Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Helper Font Networking Registry' = 'C:\cddggffw\uikggkty.exe'
- 'C:\cddggffw\djnbcfm.exe' "c:\cddggffw\uikggkty.exe"
- 'C:\cddggffw\uikggkty.exe'
- 'C:\cddggffw\imsot2urnliiokwdnma.exe'
- C:\cddggffw\uikggkty.exe
- C:\cddggffw\djnbcfm.exe
- C:\cddggffw\ovpbxapl9ib
- %WINDIR%\cddggffw\rxvfqersb
- C:\cddggffw\rxvfqersb
- C:\cddggffw\imsot2urnliiokwdnma.exe
- C:\cddggffw\djnbcfm.exe
- C:\cddggffw\uikggkty.exe
- C:\cddggffw\imsot2urnliiokwdnma.exe
- %WINDIR%\cddggffw\rxvfqersb
- %WINDIR%\cddggffw\rxvfqersb
- '78.##5.171.93':23699
- '21#.#65.0.136':35711
- '79.##7.196.121':45688
- '20#.#36.131.186':52293
- '84.##8.128.25':27132
- '72.##1.207.62':22399
- ClassName: 'Shell_TrayWnd' WindowName: ''