indicatorregistry_key
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\rutsdll32
- First seen
- 2026-05-13
- Last seen
- 2026-05-14
- Sightings
- 1
Posts referencing this indicator
- Major Cyber Attacks in March 2026: OAuth Phishing, SVG Smuggling, Magecart, and More
Registry key used by RUTSSTAGER to store its hidden DLL payload in hexadecimal format.