Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Framework SPP DLL Services IP Publication' = 'C:\whrqjmdsciergrb\mfotjvgincei.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Offline Parental Network Upgrade Interface] 'ImagePath' = 'C:\whrqjmdsciergrb\mfotjvgincei.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Offline Parental Network Upgrade Interface] 'Start' = '00000002'
- 'C:\whrqjmdsciergrb\ucgdvru.exe' "c:\whrqjmdsciergrb\mfotjvgincei.exe"
- 'C:\whrqjmdsciergrb\mfotjvgincei.exe'
- 'C:\whrqjmdsciergrb\frqe52weomqamzkv13.exe'
- C:\whrqjmdsciergrb\mfotjvgincei.exe
- C:\whrqjmdsciergrb\ucgdvru.exe
- C:\whrqjmdsciergrb\vex12kqivy
- %WINDIR%\whrqjmdsciergrb\psutlk
- C:\whrqjmdsciergrb\psutlk
- C:\whrqjmdsciergrb\frqe52weomqamzkv13.exe
- C:\whrqjmdsciergrb\ucgdvru.exe
- C:\whrqjmdsciergrb\mfotjvgincei.exe
- C:\whrqjmdsciergrb\frqe52weomqamzkv13.exe
- %WINDIR%\whrqjmdsciergrb\psutlk
- %WINDIR%\whrqjmdsciergrb\psutlk
- '2.##.156.247':35711
- '18#.#39.143.239':37599
- '79.##7.196.121':45688
- '20#.#23.152.97':27682
- '10#.#02.79.27':36272
- '20#.#7.225.58':33073
- '19#.#6.240.249':21875
- '18#.#21.242.79':46084
- ClassName: 'Shell_TrayWnd' WindowName: ''