Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Card BitLocker HomeGroup Controls Config] 'Start' = '00000002'
- 'C:\ifalignu\lxtuatsteb.exe' "c:\ifalignu\hgedzlk.exe"
- 'C:\ifalignu\hgedzlk.exe'
- 'C:\ifalignu\ji9fypfuepswjxu.exe'
- C:\ifalignu\hgedzlk.exe
- C:\ifalignu\lxtuatsteb.exe
- C:\ifalignu\bntpkp
- %WINDIR%\ifalignu\hvjja1
- C:\ifalignu\hvjja1
- C:\ifalignu\ji9fypfuepswjxu.exe
- C:\ifalignu\lxtuatsteb.exe
- C:\ifalignu\hgedzlk.exe
- C:\ifalignu\ji9fypfuepswjxu.exe
- %WINDIR%\ifalignu\hvjja1
- DNS ASK ra####caught.net
- DNS ASK mo#####president.net
- DNS ASK mo####gcaught.net
- DNS ASK hi####ystrong.net
- DNS ASK st####estrong.net
- DNS ASK ra####president.net
- DNS ASK mo####gstrong.net
- DNS ASK ra####strong.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK mo####gtrouble.net
- DNS ASK ra####trouble.net
- ClassName: 'Shell_TrayWnd' WindowName: ''