Rundll32.exe "[%SYSTEM%]\tajukoke.dll",a
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, foyohomedu=Rundll32.exe "[%SYSTEM%]\buyakipu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winytj32.rom,vwrnmqjDWYGJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qfixejivuluyetof=rundll32.exe "[%LOCAL_APPDATA%]\afiletun.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qdonazamilabef=rundll32.exe "[%LOCAL_APPDATA%]\sLNlert.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hnewejigulukaceg=rundll32.exe "[%LOCAL_APPDATA%]\monsecar.dll",Startup
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs=[%SYSTEM%]\vodewenu.dll [%SYSTEM%]\hulawira.dll [%SYSTEM%]\fujegifu.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMc3ab442b=Rundll32.exe "[%SYSTEM%]\hulawira.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, c09877b7=rundll32.exe "[%SYSTEM%]\zakupuju.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dapipujeni=Rundll32.exe "[%SYSTEM%]\vegibeya.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rlexifivufepo=rundll32.exe "[%WINDOWS%]\afaxaxeda.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {EA32FB3B-21C9-42cc-B8EF-01A9B28EDB0D}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oqenotehoko=rundll32.exe "[%WINDOWS%]\umafokel.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, safeyiyege=Rundll32.exe "[%SYSTEM%]\yijijutu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhag32.rom,XKYzNWGs
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sviwerutewo=rundll32.exe "[%LOCAL_APPDATA%]\exulicom.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpqf32.rom,ySkkRADshN
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7d3c7fa8-2270-4e6e-8758-87f33b8b3721}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrmj32.rom,MKCMHEDkDpt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winggf32.rom,JVCBlB
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrjr32.rom,bhQkUpFsn
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwts32.rom,apAYrqi
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wxiwuxujabow=rundll32.exe "[%LOCAL_APPDATA%]\imayuqiyukeb.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrzy32.rom,SDoLdVUFDCIw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Opipatuzar=rundll32.exe "[%WINDOWS%]\umogeyajo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxmn32.rom,KaANMtilBPov
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqhx32.rom,xQfpbgTnBz
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ayulekum=rundll32.exe "[%WINDOWS%]\ulovudam.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwrv32.rom,eGVzgEW
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cgeretoguma=rundll32.exe "[%LOCAL_APPDATA%]\ovexumugeyajofo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qnuyumafu=rundll32.exe "[%LOCAL_APPDATA%]\nsk4010.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winaco32.rom,QgEzWkRDE
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windho32.rom,qvTztZeg
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xtetavonax=rundll32.exe "[%WINDOWS%]\ucosasiyuw.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Clahovanilecolay=rundll32.exe "[%WINDOWS%]\ovufivuta.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, CPM3d163a20=Rundll32.exe "[%SYSTEM%]\babijuga.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, zisajezame=Rundll32.exe "[%SYSTEM%]\titodopu.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, zisajezame=Rundll32.exe "[%SYSTEM%]\titodopu.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, zisajezame=Rundll32.exe "[%SYSTEM%]\titodopu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rpuletijokil=rundll32.exe "[%WINDOWS%]\odanoqoyejamiyum.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rhizegeq=rundll32.exe "[%WINDOWS%]\avacuvuh.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmal32.rom,ObSZogcwdQNZ
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Krizatodejexijok=rundll32.exe "[%WINDOWS%]\owuqubefovahubi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winopy32.rom,LaawUmzjgj
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Exilani=rundll32.exe "[%LOCAL_APPDATA%]\idiruqaz.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Opipatuzar=rundll32.exe "[%WINDOWS%]\iweholuhuziqizo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wincuv32.rom,EBwXPQZqd
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tsoqabexob=rundll32.exe "[%WINDOWS%]\odijomow.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {77d3a5b4-cfd1-4046-8909-7cd99a68311f}=
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kedatuyita=Rundll32.exe "[%SYSTEM%]\kunuzavi.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqto32.rom,IlMSevApZQ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uzuqeseyomebu=rundll32.exe "[%LOCAL_APPDATA%]\aguzuferosuloro.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, 5842b43c=rundll32.exe "[%SYSTEM%]\hwsjydwy.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tsoqabexob=rundll32.exe "[%WINDOWS%]\odutesuzupijafer.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qyuxavesazuyuf=rundll32.exe "[%WINDOWS%]\ojalujol.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nxisowilojihume=rundll32.exe "[%LOCAL_APPDATA%]\ufomuqujuz.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ajoweget=rundll32.exe "[%LOCAL_APPDATA%]\ozefurizev.dll",Startup
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, miyuyoreyi=Rundll32.exe "[%SYSTEM%]\yimogate.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, miyuyoreyi=Rundll32.exe "[%SYSTEM%]\yimogate.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Emokejejohehuc=rundll32.exe "[%WINDOWS%]\ojoxozuv.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Btesunaviqemejiz=rundll32.exe "[%WINDOWS%]\ohujabowixani.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingaw32.rom,iSMwLJevj
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxru32.rom,afBJspzBA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbab32.rom,kFWeWY
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lziloyaqoxi=rundll32.exe "[%WINDOWS%]\onaxalazahixuso.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nhatupofuyipi=rundll32.exe "[%WINDOWS%]\urogovag.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ftotudi=rundll32.exe "[%WINDOWS%]\ejuzozecahexof.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Osare=rundll32.exe "[%WINDOWS%]\wsrpsc.dll",Startup
- HKEY_USERS\S-1-5-21-117609710-1682526488-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Osare=rundll32.exe "[%WINDOWS%]\wsrpsc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {24daafb8-b7f5-463f-88c1-d497611fc253}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qkakasuxom=rundll32.exe "[%LOCAL_APPDATA%]\inozorijegozu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windho32.rom,zKgVSNS
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsgz32.rom,fWnJaGcLekG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqcc32.rom,ssklBcLjCOH
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wgiqawogepukogi=rundll32.exe "[%LOCAL_APPDATA%]\ucusivolupufaxaw.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winumd32.rom,KqhZRdhej
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winckn32.rom,kyOEbVUNL
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlwq32.rom,mumDNVsG
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbnt32.rom,KndvohdzB
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvuw32.rom,jDobUwjaT
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMd74ea80c=Rundll32.exe "[%SYSTEM%]\jaturale.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BMd74ea80c=Rundll32.exe "[%SYSTEM%]\ivdrgnwt.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, doyiyobajo=Rundll32.exe "[%SYSTEM%]\notewufe.dll",s
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, doyiyobajo=Rundll32.exe "[%SYSTEM%]\notewufe.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, doyiyobajo=Rundll32.exe "[%SYSTEM%]\notewufe.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnkp32.rom,LqMbzKKC
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Iyobukedomi=rundll32.exe "[%LOCAL_APPDATA%]\isuzehobiq.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {19a58582-71cb-42ea-9dda-0960ce5bab37}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winhwn32.rom,iMrMVqaIq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\acayaqogunew.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vketeraxifo=rundll32.exe "[%WINDOWS%]\ajexoqiraceven.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Twelomexekoc=rundll32.exe "[%LOCAL_APPDATA%]\ohaxaquvetidacir.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vloweh=rundll32.exe "[%WINDOWS%]\inuvevukoviker.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winugx32.rom,xDxGEr
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winxtq32.rom,RQWntzPc
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqua32.rom,uhhMhgbw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Eyoruc=rundll32.exe "[%WINDOWS%]\ivaqekojoto.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineii32.rom,qgqFtuHJ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winydu32.rom,SzPIuqk
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jlivatagac=rundll32.exe "[%WINDOWS%]\itiqubub.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmyb32.rom,GUfNRErfV
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cnocayapeva=rundll32.exe "[%LOCAL_APPDATA%]\omiqacolalocup.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tmamoga=rundll32.exe "[%WINDOWS%]\ifeboxeb.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Lrozulenelanavec=rundll32.exe "[%LOCAL_APPDATA%]\uhobepag.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingkc32.rom,JbCsbfBwLK
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, fc1cf215=rundll32.exe "[%SYSTEM%]\kpgoisnn.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Opipatuzar=rundll32.exe "[%WINDOWS%]\ayoluwar.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rlirikepeq=rundll32.exe "[%WINDOWS%]\azijijohapuh.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqua32.rom,YcDLBTa
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbjd32.rom,YLYNoZewHpe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kzajape=rundll32.exe "[%LOCAL_APPDATA%]\olaqomice.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwiz32.rom,fCBuZsv
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjak32.rom,nhUGlkQddTfw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kwujitemekoku=rundll32.exe "[%LOCAL_APPDATA%]\ucanowet.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,QwCNLSOiT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Unecaxel=rundll32.exe "[%LOCAL_APPDATA%]\odogiceyiqam.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windfz32.rom,BnuEMvV
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ikuruxavigam=rundll32.exe "[%WINDOWS%]\ehulejacoyusi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Igedamicunojag=rundll32.exe "[%WINDOWS%]\dpwsjene.dll",Startup
- HKEY_USERS\S-1-5-21-220523388-1078145449-1060284298-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Igedamicunojag=rundll32.exe "[%WINDOWS%]\dpwsjene.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windjg32.rom,PMjsOEKA
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrzy32.rom,aVtrdt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Llahehoriqow=rundll32.exe "[%LOCAL_APPDATA%]\uwaweraxi.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mqoxodexadapeqi=rundll32.exe "[%WINDOWS%]\igasegadavemom.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ihudub=rundll32.exe "[%LOCAL_APPDATA%]\obugofudocaye.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {2aabd0c3-1b64-4de0-ae17-bbbe806197f2}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {099AC52C-1CD4-434C-9CC6-FF56DABB5010}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {99972d1b-964e-49ec-92f4-1eb39f4810a5}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winuiw32.rom,ZABtVsJpwX
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlwq32.rom,vgUgCefT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlhf32.rom,SATouMRUXVet
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windho32.rom,XcMGgZ
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjsf32.rom,XuCLmCNWqQg
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kheffdsys=rundll32.exe "gedcbc.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jkkljhsys=rundll32.exe "gedcbc.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gebbxwaudio=rundll32.exe "[%PROFILE_TEMP%]\ljiiih.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yababasys=rundll32.exe "opmkkk.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khiiggsys=rundll32.exe "gedcbc.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaawtusys=rundll32.exe "opmkkk.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, khiiggsys=rundll32.exe "gedcbc.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yaawtusys=rundll32.exe "opmkkk.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winrdz32.rom,sJTsMFtM
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winycx32.rom,fRvNMuxDU
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vemulenaze=Rundll32.exe "[%SYSTEM%]\viliwesi.dll",s
- HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vemulenaze=Rundll32.exe "[%SYSTEM%]\viliwesi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tqohef=rundll32.exe "[%WINDOWS%]\azujefifinohazoz.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingaw32.rom,QvkkOEVUeUgt
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwsf32.rom,XzYyBGmK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiqd32.rom,PayWeudIT
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fcanab=rundll32.exe "[%LOCAL_APPDATA%]\ufatogolo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winigd32.rom,DmRyhkiWXfjq
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winybl32.rom,mQxtWRsLMtEs
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrrqndrv=rundll32.exe "xxxvur.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, urrrqndrv=rundll32.exe "xxxvur.dll",s
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgfgffsys=rundll32.exe "cbbbcd.dll",DllRegisterServer
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hgfgffsys=rundll32.exe "cbbbcd.dll",DllRegisterServer
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Khuvegigududibo=rundll32.exe "[%LOCAL_APPDATA%]\epihujojulo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Krevajijohapuh=rundll32.exe "[%LOCAL_APPDATA%]\uxusaxov.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Owagadoqenezuduq=rundll32.exe "[%WINDOWS%]\aqulezel.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gdavaxe=rundll32.exe "[%WINDOWS%]\ecahokonipucovot.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wvilojafabiper=rundll32.exe "[%WINDOWS%]\ulehehuc.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tsoqabexob=rundll32.exe "[%WINDOWS%]\aluhurozececisuw.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjfb32.rom,clsvHb
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vobusikik=Rundll32.exe "[%SYSTEM%]\vonuleta.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Exirugerudanes=rundll32.exe "[%WINDOWS%]\ezadotibuxer.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\jkkHWMFw.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yleyefup=rundll32.exe "[%LOCAL_APPDATA%]\idavanuzafa.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jgeleki=rundll32.exe "[%LOCAL_APPDATA%]\avupiban.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fdobiwogi=rundll32.exe "[%LOCAL_APPDATA%]\dipico.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wineez32.rom,bQMHjs
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winiot32.rom,zBCIkhAt
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Pxesax=rundll32.exe "[%WINDOWS%]\ecovinasowo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fquhetunuxafujah=rundll32.exe "[%WINDOWS%]\wklpgqa2.dll",Startup
- HKEY_USERS\S-1-5-21-2562033639-4267664641-1921174942-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fquhetunuxafujah=rundll32.exe "[%WINDOWS%]\wklpgqa2.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winlwq32.rom,SfwlPvHqKfs
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hfuyosita=rundll32.exe "[%WINDOWS%]\ehetihumenesanuz.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yjoko=rundll32.exe "[%WINDOWS%]\uqudajakucuraqil.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winref32.rom,jTABUiCCtK
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Alitefa=rundll32.exe "[%WINDOWS%]\azaxujabowixani.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tkasiyovuzik=rundll32.exe "[%WINDOWS%]\trdiut.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbgo32.rom,iGHHOheOtK
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winvus32.rom,yJOcOfC
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmawubalikoq=rundll32.exe "[%WINDOWS%]\ikijogux.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winwvv32.rom,RSGpzLARh
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {abb68206-5154-47d3-abc5-611c1658aba0}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjef32.rom,GsFqlfvwKE
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ewanolelole=rundll32.exe "[%WINDOWS%]\uxadudib.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winphd32.rom,WcuBXAjWfAd
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hfuyosita=rundll32.exe "[%WINDOWS%]\iyulanahif.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Shequduqiyaloqe=rundll32.exe "[%WINDOWS%]\asikatiyuwaxo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wintfn32.rom,MDcbqWYQEtKI
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {07c7156e-d651-4acc-9ad3-498c916e9651}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {B58C9513-8896-4A6A-9BA8-0FBA3423F821}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpbm32.rom,BMJOfXS
- HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wigumanipo=Rundll32.exe "[%SYSTEM%]\nobiwuna.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winmpa32.rom,XWZMYCJCdcSu
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winddp32.rom,txfpGUP
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F165FD8.exe=[%PROFILE_TEMP%]\_A00F165FD8.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Mbecesebeva=rundll32.exe "[%WINDOWS%]\ixufuyipidu.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpfi32.rom,sTPiHf
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Dwujiyayidad=rundll32.exe "[%WINDOWS%]\enexemex.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {129fa2a1-408c-4824-83a4-5001581fd01e}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {01cd0b31-9154-45f2-9414-f5d64b74eaf6}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingsw32.rom,jkUgXi
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Enekomohuxe=rundll32.exe "[%LOCAL_APPDATA%]\oxuqepijo.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe wingik32.rom,UFnkKpR
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmawubalikoq=rundll32.exe "[%WINDOWS%]\iqimodetakobi.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winemp32.rom,VWPBAVd
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hbikuze=rundll32.exe "[%WINDOWS%]\iwexalaz.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {232d2677-68ee-4fa1-b988-279ebc8969ed}=
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FD955B.exe=[%PROFILE_TEMP%]\_A00FD955B.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F45E34B.exe=[%PROFILE_TEMP%]\_A00F45E34B.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F5817C.exe=[%PROFILE_TEMP%]\_A00F5817C.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F7779FF.exe=[%PROFILE_TEMP%]\_A00F7779FF.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F15A022.exe=[%PROFILE_TEMP%]\_A00F15A022.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F10695A.exe=[%PROFILE_TEMP%]\_A00F10695A.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F503B1.exe=[%PROFILE_TEMP%]\_A00F503B1.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F7D4824.exe=[%PROFILE_TEMP%]\_A00F7D4824.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F70C90.exe=[%PROFILE_TEMP%]\_A00F70C90.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F5F8BF.exe=[%PROFILE_TEMP%]\_A00F5F8BF.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC1429.exe=[%PROFILE_TEMP%]\_A00FC1429.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC2744.exe=[%PROFILE_TEMP%]\_A00FC2744.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F2FACD5.exe=[%PROFILE_TEMP%]\_A00F2FACD5.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F9DC1B.exe=[%PROFILE_TEMP%]\_A00F9DC1B.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1E33FE.exe=[%PROFILE_TEMP%]\_A00F1E33FE.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F39404.exe=[%PROFILE_TEMP%]\_A00F39404.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FCD02BA.exe=[%PROFILE_TEMP%]\_A00FCD02BA.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F4AFF18.exe=[%PROFILE_TEMP%]\_A00F4AFF18.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F8678C.exe=[%PROFILE_TEMP%]\_A00F8678C.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F27F975.exe=[%PROFILE_TEMP%]\_A00F27F975.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F119DE3.exe=[%PROFILE_TEMP%]\_A00F119DE3.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F61BA8.exe=[%PROFILE_TEMP%]\_A00F61BA8.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F85C80.exe=[%PROFILE_TEMP%]\_A00F85C80.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1A38F2A.exe=[%PROFILE_TEMP%]\_A00F1A38F2A.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F651DB.exe=[%PROFILE_TEMP%]\_A00F651DB.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6B96F.exe=[%PROFILE_TEMP%]\_A00F6B96F.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F12966C.exe=[%PROFILE_TEMP%]\_A00F12966C.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FBA497.exe=[%PROFILE_TEMP%]\_A00FBA497.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F5AFCF.exe=[%PROFILE_TEMP%]\_A00F5AFCF.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F1E2FD8.exe=[%PROFILE_TEMP%]\_A00F1E2FD8.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FDEBB8.exe=[%PROFILE_TEMP%]\_A00FDEBB8.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6131D.exe=[%PROFILE_TEMP%]\_A00F6131D.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC11F7.exe=[%PROFILE_TEMP%]\_A00FC11F7.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F296A5B.exe=[%PROFILE_TEMP%]\_A00F296A5B.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6E6E8.exe=[%PROFILE_TEMP%]\_A00F6E6E8.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F19BF00.exe=[%PROFILE_TEMP%]\_A00F19BF00.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F75A33.exe=[%PROFILE_TEMP%]\_A00F75A33.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F91EB87.exe=[%PROFILE_TEMP%]\_A00F91EB87.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6D65D.exe=[%PROFILE_TEMP%]\_A00F6D65D.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FB941C.exe=[%PROFILE_TEMP%]\_A00FB941C.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F27A114.exe=[%PROFILE_TEMP%]\_A00F27A114.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6C2A6.exe=[%PROFILE_TEMP%]\_A00F6C2A6.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F11F1A0.exe=[%PROFILE_TEMP%]\_A00F11F1A0.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F17AB05.exe=[%PROFILE_TEMP%]\_A00F17AB05.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F107F05.exe=[%PROFILE_TEMP%]\_A00F107F05.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F673AC.exe=[%PROFILE_TEMP%]\_A00F673AC.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F42854.exe=[%PROFILE_TEMP%]\_A00F42854.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F8B60A.exe=[%PROFILE_TEMP%]\_A00F8B60A.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FEE3A5.exe=[%PROFILE_TEMP%]\_A00FEE3A5.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F8ADEC.exe=[%PROFILE_TEMP%]\_A00F8ADEC.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FF3BF6.exe=[%PROFILE_TEMP%]\_A00FF3BF6.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F296682.exe=[%PROFILE_TEMP%]\_A00F296682.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F88F77.exe=[%PROFILE_TEMP%]\_A00F88F77.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F775D9.exe=[%PROFILE_TEMP%]\_A00F775D9.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00FC7072.exe=[%PROFILE_TEMP%]\_A00FC7072.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F5770C.exe=[%PROFILE_TEMP%]\_A00F5770C.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F6F37A.exe=[%PROFILE_TEMP%]\_A00F6F37A.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F27E59F.exe=[%PROFILE_TEMP%]\_A00F27E59F.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F864FC.exe=[%PROFILE_TEMP%]\_A00F864FC.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F626E3.exe=[%PROFILE_TEMP%]\_A00F626E3.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F5AD2F.exe=[%PROFILE_TEMP%]\_A00F5AD2F.exe
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F7564B.exe=[%PROFILE_TEMP%]\_A00F7564B.exe
Scan your system registry for FREE


CURIOLAB S.M.B.A., Amagertorv 15, 2, 1160 Copenhagen K, Denmark, +45.36965533
