Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Identity Debugger Copy Log DLL Alerts' = 'C:\yndijmxtwudwn\hxturrxeo.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Health Media Extensible Information] 'ImagePath' = 'C:\yndijmxtwudwn\hxturrxeo.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Health Media Extensible Information] 'Start' = '00000002'
- 'C:\yndijmxtwudwn\pcswkdlzhdsa.exe' "c:\yndijmxtwudwn\hxturrxeo.exe"
- 'C:\yndijmxtwudwn\hxturrxeo.exe'
- 'C:\yndijmxtwudwn\eid2ou4hx6y2vzonfwuz.exe'
- C:\yndijmxtwudwn\hxturrxeo.exe
- C:\yndijmxtwudwn\pcswkdlzhdsa.exe
- C:\yndijmxtwudwn\jebdzi0xns0q
- %WINDIR%\yndijmxtwudwn\flcde3trnq
- C:\yndijmxtwudwn\flcde3trnq
- C:\yndijmxtwudwn\eid2ou4hx6y2vzonfwuz.exe
- C:\yndijmxtwudwn\pcswkdlzhdsa.exe
- C:\yndijmxtwudwn\hxturrxeo.exe
- C:\yndijmxtwudwn\eid2ou4hx6y2vzonfwuz.exe
- %WINDIR%\yndijmxtwudwn\flcde3trnq
- %WINDIR%\yndijmxtwudwn\flcde3trnq
- '98.##.239.20':20922
- '20#.#36.131.186':52293
- '41.##8.41.238':29356
- '74.#5.64.25':22739
- '61.##6.2.217':25840
- '94.##1.114.138':44254
- '19#.#47.86.10':25432
- '78.##5.171.93':23699
- ClassName: 'Shell_TrayWnd' WindowName: ''