Top 10 virus alerts
Latest 10 malware files
Testimonials
You guys are freakin' awesome, love the program, love the personalized service, and my pc loves it too :D
Justin S.
Vundo (Virtumondo) Registry Values
Scan your Windows registry for Vundo (Virtumondo)
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dodudogeh={602a741e-1ba8-4b7f-929b-5821b4269c1a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Kqihudiwo=rundll32.exe "[%WINDOWS%]\ihabacaxoza.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kodomimut=Rundll32.exe "[%SYSTEM%]\gekujoni.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {62e6a7ef-e2f6-4e66-8b4e-5fe41c40ffdc}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, futobeyod={62e6a7ef-e2f6-4e66-8b4e-5fe41c40ffdc}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Epefawegumesaw=rundll32.exe "[%WINDOWS%]\usefozujecazuwip.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnawo=rundll32.exe "[%WINDOWS%]\uhedesuv.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bjudukaqibiyov=rundll32.exe "[%WINDOWS%]\uzoxaboko.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tazazatem=Rundll32.exe "[%SYSTEM%]\pedisasa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6863f0ee-12fb-4ade-9996-12403ac37d51}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, rurowules={6863f0ee-12fb-4ade-9996-12403ac37d51}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kavowibabu=Rundll32.exe "fezovezi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zalopiniz=Rundll32.exe "[%SYSTEM%]\tanetezo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {085cc590-9684-4ac3-9447-33384f345885}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wohususej={085cc590-9684-4ac3-9447-33384f345885}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {E4EEFFED-93CD-4CF0-A0F3-50D139121FEE}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {8ea86503-476f-476a-a55a-7225082df3eb}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {be7e4ce1-8cba-44a6-956f-462a667d3286}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rupurovak=Rundll32.exe "[%SYSTEM%]\porevujo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {bad05b46-76fe-4b2d-b04d-2e376ed64410}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lubizotum={bad05b46-76fe-4b2d-b04d-2e376ed64410}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, luvawokam=Rundll32.exe "[%SYSTEM%]\sofigeda.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rxecesuxid=rundll32.exe "[%WINDOWS%]\alokumip.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\juvuselu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ce5d8819-9b5a-41d3-a60e-6afcd2fa521b}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hipivipug={ce5d8819-9b5a-41d3-a60e-6afcd2fa521b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, didizazug=Rundll32.exe "[%SYSTEM%]\yofolufe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b121b839-1bc0-4b0c-80c1-f173c3987752}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vitokopaj={b121b839-1bc0-4b0c-80c1-f173c3987752}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zejojugaz=Rundll32.exe "[%SYSTEM%]\nigokeyo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pozahelah=Rundll32.exe "[%SYSTEM%]\zulahigu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d14ccbfb-3f7d-4cb5-8925-1b2239327593}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zovotafiw={d14ccbfb-3f7d-4cb5-8925-1b2239327593}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winkcz32.rom,IspeQMjducr
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zetuliwud=Rundll32.exe "[%SYSTEM%]\gokehama.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8f29ca1e-9209-4550-993c-6aa9146ecfca}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lesoruwim={8f29ca1e-9209-4550-993c-6aa9146ecfca}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sojujawoh=Rundll32.exe "[%SYSTEM%]\vamegeye.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c8b96d5d-c42c-484e-8acc-c727c8527b38}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gevedozoz={c8b96d5d-c42c-484e-8acc-c727c8527b38}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bugegilis=Rundll32.exe "[%SYSTEM%]\torazovi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fuvujefivu=Rundll32.exe "yolobohi.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {97e84bb5-b74f-46fd-8855-403bba900d9a}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gasebotum={97e84bb5-b74f-46fd-8855-403bba900d9a}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {75b35a0f-59b4-4247-b703-7b3ebe03fbca}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, rajonigod={75b35a0f-59b4-4247-b703-7b3ebe03fbca}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9629550b-1a15-47f6-b006-004887b7b919}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hewolimon={9629550b-1a15-47f6-b006-004887b7b919}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, 8a9f381d=rundll32.exe "[%SYSTEM%]\lbfteals.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, faviwebuv=Rundll32.exe "[%SYSTEM%]\bizijeju.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\geBtQkJy.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cmds=rundll32.exe [%PROFILE_TEMP%]\iifefGwU.dll,c
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cc369b12=rundll32.exe "[%PROFILE_TEMP%]\rginuphv.dll",b
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, cmds=rundll32.exe [%PROFILE_TEMP%]\jkkJcCrr.dll,c
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\toborebu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, boyanakak=Rundll32.exe "[%SYSTEM%]\sovowuyi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {cfdddf55-e734-4f2f-91b6-97cfd89a3de0}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mekimomiz={cfdddf55-e734-4f2f-91b6-97cfd89a3de0}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nipatepaj=Rundll32.exe "[%SYSTEM%]\jatereya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {654d1e97-93d0-48ab-984b-cc34e8028247}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pufijonim={654d1e97-93d0-48ab-984b-cc34e8028247}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nulewezew=Rundll32.exe "[%SYSTEM%]\nukatojo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {83316e8f-483f-4a4c-9c15-8ee5047c6bed}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vejatihob={83316e8f-483f-4a4c-9c15-8ee5047c6bed}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fputecik=rundll32.exe "[%WINDOWS%]\eretigok.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, didizazug=Rundll32.exe "[%SYSTEM%]\rezubeza.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {42feb8ac-03b9-479e-81ba-a43d481d8f4e}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bipupojes={42feb8ac-03b9-479e-81ba-a43d481d8f4e}
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F79F3C9.exe=[%PROFILE_TEMP%]\_A00F79F3C9.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hibesesob=Rundll32.exe "[%SYSTEM%]\yetevato.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jiwiyodov=Rundll32.exe "[%SYSTEM%]\seruyone.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2f030ebf-6b8b-4874-81e2-fb67c5991118}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, munuloruz={2f030ebf-6b8b-4874-81e2-fb67c5991118}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winpdc32.rom,nSgngyW
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM83d86f9f=Rundll32.exe "[%SYSTEM%]\lasofesu.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 80eb5c03=rundll32.exe "[%SYSTEM%]\fatenuva.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run, voditaguj=Rundll32.exe "[%SYSTEM%]\keyutova.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {91717354-624a-4637-8864-2d2fdae76c39}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jatowivib={91717354-624a-4637-8864-2d2fdae76c39}
- HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nukuvahoji=Rundll32.exe "lapomefe.dll",s
- HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nukuvahoji=Rundll32.exe "lapomefe.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winilr32.rom,tbRosDg
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Nfufa=rundll32.exe "[%WINDOWS%]\uwefuqoqiwogijan.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uyixaneyulexahe=rundll32.exe "[%WINDOWS%]\Fdozul.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, talokover=Rundll32.exe "[%SYSTEM%]\zititohu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a54c9588-4e63-402d-9a0d-1842d431758a}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, buhafulot={a54c9588-4e63-402d-9a0d-1842d431758a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, loguyowoz=Rundll32.exe "[%SYSTEM%]\vadawife.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8930887e-0db7-46bd-a9d8-57753da57535}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vadonosog={8930887e-0db7-46bd-a9d8-57753da57535}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, faviwebuv=Rundll32.exe "[%SYSTEM%]\rutihuku.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {fedb80c0-2798-4b27-bb70-7f266bfbd71b}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hopekilod={fedb80c0-2798-4b27-bb70-7f266bfbd71b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Jtowazaq=rundll32.exe "[%WINDOWS%]\exebupic.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sedewagid=Rundll32.exe "[%SYSTEM%]\vuyugije.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {09c72999-5c10-41a3-a524-24661d942003}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {8A61098D-612B-4EF2-943D-64E920684061}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {7f3ea905-de65-4d00-bc1f-ff3a77f8ca30}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {10b5e5c2-8901-4e3c-bf61-ac6e11039292}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {d2376fb3-3d0d-414d-83aa-3ad6ad6b111f}=
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winjes32.rom,hqhmFqWgapW
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumazimif=Rundll32.exe "[%SYSTEM%]\detezada.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {25134772-932d-42a7-8c61-67ffee944045}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hedineteh={25134772-932d-42a7-8c61-67ffee944045}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, koharuvud=Rundll32.exe "[%SYSTEM%]\nebiteda.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Rhifugowizew=rundll32.exe "[%WINDOWS%]\ivipitucigenog.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gusujodip=Rundll32.exe "[%SYSTEM%]\wolohuse.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gusujodip=Rundll32.exe "[%SYSTEM%]\jolemovu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a02dba5a-16dd-4a0b-8a2c-a9852167d659}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gunulisij={a02dba5a-16dd-4a0b-8a2c-a9852167d659}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c86f6bf4-d017-45bf-94a5-035038882058}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dawuyafuk={c86f6bf4-d017-45bf-94a5-035038882058}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gusujodip=Rundll32.exe "[%SYSTEM%]\kusewovi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fofusokima=Rundll32.exe "[%SYSTEM%]\piragobo.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yepinusek=Rundll32.exe "[%SYSTEM%]\saperiho.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Qpavubalikoqatu=rundll32.exe "[%WINDOWS%]\edikelikufev.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, popoyeyeh=Rundll32.exe "[%SYSTEM%]\fesuwugo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0a4d581a-bb7b-4e6b-9620-f00f23a72578}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, soduwakal={0a4d581a-bb7b-4e6b-9620-f00f23a72578}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {cf949617-9aa0-44a2-a625-eecab56cd357}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, defolemey={cf949617-9aa0-44a2-a625-eecab56cd357}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, didizazug=Rundll32.exe "[%SYSTEM%]\gigopero.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b7bc8b6c-1cc5-426e-88ff-053422b6eb3c}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kihedorug={b7bc8b6c-1cc5-426e-88ff-053422b6eb3c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, didizazug=Rundll32.exe "[%SYSTEM%]\doriyubi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ad8f9217-31fd-4644-b96d-a8324d6d0675}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yuheyorit={ad8f9217-31fd-4644-b96d-a8324d6d0675}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, didizazug=Rundll32.exe "[%SYSTEM%]\wobezozu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6eb35ff2-c91d-4727-b3fa-a8b3f48da068}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, goyazifiy={6eb35ff2-c91d-4727-b3fa-a8b3f48da068}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, muzohomeb=Rundll32.exe "[%SYSTEM%]\fosifopu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run, ruhayajij=Rundll32.exe "[%SYSTEM%]\miyowepa.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rejahawen=Rundll32.exe "[%SYSTEM%]\sokoyeji.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Etuyixezib=rundll32.exe "[%WINDOWS%]\odukumipobe.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gotinowef=Rundll32.exe "[%SYSTEM%]\worajiju.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9848afdd-87e0-4f33-80e0-b8c4ddcbc024}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, buvibafey={9848afdd-87e0-4f33-80e0-b8c4ddcbc024}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pebivozod=Rundll32.exe "[%SYSTEM%]\juwefisi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e677953a-440d-4b78-aa79-7cb026cf6f82}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, morazobuf={e677953a-440d-4b78-aa79-7cb026cf6f82}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gosunowip=Rundll32.exe "[%SYSTEM%]\fidezeta.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, henewonara=Rundll32.exe "rulisofo.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {844a66c8-bee0-4be1-b1ad-b22feb9c54ab}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yilabaviy={844a66c8-bee0-4be1-b1ad-b22feb9c54ab}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Vramosexasuxomo=rundll32.exe "[%WINDOWS%]\elufatah.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Elesixor=rundll32.exe "[%WINDOWS%]\uwiruwokuqis.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wududamam=Rundll32.exe "[%SYSTEM%]\rilalelu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ef81fb80-dd53-4a84-98e6-1d4930317a39}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sulekoziw={ef81fb80-dd53-4a84-98e6-1d4930317a39}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, miramobum=Rundll32.exe "[%SYSTEM%]\zomumuzo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f17fa9f1-cf81-4c79-81ee-f8702735cf3c}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, lowiwafef={f17fa9f1-cf81-4c79-81ee-f8702735cf3c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tujizafir=Rundll32.exe "[%SYSTEM%]\toyutabo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\jekatuji.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {fe7f6905-7cd1-4d60-b5e5-9f024420ee6f}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, tejiwudek={fe7f6905-7cd1-4d60-b5e5-9f024420ee6f}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f1072ba8-d585-4904-aacb-34224cacb870}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jedemutaz={f1072ba8-d585-4904-aacb-34224cacb870}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hujehapok=Rundll32.exe "[%SYSTEM%]\garizugo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vikudotezi=Rundll32.exe "himepuka.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {96edce64-70a7-4221-85e0-1baf5706a5ca}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mehamedif={96edce64-70a7-4221-85e0-1baf5706a5ca}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fobomumoy=Rundll32.exe "[%SYSTEM%]\vepuhuje.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {32c0bfd6-dbb0-44dc-aa63-2d8df40d22e0}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zudifovuz={32c0bfd6-dbb0-44dc-aa63-2d8df40d22e0}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPMbb67e5ac=Rundll32.exe "[%SYSTEM%]\wiwifezi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, b854d630=rundll32.exe "[%SYSTEM%]\lutovute.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sugidahafi=Rundll32.exe "[%SYSTEM%]\sevikuji.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSServer=rundll32.exe [%PROFILE_TEMP%]\jkkHWNDw.dll,#1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zetuliwud=Rundll32.exe "[%SYSTEM%]\gepesiso.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {010083aa-7dd4-4851-8c73-485fadd7f50c}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vanupisus={010083aa-7dd4-4851-8c73-485fadd7f50c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSServer=rundll32.exe [%SYSTEM%]\ssqRJccA.dll,#1
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, 8a9f381d=rundll32.exe "[%SYSTEM%]\lbfteals.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, talokover=Rundll32.exe "[%SYSTEM%]\jesuvaya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {87c6496d-1b39-4560-80e8-3b17b3f50c32}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hevapiluy={87c6496d-1b39-4560-80e8-3b17b3f50c32}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, loguyowoz=Rundll32.exe "[%SYSTEM%]\jubetufa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2f27b57b-4914-4805-9d10-ed99d4319c03}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wuduyunon={2f27b57b-4914-4805-9d10-ed99d4319c03}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, loguyowoz=Rundll32.exe "[%SYSTEM%]\tasasifu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {aeedd015-8e66-4a85-9b79-5036f0d74fe5}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, limejariz={aeedd015-8e66-4a85-9b79-5036f0d74fe5}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, belekugin=Rundll32.exe "[%SYSTEM%]\kakinahu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a37c2626-ab4b-43e9-976c-06ef3977fada}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zobefefin={a37c2626-ab4b-43e9-976c-06ef3977fada}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, faviwebuv=Rundll32.exe "[%SYSTEM%]\nihujoti.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f68ea981-9bd2-4733-8e73-cbf46bab2f2b}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vejiyeder={f68ea981-9bd2-4733-8e73-cbf46bab2f2b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Cqibomubaraxo=rundll32.exe "[%WINDOWS%]\imoherid.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nidegipad=Rundll32.exe "[%SYSTEM%]\yokagumo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nidegipad=Rundll32.exe "[%SYSTEM%]\bidiyije.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c1f0000c-b27b-4f74-a745-6d104ed8f84f}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sizinozed={c1f0000c-b27b-4f74-a745-6d104ed8f84f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Thakawopikebegu=rundll32.exe "[%WINDOWS%]\ofipuhid.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, riyobinog=Rundll32.exe "[%SYSTEM%]\vidasasa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5b76ae0a-16a2-4d0b-a6e5-7d0d67d21a39}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wilonevel={5b76ae0a-16a2-4d0b-a6e5-7d0d67d21a39}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kodomimut=Rundll32.exe "[%SYSTEM%]\lokeramo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dqnjoh=RUNDLL32.EXE [%SYSTEM%]\mszaenvv.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {8e1bfc0e-8ad2-424d-ac8a-06038481516e}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {ee5a1465-1e73-4784-8f63-45983fdf0db8}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {1c1dd717-53b2-485e-a17b-c9977c205e10}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, iinjug=RUNDLL32.EXE [%SYSTEM%]\msilojzb.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vposgb=RUNDLL32.EXE [%SYSTEM%]\msnhoqog.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pasunuzun=Rundll32.exe "[%SYSTEM%]\holusifo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, motenozugi=Rundll32.exe "yukijezi.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumazimif=Rundll32.exe "[%SYSTEM%]\warihagi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumazimif=Rundll32.exe "[%SYSTEM%]\suliweya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a4add4be-50a5-4589-842b-6d8a568e283a}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, modifusad={a4add4be-50a5-4589-842b-6d8a568e283a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kumiraled=Rundll32.exe "[%SYSTEM%]\toteduba.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2144e3fa-8ed9-46bf-8c77-c7b2ac9122ee}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, soveyoyey={2144e3fa-8ed9-46bf-8c77-c7b2ac9122ee}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hakejogej=Rundll32.exe "[%SYSTEM%]\guhefawa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {26ef6931-859d-4d95-b45f-66d17edb9e66}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, huveyevat={26ef6931-859d-4d95-b45f-66d17edb9e66}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winbiy32.rom,OXGwDd
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, winosasiz=Rundll32.exe "[%SYSTEM%]\refajako.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6273678f-b986-4f45-917e-18d0c8fca998}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pujipawez={6273678f-b986-4f45-917e-18d0c8fca998}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mezatomoh=Rundll32.exe "[%SYSTEM%]\goyipeme.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a163edb2-5de2-4685-b81a-57d484b51336}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wuyopivuh={a163edb2-5de2-4685-b81a-57d484b51336}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, jelebodib=Rundll32.exe "[%SYSTEM%]\ziweyabu.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bokikevoma=Rundll32.exe "[%COMMON_APPDATA%]\vifobeke\vifobeke.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ylukovom=rundll32.exe "[%WINDOWS%]\ayuroviqohuwu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, eqbnac=RUNDLL32.EXE [%SYSTEM%]\msdhgjpd.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vabiforar=Rundll32.exe "[%SYSTEM%]\mirajehi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d8b20bee-6a36-4af4-a547-0b4c02e89588}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yigesiron={d8b20bee-6a36-4af4-a547-0b4c02e89588}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pividunofo=Rundll32.exe "nunoloje.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fnarubixaxayugu=rundll32.exe "[%WINDOWS%]\emihuwud.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ckubedu=rundll32.exe "[%WINDOWS%]\iyosuwul.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hagufenoko="Rundll32.exe" "vojedayu.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winsqx32.rom,AOLKhybT
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winoye32.rom,KQuBTx
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kimabisod=Rundll32.exe "[%SYSTEM%]\gitabiga.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {207d8a2a-1f98-45dd-b370-b56fa992637a}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jewukukev={207d8a2a-1f98-45dd-b370-b56fa992637a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, noyuyanek=Rundll32.exe "[%SYSTEM%]\zujopuhe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {944d8c24-211b-4864-b0ff-bded0c7b0a39}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, galipulek={944d8c24-211b-4864-b0ff-bded0c7b0a39}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vumezihiy=Rundll32.exe "[%SYSTEM%]\fohuvefa.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vumezihiy=Rundll32.exe "[%SYSTEM%]\kimupabe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a9ef24ac-be43-4ae6-b11a-06a5bd29a1c2}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, matekubam={a9ef24ac-be43-4ae6-b11a-06a5bd29a1c2}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, hohumomode=Rundll32.exe "[%SYSTEM%]\wibudafe.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\fubemija.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8cac9322-3bea-4f45-b291-5328db42e4ac}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mitatefoy={8cac9322-3bea-4f45-b291-5328db42e4ac}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dozoniwab=Rundll32.exe "[%SYSTEM%]\getaviwi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7688fe68-8432-4e36-8d87-e11faec6db2a}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gemuyirar={7688fe68-8432-4e36-8d87-e11faec6db2a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vehegemak=Rundll32.exe "[%SYSTEM%]\domeroha.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, putekigeke=Rundll32.exe "giwasabu.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0c6ad14a-8644-49c2-99b2-bdb9ef65c9c6}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, luliyivaw={0c6ad14a-8644-49c2-99b2-bdb9ef65c9c6}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Uruzeni=rundll32.exe "[%WINDOWS%]\ikulucipih.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xkidatiqefame=rundll32.exe "[%WINDOWS%]\ifitoletuzuhove.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fahawojif=Rundll32.exe "[%SYSTEM%]\yovinumo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yimuviveki=Rundll32.exe "dimuboja.dll",s
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, A00F8A5B7E.exe=[%PROFILE_TEMP%]\_A00F8A5B7E.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fobomumoy=Rundll32.exe "[%SYSTEM%]\ziniguhe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {129b6b2a-e72b-448f-965a-310eb8b1534c}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, meluzibon={129b6b2a-e72b-448f-965a-310eb8b1534c}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fobomumoy=Rundll32.exe "[%SYSTEM%]\pugohawu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {04082227-6f10-4784-bfb9-3f1d3ede97f8}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, darokikor={04082227-6f10-4784-bfb9-3f1d3ede97f8}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zoreketir=Rundll32.exe "[%SYSTEM%]\wibovaha.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c87a41be-1ea8-4c41-a51f-fd4007935357}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, selekenen={c87a41be-1ea8-4c41-a51f-fd4007935357}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rupiretohu=Rundll32.exe "zenemure.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vonunapel=Rundll32.exe "[%SYSTEM%]\bijikoko.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Llibeh=rundll32.exe "[%WINDOWS%]\isupehuk.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, firolavuw=Rundll32.exe "[%SYSTEM%]\tadenawa.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {06b84e0d-6a8c-4c09-996c-9548c52f37cf}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, nukajugeg={06b84e0d-6a8c-4c09-996c-9548c52f37cf}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {247579ef-8e9d-4b7c-90f4-db15e024a989}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, faboharet={247579ef-8e9d-4b7c-90f4-db15e024a989}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqto32.rom,ktRHQHMfQw
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe windpy32.rom,IskrqFYMOc
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mivogemim=Rundll32.exe "[%SYSTEM%]\fagotipo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {40b62029-f2ec-4487-ab47-a7595dec1f97}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zewupenof={40b62029-f2ec-4487-ab47-a7595dec1f97}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zetuliwud=Rundll32.exe "[%SYSTEM%]\pukufaje.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f089f56f-be52-4658-a06f-79909b5cb795}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pulerojib={f089f56f-be52-4658-a06f-79909b5cb795}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bomumokiy=Rundll32.exe "[%SYSTEM%]\toyedofi.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winnuj32.rom,EghiYHMP
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fehewurop=Rundll32.exe "[%SYSTEM%]\marujate.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e17af770-6c6c-4fa7-9751-55d36ee4a55b}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vosayobal={e17af770-6c6c-4fa7-9751-55d36ee4a55b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, sonivugay=Rundll32.exe "[%SYSTEM%]\fanudugu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a3a5c468-baee-4be1-9197-11655db65150}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, judujuyum={a3a5c468-baee-4be1-9197-11655db65150}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CPM53475069=Rundll32.exe "[%SYSTEM%]\gudasene.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, 507463f5=rundll32.exe "[%SYSTEM%]\dukizohi.dll",b
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zukijifipo=Rundll32.exe "[%SYSTEM%]\laroriwa.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, talokover=Rundll32.exe "[%SYSTEM%]\nijedavi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {4d495ad4-7816-49cc-97b8-df1aac0c0308}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, wapuyumen={4d495ad4-7816-49cc-97b8-df1aac0c0308}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM8bcd72ac=Rundll32.exe "[%SYSTEM%]\ocvwoxuo.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, faviwebuv=Rundll32.exe "[%SYSTEM%]\sizumeju.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, faviwebuv=Rundll32.exe "[%SYSTEM%]\navifaya.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5b84c511-d8d0-4b61-9804-163634fc8b82}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kusadiguy={5b84c511-d8d0-4b61-9804-163634fc8b82}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winqhs32.rom,VKkzuR
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, imPlayok=[%SYSTEM%]\imPlayok.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kodomimut=Rundll32.exe "[%SYSTEM%]\guvumuso.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {17224161-5b15-4e77-be10-9e02f5bec932}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, guyugilog={17224161-5b15-4e77-be10-9e02f5bec932}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winilr32.rom,LeqeAEqmoSg
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Bnawo=rundll32.exe "[%WINDOWS%]\ejumutokaratiqe.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {a8eeb996-62aa-4e48-995d-eaddcac47476}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {826a5ed9-1316-4efd-87f8-aa400c5d551a}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, BM5f682caa="Rundll32.exe" "[%SYSTEM%]\paxiacke.dll",s
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSSMSGS=rundll32.exe wineru32.rom,busRun
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSServer=rundll32.exe [%PROFILE_TEMP%]\cbxYQIAs.dll,#1
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, cmds=rundll32.exe [%PROFILE_TEMP%]\tuvsTnLF.dll,c
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, rupugemam=Rundll32.exe "[%SYSTEM%]\buvujano.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9c1c42f0-d3c1-4bfe-aad8-b8f4e80d04f0}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hopoyojaf={9c1c42f0-d3c1-4bfe-aad8-b8f4e80d04f0}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kopuvibod=Rundll32.exe "[%SYSTEM%]\mehoheri.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {deff652f-8517-4178-ab31-3e154116041b}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, pilesewes={deff652f-8517-4178-ab31-3e154116041b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mitopariv=Rundll32.exe "[%SYSTEM%]\notijiku.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winack32.rom,mdnIbhmaGZS
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumazimif=Rundll32.exe "[%SYSTEM%]\gijareso.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b68a9dfd-780f-4fec-9339-8f1f51de19ca}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zolarodad={b68a9dfd-780f-4fec-9339-8f1f51de19ca}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c49415d0-835c-4879-aaca-c176b3a5a33f}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, galibejoh={c49415d0-835c-4879-aaca-c176b3a5a33f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mawomipad=Rundll32.exe "[%SYSTEM%]\rutihuku.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {cf0a91b7-1a54-4031-8831-93158bc90426}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fuhemepil={cf0a91b7-1a54-4031-8831-93158bc90426}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winllf32.rom,zQXualuQRWYl
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, belekugin=Rundll32.exe "[%SYSTEM%]\jarizasu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {e3451525-3cda-470f-9d9e-69568abd9e14}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sifunanim={e3451525-3cda-470f-9d9e-69568abd9e14}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a12493d5-2177-4b3e-a3bc-cbf0861143e7}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fidalorey={a12493d5-2177-4b3e-a3bc-cbf0861143e7}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {789601fe-233f-497b-b19d-7bf6be0ba5a4}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fohezajeh={789601fe-233f-497b-b19d-7bf6be0ba5a4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, belekugin=Rundll32.exe "[%SYSTEM%]\sapayuse.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vabiforar=Rundll32.exe "[%SYSTEM%]\nirotona.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {469c31a7-f9b6-4128-b73a-144b4e6dd3aa}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vazukujar={469c31a7-f9b6-4128-b73a-144b4e6dd3aa}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mitopariv=Rundll32.exe "[%SYSTEM%]\mitafawu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yokidesida=Rundll32.exe "zifubogu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vuhigatup=Rundll32.exe "[%SYSTEM%]\pihimage.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {57155f33-cccd-4795-a539-5238b8c1007b}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, nafukesap={57155f33-cccd-4795-a539-5238b8c1007b}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vofilubik=Rundll32.exe "[%SYSTEM%]\yeyozoda.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {9044f472-cacc-44d4-95fd-70d2abe154bd}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dupolizug={9044f472-cacc-44d4-95fd-70d2abe154bd}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\rijoyoje.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1837b23b-237f-45c2-9b6b-dffaecb6d23f}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bayuduwes={1837b23b-237f-45c2-9b6b-dffaecb6d23f}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zezuyewoh=Rundll32.exe "[%SYSTEM%]\mekohige.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c558b532-318d-4652-84fe-928cdfe06167}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vabuyukop={c558b532-318d-4652-84fe-928cdfe06167}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fobomumoy=Rundll32.exe "[%SYSTEM%]\kaleguli.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6ad05be0-d5c3-422a-a609-117104ceae26}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, rapesobol={6ad05be0-d5c3-422a-a609-117104ceae26}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Hyiqoqetu=rundll32.exe "[%WINDOWS%]\ituvaqegayux.dll",Startup
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {b595911d-7121-4a89-b799-3494d8b42f9a}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jifojusid={b595911d-7121-4a89-b799-3494d8b42f9a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, liranejuz=Rundll32.exe "[%SYSTEM%]\gotizihu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0a38d210-3f3f-44d8-ab84-78ab46e29f04}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hegekovaj={0a38d210-3f3f-44d8-ab84-78ab46e29f04}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yoyahomug=Rundll32.exe "[%SYSTEM%]\davagadu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vuhigatup=Rundll32.exe "[%SYSTEM%]\nivunaso.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wapafewuw=Rundll32.exe "[%SYSTEM%]\duhifiho.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c1d125c4-f663-4231-99ba-e94c48c056d1}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, hijawoheg={c1d125c4-f663-4231-99ba-e94c48c056d1}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, raviwihet=Rundll32.exe "[%SYSTEM%]\sivitidu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {5cb27834-2671-41a2-9e46-47e88f10c225}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mukupeseg={5cb27834-2671-41a2-9e46-47e88f10c225}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gevurakan=Rundll32.exe "[%SYSTEM%]\wadavuro.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, bumawisem=Rundll32.exe "[%SYSTEM%]\wigimogo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fiyifuhiy=Rundll32.exe "[%SYSTEM%]\vidajadu.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, katoropuk=Rundll32.exe "[%SYSTEM%]\zewewegi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {fab4d47d-b435-4baa-b9ec-cbe7d7052f13}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fesipukul={fab4d47d-b435-4baa-b9ec-cbe7d7052f13}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gxwiyi=RUNDLL32.EXE [%SYSTEM%]\msnjkwfb.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qlbazf=RUNDLL32.EXE [%SYSTEM%]\mspyebhv.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zubzed=RUNDLL32.EXE [%SYSTEM%]\msduhvua.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ucbhis=RUNDLL32.EXE [%SYSTEM%]\msdnomki.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wakariwas=Rundll32.exe "[%SYSTEM%]\pewekasi.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, yogoyasuso=Rundll32.exe "jalopeya.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8e163c05-eadc-40c8-b5ab-3e97a93f23e4}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jibanihiy={8e163c05-eadc-40c8-b5ab-3e97a93f23e4}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tozaradek=Rundll32.exe "[%SYSTEM%]\vuvimama.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6a3995ed-66b9-4a0b-adbc-c3f2942c6e12}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, nitahiboh={6a3995ed-66b9-4a0b-adbc-c3f2942c6e12}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yjiceq=rundll32.exe "[%WINDOWS%]\exoxaheqimezocij.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ponisapog=Rundll32.exe "[%SYSTEM%]\meseleru.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Tgamibikixezi=rundll32.exe "[%WINDOWS%]\elemecusura.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lumazimif=Rundll32.exe "[%SYSTEM%]\gegupota.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {415d8145-6d05-4379-8d84-13ab43b59b72}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, zuhanehiv={415d8145-6d05-4379-8d84-13ab43b59b72}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Gyunelapelepi=rundll32.exe "[%WINDOWS%]\odoneqehexopaken.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lulikeven=Rundll32.exe "[%SYSTEM%]\pepimude.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0283e2e4-e37b-48d0-a105-c98486340325}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kovozavop={0283e2e4-e37b-48d0-a105-c98486340325}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {d56601f3-fb7b-48f8-a17a-34ac23095605}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, poluwowaw={d56601f3-fb7b-48f8-a17a-34ac23095605}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, nejujatal=Rundll32.exe "[%SYSTEM%]\nesujofe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {8f8778a9-75b1-4d04-a720-158b37649162}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yuweravas={8f8778a9-75b1-4d04-a720-158b37649162}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, zetuliwud=Rundll32.exe "[%SYSTEM%]\biruwuta.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {1b0223b0-a853-472e-86d5-f28693b534e2}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, mekeyebey={1b0223b0-a853-472e-86d5-f28693b534e2}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wohovuvuf=Rundll32.exe "[%SYSTEM%]\safevayi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {eab4202f-99a1-4a3c-a57f-8e1403e47d28}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gazategiz={eab4202f-99a1-4a3c-a57f-8e1403e47d28}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Wwaniz=rundll32.exe "[%WINDOWS%]\amilamut.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gaputayaw=Rundll32.exe "[%SYSTEM%]\gosukuma.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gaputayaw=Rundll32.exe "[%SYSTEM%]\mehoheri.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSMSGS=rundll32.exe winfpw32.rom,STBXJtPQHw
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fehabesit=Rundll32.exe "[%COMMON_APPDATA%]\ramuzovi\ramuzovi.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, fehabesit=Rundll32.exe "[%COMMON_APPDATA%]\ramuzovi\ramuzovi.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, dumasajugu=Rundll32.exe "[%COMMON_APPDATA%]\fedoniko\fedoniko.dll",s
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {ca5730aa-4ca6-45be-953e-b789070192d1}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vokorowoz={ca5730aa-4ca6-45be-953e-b789070192d1}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tomokujep=Rundll32.exe "[%SYSTEM%]\tusumafo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {a2ab1700-ee83-46e6-b5d8-21c95ea4d458}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, johayanuk={a2ab1700-ee83-46e6-b5d8-21c95ea4d458}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, mumamejoj=Rundll32.exe "[%SYSTEM%]\tisisiga.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {831953db-00bc-4894-ba50-72133c77a250}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, giwosegob={831953db-00bc-4894-ba50-72133c77a250}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, geyikutob=Rundll32.exe "[%SYSTEM%]\gaweyego.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {0f38d1bc-b933-45be-9831-ef6774e5dcf6}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, silipidof={0f38d1bc-b933-45be-9831-ef6774e5dcf6}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wupadasuh=Rundll32.exe "[%SYSTEM%]\fufugose.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {dbdb2f3f-3e52-4114-a63e-d749b66fd5c3}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yesigilay={dbdb2f3f-3e52-4114-a63e-d749b66fd5c3}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vuyuvibog=Rundll32.exe "[%COMMON_APPDATA%]\jadikure\jadikure.dll",a
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, misamikafi=Rundll32.exe "[%COMMON_APPDATA%]\molugivu\molugivu.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pufufijev=Rundll32.exe "[%SYSTEM%]\hesanebo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {c4a59271-a93a-4d52-8d95-3bc246959c22}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yovolulaz={c4a59271-a93a-4d52-8d95-3bc246959c22}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, kezejofef=Rundll32.exe "[%SYSTEM%]\domeroha.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {00d5dbba-2485-43dc-b79c-6ce941fd2251}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bodohinaj={00d5dbba-2485-43dc-b79c-6ce941fd2251}
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, patavavela=Rundll32.exe "vahoremo.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fkakoril=rundll32.exe "[%WINDOWS%]\ugidehibewava.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks, {00DBDAC8-4691-4797-8E6A-7C6AB89BC441}=
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, qquaqe=RUNDLL32.EXE [%SYSTEM%]\msjgjzcu.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pgrbbb=RUNDLL32.EXE [%SYSTEM%]\msbkbnlu.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, blofii=RUNDLL32.EXE [%SYSTEM%]\mspqbqaj.dll,w
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, liruderew=Rundll32.exe "[%SYSTEM%]\vujapede.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, gujariketi=Rundll32.exe "jopopaya.dll",s
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, busopivin=Rundll32.exe "[%SYSTEM%]\gakigedo.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, vabiforar=Rundll32.exe "[%SYSTEM%]\kimupabe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {fa9c349a-37e1-4100-b7a2-95af68d826a6}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, bumikogig={fa9c349a-37e1-4100-b7a2-95af68d826a6}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Fmawubalikoq=rundll32.exe "[%WINDOWS%]\atadowubucudiro.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Oxewigaxelayote=rundll32.exe "[%WINDOWS%]\ucenerokowu.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pomewetiz=Rundll32.exe "[%SYSTEM%]\pegojehe.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {95d84193-0d77-4226-b8b2-3c483c40d71e}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jiyiwoboz={95d84193-0d77-4226-b8b2-3c483c40d71e}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ponisapog=Rundll32.exe "[%SYSTEM%]\fewohite.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ponisapog=Rundll32.exe "[%SYSTEM%]\polelure.dll",a
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, ponisapog=Rundll32.exe "[%SYSTEM%]\vovugesi.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {6d11797b-ebc7-4fa6-a729-6de2a81d7799}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, feboyezas={6d11797b-ebc7-4fa6-a729-6de2a81d7799}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {26ee1faa-c9d6-4b53-890a-2104015000af}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jedeloris={26ee1faa-c9d6-4b53-890a-2104015000af}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7cd8fa14-8537-4c19-a8eb-46831ed774ef}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, jagohalaf={7cd8fa14-8537-4c19-a8eb-46831ed774ef}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {f4bd12c2-b5c5-44c2-8a0f-e22bb8caa1e7}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dapibesid={f4bd12c2-b5c5-44c2-8a0f-e22bb8caa1e7}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {46becd1e-a31e-40de-9797-6beeaf057bd3}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, vofaribay={46becd1e-a31e-40de-9797-6beeaf057bd3}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {78a09cd4-ad0e-414b-afce-24b68a08a49d}=mujuzedij
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, yesohijef={78a09cd4-ad0e-414b-afce-24b68a08a49d}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {67091984-bb7e-4205-84eb-72b0c36e4f22}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, fileliheg={67091984-bb7e-4205-84eb-72b0c36e4f22}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {509db381-5055-4ef6-ab96-f72b412f8218}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, kanesawaz={509db381-5055-4ef6-ab96-f72b412f8218}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {2d27c8b1-5fb5-42ad-9685-cd74f6cc3d8b}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gozojiyow={2d27c8b1-5fb5-42ad-9685-cd74f6cc3d8b}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {17460ab1-b657-4ac3-8879-cce55a8d305b}=jugezatag
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, dowigohum={17460ab1-b657-4ac3-8879-cce55a8d305b}
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {7756b6c0-4812-4ef5-9400-79c875902fcc}=gahurihor
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, gijodepol={7756b6c0-4812-4ef5-9400-79c875902fcc}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, lufosijey=Rundll32.exe "[%SYSTEM%]\juvuselu.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {baa9bda8-181b-4805-b8af-93a39bf0b25a}=tokatiluy
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, garijiwuh={baa9bda8-181b-4805-b8af-93a39bf0b25a}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Ldosowilojihu=rundll32.exe "[%WINDOWS%]\itobumer.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Okunabamomi=rundll32.exe "[%WINDOWS%]\Ikigey.dll",e
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Xnadihepayu=rundll32.exe "[%WINDOWS%]\ifezinufeworitul.dll",Startup
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, pufufijev=Rundll32.exe "[%SYSTEM%]\dalusulo.dll",a
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler, {450a53c7-2996-4e81-8474-a902c0c9a6fa}=kupuhivus
- HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad, sunisodus={450a53c7-2996-4e81-8474-a902c0c9a6fa}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Yketi=rundll32.exe "[%WINDOWS%]\opayetof.dll",Startup
- HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run-, MSSMSGS=rundll32.exe winvtn32.rom,cwobAlSC
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, wupisajiv=Rundll32.exe "[%SYSTEM%]\lavupiho.dll",a
Scan your system registry for FREE

Comments

