Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Tools Base Assistant Video Volume Device' = 'C:\rdmmzbpxvxp\guvnngermtr.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Performance Experience Builder] 'ImagePath' = 'C:\rdmmzbpxvxp\guvnngermtr.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Performance Experience Builder] 'Start' = '00000002'
- 'C:\rdmmzbpxvxp\odudokhz.exe' "c:\rdmmzbpxvxp\guvnngermtr.exe"
- 'C:\rdmmzbpxvxp\guvnngermtr.exe'
- 'C:\rdmmzbpxvxp\bdhl2kq3pr2gukneqsm.exe'
- C:\rdmmzbpxvxp\guvnngermtr.exe
- C:\rdmmzbpxvxp\odudokhz.exe
- C:\rdmmzbpxvxp\ffldiboxs
- %WINDIR%\rdmmzbpxvxp\gy96eafqkvdv
- C:\rdmmzbpxvxp\gy96eafqkvdv
- C:\rdmmzbpxvxp\bdhl2kq3pr2gukneqsm.exe
- C:\rdmmzbpxvxp\odudokhz.exe
- C:\rdmmzbpxvxp\guvnngermtr.exe
- C:\rdmmzbpxvxp\bdhl2kq3pr2gukneqsm.exe
- %WINDIR%\rdmmzbpxvxp\gy96eafqkvdv
- %WINDIR%\rdmmzbpxvxp\gy96eafqkvdv
- '72.##1.47.203':22399
- '2.##.167.151':22437
- '22#.#1.110.45':48008
- '11#.#42.143.147':31567
- '18#.#45.182.189':37331
- '10#.#46.77.146':33927
- '20#.#71.22.221':32994
- '77.##.186.45':43519
- ClassName: 'Shell_TrayWnd' WindowName: ''