Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\Debugger Program Routing] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\Debugger Program Routing] 'ImagePath' = 'C:\jsizxlamqckng\gkpojvqfz.exe'
- 'Debugger Program Routing' C:\jsizxlamqckng\gkpojvqfz.exe
- %WINDIR%\jsizxlamqckng\wvnuohuswc
- C:\jsizxlamqckng\wvnuohuswc
- C:\jsizxlamqckng\dgfzkjtpjip2emngj8xbf.exe
- C:\jsizxlamqckng\gkpojvqfz.exe
- C:\jsizxlamqckng\yjcudkoz.exe
- C:\jsizxlamqckng\ch3mqm3xhqup
- C:\jsizxlamqckng\gkpojvqfz.exe
- C:\jsizxlamqckng\yjcudkoz.exe
- %WINDIR%\jsizxlamqckng\wvnuohuswc
- C:\jsizxlamqckng\dgfzkjtpjip2emngj8xbf.exe
- %WINDIR%\jsizxlamqckng\wvnuohuswc
- '87.##.38.225':33631
- '19#.#47.86.10':25432
- '86.##5.19.130':27743
- '31.##7.83.237':44843
- '21#.#07.110.82':26314
- '79.##3.139.198':21201
- '81.##7.50.99':52074
- '82.##7.164.91':40801
- 'C:\jsizxlamqckng\dgfzkjtpjip2emngj8xbf.exe'
- 'C:\jsizxlamqckng\gkpojvqfz.exe'
- 'C:\jsizxlamqckng\yjcudkoz.exe' "c:\jsizxlamqckng\gkpojvqfz.exe"