Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Windows Live Guards' = '%PROGRAM_FILES%\winlogon.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Live Guards' = '%PROGRAM_FILES%\winlogon.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Windows Installer' = '%APPDATA%\Microsoft\Security\svchost.exe'
- %PROGRAM_FILES%\winlogon.exe
- %APPDATA%\google_i1p[s1-2]rh_h.tmp
- %PROGRAM_FILES%\winlogon.exe
- %APPDATA%\Microsoft\Security\svchost.exe
- %PROGRAM_FILES%\winlogon.exe
- '46.#.176.173':6667
- ClassName: '' WindowName: 'BitDefender Firewall Alert'
- ClassName: 'ConsoleWindowClass' WindowName: ''
- ClassName: 'Indicator' WindowName: ''
- ClassName: '' WindowName: 'Windows Security Alert'