Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Video Enumerator Machine Identity' = 'C:\nuluugz\zxyvinj.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Event Logon Awareness Resolution] 'ImagePath' = 'C:\nuluugz\zxyvinj.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Event Logon Awareness Resolution] 'Start' = '00000002'
- 'C:\nuluugz\xtbvzcbvlmu.exe' "c:\nuluugz\zxyvinj.exe"
- 'C:\nuluugz\zxyvinj.exe'
- 'C:\nuluugz\rwev3irdn97jmk11zabr.exe'
- C:\nuluugz\zxyvinj.exe
- C:\nuluugz\xtbvzcbvlmu.exe
- C:\nuluugz\hmcfuiujms
- %WINDIR%\nuluugz\eurzjcy8sj
- C:\nuluugz\eurzjcy8sj
- C:\nuluugz\rwev3irdn97jmk11zabr.exe
- C:\nuluugz\xtbvzcbvlmu.exe
- C:\nuluugz\zxyvinj.exe
- C:\nuluugz\rwev3irdn97jmk11zabr.exe
- %WINDIR%\nuluugz\eurzjcy8sj
- %WINDIR%\nuluugz\eurzjcy8sj
- '86.##5.10.227':45279
- '18#.#0.220.30':25741
- '79.##5.10.236':21201
- '72.#9.59.91':23362
- '92.##7.78.237':47427
- '18#.#07.197.116':24498
- '79.##1.239.74':42581
- '2.##.156.247':35711
- ClassName: 'Shell_TrayWnd' WindowName: ''