Техническая информация
- [HKLM\SYSTEM\CurrentControlSet\Services\genralmspthrd] 'Start' = '00000002'
- [HKLM\SYSTEM\CurrentControlSet\Services\genralmspthrd] 'ImagePath' = '"%WINDIR%\SysWOW64\genralmspthrd.exe" -763 -1484'
- 'genralmspthrd' %WINDIR%\SysWOW64\genralmspthrd.exe" -763 -148
- из <Полный путь к файлу> в %WINDIR%\syswow64\genralmspthrd.exe
- '17#.#8.254.86':8080
- '22#.#12.169.133':80
- '92.##9.101.150':80
- '83.#.151.210':8080
- '12#.#65.201.64':443
- '18#.#26.223.31':443