Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Dietra' = '"%APPDATA%\Cuoh\dietra.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- '%APPDATA%\Cuoh\dietra.exe'
- <SYSTEM32>\cscript.exe
- %TEMP%\VVW9339.bat
- <LS_APPDATA>\ofvo.ytg
- %APPDATA%\Cuoh\dietra.exe
- '85.##8.98.103':26315
- '12#.#38.67.96':4636
- '62.#.195.49':10023
- '24.##0.165.58':4842
- '95.##1.154.160':10156
- '49.##.26.100':24563
- '68.##0.76.126':9746
- '10#.#4.172.39':3059
- '21#.#30.254.114':14154
- '18#.#7.50.15':17051
- '94.##.66.181':26511
- '2.###.176.83':16135
- '88.##.107.28':7605
- '89.##2.155.200':17472
- '31.##6.117.229':26507
- ClassName: 'Indicator' WindowName: ''