Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Resolution Certificate Time DLL Enumerator SSDP' = 'C:\yarbdyehhytzr\fyzvuodpl.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Location Group IPsec Protocol TPM] 'ImagePath' = 'C:\yarbdyehhytzr\fyzvuodpl.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Location Group IPsec Protocol TPM] 'Start' = '00000002'
- 'C:\yarbdyehhytzr\idsmhwgl.exe' "c:\yarbdyehhytzr\fyzvuodpl.exe"
- 'C:\yarbdyehhytzr\fyzvuodpl.exe'
- 'C:\yarbdyehhytzr\gte33bdhodvrko1rk.exe'
- C:\yarbdyehhytzr\fyzvuodpl.exe
- C:\yarbdyehhytzr\idsmhwgl.exe
- C:\yarbdyehhytzr\mbpqyzpeso
- %WINDIR%\yarbdyehhytzr\lhqyzouducx
- C:\yarbdyehhytzr\lhqyzouducx
- C:\yarbdyehhytzr\gte33bdhodvrko1rk.exe
- C:\yarbdyehhytzr\idsmhwgl.exe
- C:\yarbdyehhytzr\fyzvuodpl.exe
- C:\yarbdyehhytzr\gte33bdhodvrko1rk.exe
- %WINDIR%\yarbdyehhytzr\lhqyzouducx
- %WINDIR%\yarbdyehhytzr\lhqyzouducx
- '20#.#36.131.186':52293
- '11#.#42.143.147':31567
- '20#.#93.204.80':37195
- '18#.2.4.92':44843
- '11#.#18.187.28':42065
- '18#.#55.161.27':20052
- '86.##5.219.12':21375
- '95.##7.243.188':49038
- ClassName: 'Shell_TrayWnd' WindowName: ''