Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Neiqd' = '"%APPDATA%\Apbau\neiqd.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- '%APPDATA%\Apbau\neiqd.exe'
- <Служебный элемент>
- %TEMP%\tmp18e6e5e9.bat
- <LS_APPDATA>\idwae.uqk
- %APPDATA%\Apbau\neiqd.exe
- '94.##.127.237':13824
- '79.##.153.248':12827
- '62.##4.30.232':10595
- '2.###.22.240':11601
- '19#.#1.87.241':15189
- '78.##9.151.101':28553
- ClassName: 'Indicator' WindowName: ''