Техническая информация
- '%TEMP%\pagePXM.exe'
- '<SYSTEM32>\conhost.exe' /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
- '<SYSTEM32>\taskeng.exe' /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
- %TEMP%\pagePXM.exe
- %TEMP%\PXMInstall.log
- '75.##2.173.27':443
- '76.#8.92.4':443
- '18#.#55.239.34':443
- '69.#.204.114':443
- '73.##5.203.173':443
- '71.##4.36.73':443
- '66.##6.63.33':443
- '71.##.130.24':443
- '65.##.236.173':443
- '98.##2.64.184':443
- '69.##4.171.44':443
- '72.##0.82.80':443
- '20#.#23.130.173':443
- '98.##4.215.92':443
- '24.##.131.116':443
- '68.#19.5.32':443
- '17#.#14.221.89':443
- '17#.#48.27.163':443
- '17#.#43.255.79':443
- '17#.#48.31.6':443
- '17#.#48.22.227':443
- '17#.#48.31.1':443
- DNS ASK dn#.##ftncsi.com
- DNS ASK ic###azip.com
- ClassName: 'Shell_TrayWnd' WindowName: ''