Техническая информация
- [HKLM\System\CurrentControlSet\Services\MiyoughServ] 'Start' = '00000002'
- [HKLM\System\CurrentControlSet\Services\MiyoughServ] 'ImagePath' = '"%WINDIR%\Win32U5B.exe"'
- 'MiyoughServ' "%WINDIR%\Win32U5B.exe"
- 'MiyoughServ' %WINDIR%\Win32U5B.exe
- %WINDIR%\win32u5b.exe
- %WINDIR%\win32u5b.exe
- '21#.#2.205.179':5920
- '%WINDIR%\win32u5b.exe' -s "<Полный путь к файлу>"
- '%WINDIR%\win32u5b.exe'
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "%WINDIR%\win32u5b.exe"