Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{1D476073-5E7F-AD41-B897-60D4A63F43C6}' = '"%APPDATA%\Jydece\pyymag.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- '%APPDATA%\Jydece\pyymag.exe'
- <Служебный элемент>
- %TEMP%\tmp12330eb0.bat
- <LS_APPDATA>\teirer.nox
- %APPDATA%\Jydece\pyymag.exe
- '94.##0.224.115':27794
- '19#.#1.89.171':25693
- '78.##9.151.101':28553
- '99.#6.3.38':15247
- '18#.#69.232.227':18404
- '99.##0.165.132':25139
- '37.#9.68.3':16335
- '79.##4.127.95':10517
- ClassName: 'Indicator' WindowName: ''