Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'BranchCache Tracking Networking' = 'C:\srsvvaoyixcl\iosvuaognw.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\COM+ TPM Secure Connections Smart] 'ImagePath' = 'C:\srsvvaoyixcl\iosvuaognw.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\COM+ TPM Secure Connections Smart] 'Start' = '00000002'
- 'C:\srsvvaoyixcl\qxsrmynvo.exe' "c:\srsvvaoyixcl\iosvuaognw.exe"
- 'C:\srsvvaoyixcl\iosvuaognw.exe'
- 'C:\srsvvaoyixcl\qcsra2l0iolaxcxfvey.exe'
- C:\srsvvaoyixcl\iosvuaognw.exe
- C:\srsvvaoyixcl\qxsrmynvo.exe
- C:\srsvvaoyixcl\bjabo0v
- %WINDIR%\srsvvaoyixcl\yrmx1nchf7
- C:\srsvvaoyixcl\yrmx1nchf7
- C:\srsvvaoyixcl\qcsra2l0iolaxcxfvey.exe
- C:\srsvvaoyixcl\qxsrmynvo.exe
- C:\srsvvaoyixcl\iosvuaognw.exe
- C:\srsvvaoyixcl\qcsra2l0iolaxcxfvey.exe
- %WINDIR%\srsvvaoyixcl\yrmx1nchf7
- %WINDIR%\srsvvaoyixcl\yrmx1nchf7
- '19#.#47.86.10':25432
- '95.##.58.101':23245
- '81.##7.50.99':52074
- '10#.#02.79.27':36272
- '86.##5.10.227':45279
- '95.##7.243.188':49038
- '21#.#07.110.82':26314
- '86.##.69.232':41590
- ClassName: 'Shell_TrayWnd' WindowName: ''