Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Name Interface Propagation Debugger' = 'C:\jfvjblovxmivox\pefamgofgqm.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Framework Color Agent Logs] 'ImagePath' = 'C:\jfvjblovxmivox\pefamgofgqm.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Framework Color Agent Logs] 'Start' = '00000002'
- 'C:\jfvjblovxmivox\hnoqnbmwowe.exe' "c:\jfvjblovxmivox\pefamgofgqm.exe"
- 'C:\jfvjblovxmivox\pefamgofgqm.exe'
- 'C:\jfvjblovxmivox\e9bl3g3vjsnqbzclylx1.exe'
- C:\jfvjblovxmivox\pefamgofgqm.exe
- C:\jfvjblovxmivox\hnoqnbmwowe.exe
- C:\jfvjblovxmivox\isfkthve
- %WINDIR%\jfvjblovxmivox\whdld3tsmjs
- C:\jfvjblovxmivox\whdld3tsmjs
- C:\jfvjblovxmivox\e9bl3g3vjsnqbzclylx1.exe
- C:\jfvjblovxmivox\hnoqnbmwowe.exe
- C:\jfvjblovxmivox\pefamgofgqm.exe
- C:\jfvjblovxmivox\e9bl3g3vjsnqbzclylx1.exe
- %WINDIR%\jfvjblovxmivox\whdld3tsmjs
- %WINDIR%\jfvjblovxmivox\whdld3tsmjs
- '81.##7.50.99':52074
- '87.##.38.225':33631
- '10#.#4.136.243':42581
- '18#.#38.249.34':37331
- '5.##.19.242':27426
- '86.##5.10.227':45279
- '12#.#60.112.138':27440
- '41.##8.41.238':29356
- '98.##.223.221':20922
- '70.##2.38.96':41500
- '62.##1.108.194':20068
- ClassName: 'Shell_TrayWnd' WindowName: ''