Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Offline WLAN Application Proxy User Copy' = 'C:\aeoqpxj\suuwiaqswecq.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Distributed Machine Defender Log Adaptive] 'ImagePath' = 'C:\aeoqpxj\suuwiaqswecq.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Distributed Machine Defender Log Adaptive] 'Start' = '00000002'
- 'C:\aeoqpxj\liavirvmmt.exe' "c:\aeoqpxj\suuwiaqswecq.exe"
- 'C:\aeoqpxj\suuwiaqswecq.exe'
- 'C:\aeoqpxj\vdylh2g2kmbdj5f7joco.exe'
- C:\aeoqpxj\suuwiaqswecq.exe
- C:\aeoqpxj\liavirvmmt.exe
- C:\aeoqpxj\jjxivfs
- %WINDIR%\aeoqpxj\dzigew
- C:\aeoqpxj\dzigew
- C:\aeoqpxj\vdylh2g2kmbdj5f7joco.exe
- C:\aeoqpxj\liavirvmmt.exe
- C:\aeoqpxj\suuwiaqswecq.exe
- C:\aeoqpxj\vdylh2g2kmbdj5f7joco.exe
- %WINDIR%\aeoqpxj\dzigew
- %WINDIR%\aeoqpxj\dzigew
- '12#.#60.123.173':36805
- '19#.#6.240.249':21875
- '12#.#60.112.138':27440
- '87.##.38.225':33631
- '31.##7.83.237':44843
- '18#.#38.249.34':37331
- '86.##5.19.130':27743
- '10#.#29.186.201':47507
- '84.##8.128.25':27132
- '86.#8.69.58':22437
- '87.##.238.184':44724
- ClassName: 'Shell_TrayWnd' WindowName: ''