Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Link Log Device Color Task Protected Controls' = 'C:\huokgvpsjug\gbmlerreeia.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Telephony Controls Management Agent DNS] 'ImagePath' = 'C:\huokgvpsjug\gbmlerreeia.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Telephony Controls Management Agent DNS] 'Start' = '00000002'
- 'C:\huokgvpsjug\naknfpb.exe' "c:\huokgvpsjug\gbmlerreeia.exe"
- 'C:\huokgvpsjug\gbmlerreeia.exe'
- 'C:\huokgvpsjug\fzw3bqrsuziykdikjh.exe'
- C:\huokgvpsjug\gbmlerreeia.exe
- C:\huokgvpsjug\naknfpb.exe
- C:\huokgvpsjug\jba3kx
- %WINDIR%\huokgvpsjug\iwwxjdlt
- C:\huokgvpsjug\iwwxjdlt
- C:\huokgvpsjug\fzw3bqrsuziykdikjh.exe
- C:\huokgvpsjug\naknfpb.exe
- C:\huokgvpsjug\gbmlerreeia.exe
- C:\huokgvpsjug\fzw3bqrsuziykdikjh.exe
- %WINDIR%\huokgvpsjug\iwwxjdlt
- %WINDIR%\huokgvpsjug\iwwxjdlt
- '88.#48.36.4':25752
- '18#.#23.70.113':37727
- '19#.#6.240.249':21875
- '82.##7.164.91':40801
- '12#.#60.112.138':27440
- '72.##1.207.62':22399
- '41.##2.44.224':45860
- '20#.#7.225.58':33073
- '84.##8.128.25':27132
- '18#.#0.243.3':25741
- '86.#8.69.58':22437
- '18#.#39.139.100':37599
- '81.##4.87.112':37714
- '24.##9.216.168':33794
- ClassName: 'Shell_TrayWnd' WindowName: ''