Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '3d187956-cdb3-457a-ac23-74901add7d5f' = '%APPDATA%\beagb\beagb.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '3d187956-cdb3-457a-ac23-74901add7d5f' = '%APPDATA%\beagb\beagb.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1806' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1806' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Associations] 'LowRiskFileTypes' = '.exe;.bat;.reg;.vbs;'
- %APPDATA%\beagb\beagb.exe
- '67#########778101892eb77249db32e.com':80
- '11#########7fbea1ab8f9aa7a107648.com':80
- http://67#########778101892eb77249db32e.com/
- http://11#########7fbea1ab8f9aa7a107648.com/images/logo/header.php
- DNS ASK 67#########778101892eb77249db32e.com
- DNS ASK 11#########7fbea1ab8f9aa7a107648.com
- ClassName: 'Indicator' WindowName: ''