Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Desktop Bluetooth Manager TP' = 'C:\nfrdwxkgf\rknilmpba.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\DHCP Procedure Controls Window] 'ImagePath' = 'C:\nfrdwxkgf\rknilmpba.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\DHCP Procedure Controls Window] 'Start' = '00000002'
- 'C:\nfrdwxkgf\adwmdest.exe' "c:\nfrdwxkgf\rknilmpba.exe"
- 'C:\nfrdwxkgf\rknilmpba.exe'
- 'C:\nfrdwxkgf\szdha2mise6fi3cvu0.exe'
- C:\nfrdwxkgf\rknilmpba.exe
- C:\nfrdwxkgf\adwmdest.exe
- C:\nfrdwxkgf\bssibpi1fx6
- %WINDIR%\nfrdwxkgf\uaomb2senj
- C:\nfrdwxkgf\uaomb2senj
- C:\nfrdwxkgf\szdha2mise6fi3cvu0.exe
- C:\nfrdwxkgf\adwmdest.exe
- C:\nfrdwxkgf\rknilmpba.exe
- C:\nfrdwxkgf\szdha2mise6fi3cvu0.exe
- %WINDIR%\nfrdwxkgf\uaomb2senj
- '71.##6.195.178':41500
- '2.##.19.50':35833
- '20#.#36.131.186':52293
- '41.#42.27.1':45860
- '18#.#49.85.10':32097
- '95.##7.243.188':49038
- '62.##.253.114':51156
- '78.##5.171.93':23699
- ClassName: 'Shell_TrayWnd' WindowName: ''