Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{YS78P12D-PA2C-45YS-SW12-WUDZ24FPO90Z}] 'StubPath' = '<SYSTEM32>\gldrv.exe'
- %WINDIR%\svchost.exe
- <SYSTEM32>\gldrv.exe
- <SYSTEM32>\gldrv.exe
- <SYSTEM32>sbrnd.txt
- %WINDIR%\svchost.exe
- <SYSTEM32>\gldrv.exe
- %WINDIR%\svchost.exe
- 'yo#####dle.no-ip.com':2176
- DNS ASK Yo#####dle.No-Ip.Com
- ClassName: 'Shell_TrayWnd' WindowName: ''