Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Tablet Service Agent Studio' = 'C:\heitqxlksx\isagxhna.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\KtmRm Launcher Presentation Link-Layer Center] 'ImagePath' = 'C:\heitqxlksx\isagxhna.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\KtmRm Launcher Presentation Link-Layer Center] 'Start' = '00000002'
- 'C:\heitqxlksx\fagxlapfzslx.exe' "c:\heitqxlksx\isagxhna.exe"
- 'C:\heitqxlksx\isagxhna.exe'
- 'C:\heitqxlksx\rqsog3bo5pvskpoxgz.exe'
- C:\heitqxlksx\isagxhna.exe
- C:\heitqxlksx\fagxlapfzslx.exe
- C:\heitqxlksx\srjfl47y29x
- %WINDIR%\heitqxlksx\fgqo5b0
- C:\heitqxlksx\fgqo5b0
- C:\heitqxlksx\rqsog3bo5pvskpoxgz.exe
- C:\heitqxlksx\fagxlapfzslx.exe
- C:\heitqxlksx\isagxhna.exe
- C:\heitqxlksx\rqsog3bo5pvskpoxgz.exe
- %WINDIR%\heitqxlksx\fgqo5b0
- %WINDIR%\heitqxlksx\fgqo5b0
- '80.##1.86.158':33631
- '61.##6.2.217':25840
- '93.##7.67.155':25640
- '41.#6.20.41':48405
- '18#.#5.131.224':26337
- '18#.2.4.92':44843
- '77.##7.13.68':30018
- '95.##7.243.188':49038
- ClassName: 'Shell_TrayWnd' WindowName: ''