![rundll32 exe trojan rundll32 exe trojan](http://www.cybersafety.co.za/wp-content/uploads/2016/09/locky-2.png)
![rundll32 exe trojan rundll32 exe trojan](https://2.bp.blogspot.com/-kgm31F5wWXA/UOzygk7QMlI/AAAAAAAAAcY/W4QnzdLl8fw/s1600/avast-pro-antivirus.png)
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
![rundll32 exe trojan rundll32 exe trojan](https://i182.photobucket.com/albums/x64/lf2robbie/RundPic4.png)
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (If an entry is included in the fixlist, the process will be closed. Internet Explorer Version 11 (Default browser: Chrome)
RUNDLL32 EXE TROJAN WINDOWS 7
Platform: Windows 7 Professional Service Pack 1 (X64) Language: English (United States) Loaded Profiles: Rotita (Available Profiles: Rotita) Running from C:\Users\Rotita\Downloads\Programs Scan result of Farbar Recovery Scan Tool (FRST) (圆4) Version:25-05-2016 01 Even after the Trojan gets quarantined, it appears back after rebooting. Malwarebytes Anti-Malware gives 0 threats. Protection, 10:53 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Started,ĭetection, 10:56 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, IP, 174.137.155.139,, 49596, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 10:56 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 104.154.36.143, 49606, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 10:56 PM, Rotita, ROTITA-PC, Protection, Malware Protection, File, Trojan.Downloader, C:\Users\Rotita\AppData\Local\Temp\, Quarantine, ĭetection, 10:57 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 104.154.36.143, 49647, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 10:57 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 174.137.155.139,, 49771, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 10:57 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 174.137.155.139,, 49772, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 11:07 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 104.154.36.143, 50260, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 11:07 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 174.137.155.139,, 50297, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 11:07 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 104.154.36.143, 50432, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 11:07 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 174.137.155.139,, 50506, Outbound, C:\Windows\System32\rundll32.exe,ĭetection, 11:07 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Domain, 174.137.155.139,, 50507, Outbound, C:\Windows\System32\rundll32.exe, Protection, 10:53 PM, SYSTEM, ROTITA-PC, Protection, Malicious Website Protection, Starting, Been getting Tojan.downloader and website ad outbounds recently.