Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Enumerator Locator Coordinator Adapter' = 'C:\bgksaimylwzn\zokdgpjj.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Encryption Update Plug Instrumentation] 'ImagePath' = 'C:\bgksaimylwzn\zokdgpjj.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Encryption Update Plug Instrumentation] 'Start' = '00000002'
- 'C:\bgksaimylwzn\jubpbtmioa.exe' "c:\bgksaimylwzn\zokdgpjj.exe"
- 'C:\bgksaimylwzn\zokdgpjj.exe'
- 'C:\bgksaimylwzn\gvs2p4ycpwlyw9pgli.exe'
- C:\bgksaimylwzn\zokdgpjj.exe
- C:\bgksaimylwzn\jubpbtmioa.exe
- C:\bgksaimylwzn\hnunvvlhxhz
- %WINDIR%\bgksaimylwzn\ndzhipvstymv
- C:\bgksaimylwzn\ndzhipvstymv
- C:\bgksaimylwzn\gvs2p4ycpwlyw9pgli.exe
- C:\bgksaimylwzn\jubpbtmioa.exe
- C:\bgksaimylwzn\zokdgpjj.exe
- C:\bgksaimylwzn\gvs2p4ycpwlyw9pgli.exe
- %WINDIR%\bgksaimylwzn\ndzhipvstymv
- %WINDIR%\bgksaimylwzn\ndzhipvstymv
- '81.##4.87.112':37714
- '21#.#19.80.21':36542
- '93.##7.67.155':25640
- '21#.#7.168.28':52231
- '72.##1.47.203':22399
- '91.##.35.122':26126
- '10#.#56.58.121':45860
- '83.##0.248.151':23268
- ClassName: 'Shell_TrayWnd' WindowName: ''