Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'User Peer Scheduler AutoConfig Experience' = 'C:\aoshjaenc\kglavanan.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Key Player Image Print Endpoint] 'ImagePath' = 'C:\aoshjaenc\kglavanan.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Key Player Image Print Endpoint] 'Start' = '00000002'
- 'C:\aoshjaenc\rpjypvevf.exe' "c:\aoshjaenc\kglavanan.exe"
- 'C:\aoshjaenc\kglavanan.exe'
- 'C:\aoshjaenc\ka2fvmwhyrxqvklnou4.exe'
- C:\aoshjaenc\kglavanan.exe
- C:\aoshjaenc\rpjypvevf.exe
- C:\aoshjaenc\uzpqne3o7h
- %WINDIR%\aoshjaenc\h2hlgy7l7jhw
- C:\aoshjaenc\h2hlgy7l7jhw
- C:\aoshjaenc\ka2fvmwhyrxqvklnou4.exe
- C:\aoshjaenc\rpjypvevf.exe
- C:\aoshjaenc\kglavanan.exe
- C:\aoshjaenc\ka2fvmwhyrxqvklnou4.exe
- %WINDIR%\aoshjaenc\h2hlgy7l7jhw
- %WINDIR%\aoshjaenc\h2hlgy7l7jhw
- '94.##1.114.138':44254
- '74.#5.64.25':22739
- '61.##6.2.217':25840
- '2.##.19.50':35833
- '18#.#39.139.100':37599
- '95.##8.241.220':49038
- '20#.#36.131.186':52293
- '87.##.38.225':33631
- '95.##.58.101':23245
- ClassName: 'Shell_TrayWnd' WindowName: ''