Техническая информация
- [<HKLM>\SYSTEM\CONTROLSET003\Services\mgmkjg] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet002\Services\mgmkjg] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\mgmkjg] 'Start' = '00000002'
- %TEMP%\МмМ칤ЧчКТ.exe
- %TEMP%\1.exe
- <SYSTEM32>\svchost.exe -k mgmkjg
- <SYSTEM32>\00049ccb.sys
- <SYSTEM32>\ppudzm.kll
- %TEMP%\1.exe
- %TEMP%\МмМ칤ЧчКТ.exe
- '33####7.8800.org':6060
- DNS ASK 33####7.8800.org
- ClassName: 'Shell_TrayWnd' WindowName: ''