Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%TEMP%\adkfehoj.exe' = '%TEMP%\adkfehoj.exe:*:Enabled:adkfehoj'
- '%TEMP%\ilcnmpgb.exe'
- '%TEMP%\adkfehoj.exe'
- <LS_APPDATA>\geffret.dll
- %TEMP%\ilcnmpgb.exe
- %TEMP%\adkfehoj.exe
- '85.##3.166.69':28346
- DNS ASK ns#.##legoffts.net