Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Interface Experience Human Driver Thread' = '%APPDATA%\ujbotvnwdy\tgdjztswgk.exe'
- '%APPDATA%\ujbotvnwdy\krngykc.exe' "%APPDATA%\ujbotvnwdy\tgdjztswgk.exe"
- '%APPDATA%\ujbotvnwdy\tgdjztswgk.exe'
- %APPDATA%\ujbotvnwdy\tgdjztswgk.heqe
- %APPDATA%\ujbotvnwdy\krngykc.exe
- %APPDATA%\ujbotvnwdy\tgdjztswgk.exe
- %APPDATA%\ujbotvnwdy\tgdjztswgk.exe
- 'co####eshoulder.net':80
- 'ch####houlder.net':80
- 'co####efinger.net':80
- 'ch###finger.net':80
- 'co####euntil.net':80
- 'ch###until.net':80
- 'co####eabove.net':80
- 'ch###above.net':80
- co####eshoulder.net/index.php?em#####################################
- ch####houlder.net/index.php?em#####################################
- co####efinger.net/index.php?em#####################################
- ch###finger.net/index.php?em#####################################
- co####euntil.net/index.php?em#####################################
- ch###until.net/index.php?em#####################################
- co####eabove.net/index.php?em#####################################
- ch###above.net/index.php?em#####################################
- DNS ASK co####eshoulder.net
- DNS ASK ch####houlder.net
- DNS ASK co####efinger.net
- DNS ASK ch###finger.net
- DNS ASK co####euntil.net
- DNS ASK ch###until.net
- DNS ASK co####eabove.net
- DNS ASK ch###above.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''