Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Link Defragmenter Connections Isolation' = 'C:\gxczdfda\bpiadosmve.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Diagnostic Driver Class Session] 'ImagePath' = 'C:\gxczdfda\bpiadosmve.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Diagnostic Driver Class Session] 'Start' = '00000002'
- 'C:\gxczdfda\zkehhlmz.exe' "c:\gxczdfda\bpiadosmve.exe"
- 'C:\gxczdfda\bpiadosmve.exe'
- 'C:\gxczdfda\vc2j7fn9cco1knzx.exe'
- C:\gxczdfda\bpiadosmve.exe
- C:\gxczdfda\zkehhlmz.exe
- C:\gxczdfda\bjmgmrkj
- %WINDIR%\gxczdfda\dfcxvrzwudl
- C:\gxczdfda\dfcxvrzwudl
- C:\gxczdfda\vc2j7fn9cco1knzx.exe
- C:\gxczdfda\zkehhlmz.exe
- C:\gxczdfda\bpiadosmve.exe
- C:\gxczdfda\vc2j7fn9cco1knzx.exe
- %WINDIR%\gxczdfda\dfcxvrzwudl
- %WINDIR%\gxczdfda\dfcxvrzwudl
- '95.##8.241.220':49038
- '86.##5.19.130':27743
- '88.#48.36.4':25752
- '62.##.253.114':51156
- '95.##.58.101':23245
- '21#.#7.168.28':52231
- '82.##7.164.91':40801
- '98.##.223.221':20922
- '15#.#82.245.137':33982
- '18#.#39.139.100':37599
- '86.##5.10.227':45279
- '21#.#07.110.82':26314
- ClassName: 'Shell_TrayWnd' WindowName: ''