Техническая информация
- [HKLM\SYSTEM\CurrentControlSet\Services\Logon Logs Network Spooler System Connections] 'Start' = '00000002'
- [HKLM\SYSTEM\CurrentControlSet\Services\Logon Logs Network Spooler System Connections] 'ImagePath' = 'C:\mohaagkmjny\srfszdqjhtp.exe'
- 'Logon Logs Network Spooler System Connections' C:\mohaagkmjny\srfszdqjhtp.exe
- %WINDIR%\mohaagkmjny\akzlcliw
- C:\mohaagkmjny\akzlcliw
- C:\mohaagkmjny\tvtla19oeowlzqaatg.exe
- C:\mohaagkmjny\srfszdqjhtp.exe
- C:\mohaagkmjny\hounzusbxyg.exe
- C:\mohaagkmjny\mecqsqkd1w
- C:\mohaagkmjny\srfszdqjhtp.exe
- C:\mohaagkmjny\hounzusbxyg.exe
- %WINDIR%\mohaagkmjny\akzlcliw
- C:\mohaagkmjny\tvtla19oeowlzqaatg.exe
- %WINDIR%\mohaagkmjny\akzlcliw
- DNS ASK ri####problem.net
- DNS ASK be####problem.net
- DNS ASK ri####modern.net
- DNS ASK fi#####.###tings.services.mozilla.com
- 'C:\mohaagkmjny\tvtla19oeowlzqaatg.exe'
- 'C:\mohaagkmjny\srfszdqjhtp.exe'
- 'C:\mohaagkmjny\hounzusbxyg.exe' "c:\mohaagkmjny\srfszdqjhtp.exe"