Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\uvndqljhEIxwB.dll] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\uvndqljhEIxwB.dll] 'ImagePath' = '<SYSTEM32>\regsvr32.exe "<SYSTEM32>\SRbtdK\uvndqljhEIxwB.dll"'
- 'uvndqljhEIxwB.dll' <SYSTEM32>\regsvr32.exe "<SYSTEM32>\SRbtdK\uvndqljhEIxwB.dll"
- из <Полный путь к файлу> в <SYSTEM32>\srbtdk\uvndqljheixwb.dll
- '14#.#1.78.55':443
- '17#.#05.226.75':8080
- '51.##1.73.194':443
- '45.##6.16.18':443
- '41.##.252.195':443
- '17#.#04.251.154':8080
- '45.##6.232.124':443
- '10#.#5.201.2':443
- '19#.#42.150.244':8080
- '17#.#12.193.249':8080
- '14#.#1.78.55':443
- '17#.#05.226.75':8080
- '51.##1.73.194':443
- '45.##6.16.18':443
- '10#.#5.201.2':443
- '<SYSTEM32>\regsvr32.exe' "<SYSTEM32>\SRbtdK\uvndqljhEIxwB.dll"