Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\Rsiagq oqqqkmck] 'Start' = '00000002'
- [<HKLM>\System\CurrentControlSet\Services\Rsiagq oqqqkmck] 'ImagePath' = '%ProgramFiles(x86)%\Hppkbkp.exe'
- 'Rsiagq oqqqkmck' %ProgramFiles(x86)%\Hppkbkp.exe
- ClassName: 'Regmonclass', WindowName: ''
- ClassName: 'Filemonclass', WindowName: ''
- %ProgramFiles(x86)%\hppkbkp.exe
- %ProgramFiles(x86)%\hppkbkp.exe
- '10#.#2.15.123':80
- 'sh######sun.e3.luyouxia.net':13552
- DNS ASK sh######sun.e3.luyouxia.net
- ClassName: '4823-00000029' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- '%ProgramFiles(x86)%\hppkbkp.exe'