Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Filtering NetBIOS Compatibility Routing' = 'C:\qxpsdtgyhmtioj\lxelobsyvdh.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Font RPC Locator DHCP Resource COM+ Class] 'ImagePath' = 'C:\qxpsdtgyhmtioj\lxelobsyvdh.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Font RPC Locator DHCP Resource COM+ Class] 'Start' = '00000002'
- 'C:\qxpsdtgyhmtioj\agdffab.exe' "c:\qxpsdtgyhmtioj\lxelobsyvdh.exe"
- 'C:\qxpsdtgyhmtioj\lxelobsyvdh.exe'
- 'C:\qxpsdtgyhmtioj\eh2m9nsdvbrzpy41.exe'
- C:\qxpsdtgyhmtioj\lxelobsyvdh.exe
- C:\qxpsdtgyhmtioj\agdffab.exe
- C:\qxpsdtgyhmtioj\phryelfsxo
- %WINDIR%\qxpsdtgyhmtioj\njlikpcgw
- C:\qxpsdtgyhmtioj\njlikpcgw
- C:\qxpsdtgyhmtioj\eh2m9nsdvbrzpy41.exe
- C:\qxpsdtgyhmtioj\agdffab.exe
- C:\qxpsdtgyhmtioj\lxelobsyvdh.exe
- C:\qxpsdtgyhmtioj\eh2m9nsdvbrzpy41.exe
- %WINDIR%\qxpsdtgyhmtioj\njlikpcgw
- %WINDIR%\qxpsdtgyhmtioj\njlikpcgw
- '82.##7.164.91':40801
- '18#.#23.70.113':37727
- '77.##7.13.68':30018
- '21#.#65.0.136':35711
- '18#.#38.249.34':37331
- '11#.#6.137.96':49919
- '19#.#7.134.20':44965
- '5.##.19.242':27426
- '87.##.238.184':44724
- '88.#48.36.4':25752
- '18#.#22.43.28':46084
- '18#.#42.145.105':26662
- '41.##.10.183':48405
- ClassName: 'Shell_TrayWnd' WindowName: ''