Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '{D9B1D445-AEFE-5B83-BCB50F636B53C270}' = '%ALLUSERSPROFILE%\Application Data\wepizup.exe'
- %ALLUSERSPROFILE%\Application Data\wepizup.exe
- %ALLUSERSPROFILE%\Application Data\wepizup.exe
- '1.#.1.1':443
- '<LOCALNET>.0.142':445
- '45.##4.225.138':445
- '<LOCALNET>.0.141':445
- '18#.#94.17.243':445
- '<LOCALNET>.0.140':445
- '17#.#78.49.221':445
- '<LOCALNET>.0.139':445
- '<LOCALNET>.0.138':445
- '11#.#39.107.1':445
- '<LOCALNET>.0.137':445
- '18#.#6.120.231':445
- '23.##3.143.8':445
- '<LOCALNET>.0.136':445
- '<LOCALNET>.0.135':445
- '18#.#35.134.73':445
- '19#.#30.170.189':445
- '92.##5.119.138':445
- '32.##4.84.98':445
- '17.##1.253.94':445
- '17#.#00.11.13':445
- '16#.#62.31.210':445
- '<LOCALNET>.0.134':445
- '17#.#31.98.114':445
- '14#.#52.3.85':445
- '<LOCALNET>.0.143':445
- '<LOCALNET>.0.158':445
- '42.##0.190.71':445
- '<LOCALNET>.0.157':445
- '<LOCALNET>.0.156':445
- '<LOCALNET>.0.155':445
- '13#.#6.23.114':445
- '<LOCALNET>.0.154':445
- '<LOCALNET>.0.153':445
- '12#.#.51.240':445
- '<LOCALNET>.0.152':445
- '17#.#6.228.39':445
- '19#.#8.83.234':445
- '<LOCALNET>.0.150':445
- '<LOCALNET>.0.149':445
- '16#.#7.104.166':445
- '<LOCALNET>.0.148':445
- '<LOCALNET>.0.147':445
- '11#.#13.116.190':445
- '<LOCALNET>.0.146':445
- '<LOCALNET>.0.145':445
- '<LOCALNET>.0.144':445
- '37.##7.102.72':445
- '19#.#95.137.71':445
- '10#.#7.31.100':445
- '12#.#1.183.64':445
- '20#.#1.77.133':445
- '<LOCALNET>.0.131':445
- '17.##3.151.93':445
- '20#.#25.156.135':445
- '68.##5.164.103':445
- '87.##1.248.87':445
- '13#.#1.90.100':445
- '22#.#93.150.99':445
- '49.##1.172.39':445
- '34.##9.213.152':445
- '13#.#9.80.122':445
- '21#.#55.114.94':445
- '77.##7.151.141':445
- '18#.#60.180.113':445
- '<LOCALNET>.0.130':445
- '93.##3.140.61':445
- '10#.#73.117.129':445
- '22#.#.196.121':445
- '10#.#54.0.151':445
- '15#.#5.91.200':445
- '23.#7.77.1':445
- '20#.#31.218.229':445
- '17#.#07.254.75':445
- '15#.#8.245.210':445
- '8.##.19.229':445
- '19#.#2.100.62':445
- '18#.#28.77.103':445
- '9.###.205.209':445
- '21#.#67.182.151':445
- '17#.#41.31.241':445
- '11#.#63.25.104':445
- '<LOCALNET>.0.133':445
- '10#.#98.153.81':445
- '10#.#51.225.218':445
- '18#.#4.165.114':445
- '<LOCALNET>.0.151':445
- '<LOCALNET>.0.159':445
- '12#.85.73.6':445
- '10#.#13.113.194':445
- '20#.#0.32.147':445
- '<LOCALNET>.0.132':445
- '21#.#88.27.39':445
- '21#.#08.95.97':445
- '42.##2.214.45':445
- '12#.#5.215.140':445
- '92.##5.151.2':445
- '18#.#05.74.188':445
- '80.##5.142.109':445
- '78.##.124.193':445
- '<LOCALNET>.0.160':445
- '<LOCALNET>.0.161':445
- '<LOCALNET>.0.227':445
- '<LOCALNET>.0.226':445
- '<LOCALNET>.0.225':445
- '<LOCALNET>.0.224':445
- '<LOCALNET>.0.223':445
- '<LOCALNET>.0.222':445
- '<LOCALNET>.0.221':445
- '<LOCALNET>.0.220':445
- '<LOCALNET>.0.219':445
- '<LOCALNET>.0.218':445
- '<LOCALNET>.0.217':445
- '<LOCALNET>.0.216':445
- '<LOCALNET>.0.215':445
- '<LOCALNET>.0.214':445
- '<LOCALNET>.0.213':445
- '<LOCALNET>.0.212':445
- '<LOCALNET>.0.211':445
- '<LOCALNET>.0.210':445
- '<LOCALNET>.0.209':445
- '<LOCALNET>.0.208':445
- '<LOCALNET>.0.207':445
- '<LOCALNET>.0.228':445
- '<LOCALNET>.0.229':445
- '<LOCALNET>.0.230':445
- '<LOCALNET>.0.231':445
- '<LOCALNET>.0.253':445
- '<LOCALNET>.0.252':445
- '<LOCALNET>.0.251':445
- '<LOCALNET>.0.250':445
- '<LOCALNET>.0.249':445
- '<LOCALNET>.0.248':445
- '<LOCALNET>.0.247':445
- '<LOCALNET>.0.246':445
- '<LOCALNET>.0.245':445
- '<LOCALNET>.0.244':445
- '<LOCALNET>.0.242':445
- '<LOCALNET>.0.243':445
- '<LOCALNET>.0.241':445
- '<LOCALNET>.0.240':445
- '<LOCALNET>.0.239':445
- '<LOCALNET>.0.238':445
- '<LOCALNET>.0.237':445
- '<LOCALNET>.0.236':445
- '<LOCALNET>.0.235':445
- '<LOCALNET>.0.234':445
- '<LOCALNET>.0.233':445
- '<LOCALNET>.0.232':445
- '16#.#41.54.156':445
- '<LOCALNET>.0.191':445
- '<LOCALNET>.0.205':445
- '<LOCALNET>.0.204':445
- '<LOCALNET>.0.176':445
- '<LOCALNET>.0.175':445
- '<LOCALNET>.0.174':445
- '<LOCALNET>.0.173':445
- '<LOCALNET>.0.172':445
- '<LOCALNET>.0.171':445
- '<LOCALNET>.0.170':445
- '<LOCALNET>.0.169':445
- '<LOCALNET>.0.168':445
- '14#.#47.194.37':445
- '<LOCALNET>.0.167':445
- '19#.#6.187.118':445
- '<LOCALNET>.0.166':445
- '43.#6.48.55':445
- '<LOCALNET>.0.165':445
- '<LOCALNET>.0.164':445
- '11#.#07.188.178':445
- '13#.#00.63.203':445
- '<LOCALNET>.0.163':445
- '<LOCALNET>.0.162':445
- '18#.#76.4.57':445
- '<LOCALNET>.0.177':445
- '<LOCALNET>.0.178':445
- '<LOCALNET>.0.179':445
- '<LOCALNET>.0.180':445
- '<LOCALNET>.0.202':445
- '<LOCALNET>.0.201':445
- '<LOCALNET>.0.200':445
- '<LOCALNET>.0.199':445
- '<LOCALNET>.0.198':445
- '<LOCALNET>.0.197':445
- '<LOCALNET>.0.196':445
- '<LOCALNET>.0.195':445
- '<LOCALNET>.0.194':445
- '<LOCALNET>.0.193':445
- '<LOCALNET>.0.254':445
- '<LOCALNET>.0.192':445
- '<LOCALNET>.0.190':445
- '<LOCALNET>.0.189':445
- '<LOCALNET>.0.188':445
- '<LOCALNET>.0.187':445
- '<LOCALNET>.0.186':445
- '<LOCALNET>.0.185':445
- '<LOCALNET>.0.184':445
- '<LOCALNET>.0.183':445
- '<LOCALNET>.0.182':445
- '<LOCALNET>.0.181':445
- '<LOCALNET>.0.203':445
- '<LOCALNET>.0.206':445
- '4.##.87.154':445
- '<LOCALNET>.0.106':445
- '<LOCALNET>.0.55':445
- '<LOCALNET>.0.54':445
- '19#.#32.141.104':445
- '<LOCALNET>.0.53':445
- '20#.#35.70.158':445
- '<LOCALNET>.0.52':445
- '<LOCALNET>.0.51':445
- '<LOCALNET>.0.50':445
- '52.##9.62.192':445
- '<LOCALNET>.0.49':445
- '<LOCALNET>.0.48':445
- '10#.#39.209.103':445
- '<LOCALNET>.0.47':445
- '<LOCALNET>.0.46':445
- '80.##.194.224':445
- '<LOCALNET>.0.45':445
- '<LOCALNET>.0.44':445
- '<LOCALNET>.0.43':445
- '<LOCALNET>.0.42':445
- '<LOCALNET>.0.41':445
- '<LOCALNET>.0.40':445
- '<LOCALNET>.0.38':445
- '<LOCALNET>.0.39':445
- '48.##2.49.220':445
- '<LOCALNET>.0.56':445
- '<LOCALNET>.0.71':445
- '<LOCALNET>.0.70':445
- '<LOCALNET>.0.69':445
- '74.#.202.177':445
- '10#.#34.77.227':445
- '<LOCALNET>.0.68':445
- '<LOCALNET>.0.67':445
- '<LOCALNET>.0.66':445
- '<LOCALNET>.0.65':445
- '17#.#55.20.33':445
- '41.#.233.246':445
- '<LOCALNET>.0.26':445
- '<LOCALNET>.0.63':445
- '<LOCALNET>.0.62':445
- '<LOCALNET>.0.61':445
- '<LOCALNET>.0.60':445
- '<LOCALNET>.0.59':445
- '84.##9.60.176':445
- '<LOCALNET>.0.58':445
- '15#.#1.18.207':445
- '<LOCALNET>.0.57':445
- '13#.#69.148.182':445
- '<LOCALNET>.0.37':445
- '<LOCALNET>.0.36':445
- '20#.#2.227.23':445
- '<LOCALNET>.0.12':445
- '<LOCALNET>.0.11':445
- '88.##.74.186':445
- '<LOCALNET>.0.10':445
- '<LOCALNET>.0.9':445
- '<LOCALNET>.0.8':445
- '15#.#7.114.171':445
- '<LOCALNET>.0.7':445
- '<LOCALNET>.0.6':445
- '<LOCALNET>.0.5':445
- '<LOCALNET>.0.4':445
- '<LOCALNET>.0.3':445
- '16#.#9.108.135':445
- '<LOCALNET_GATEWAY>':445
- '<LOCALNET>.0.0':445
- '14#.#54.10.26':445
- '63.#52.7.85':445
- '11#.#03.89.254':445
- '58.##.76.232':445
- '15#.#70.41.57':445
- '46.#2.69.22':445
- '<LOCALNET>.0.14':445
- '<LOCALNET>.0.13':445
- '<LOCALNET>.0.15':445
- '14.##3.22.221':445
- '<LOCALNET>.0.16':445
- '<LOCALNET>.0.35':445
- '<LOCALNET>.0.34':445
- '<LOCALNET>.0.33':445
- '<LOCALNET>.0.32':445
- '<LOCALNET>.0.31':445
- '<LOCALNET>.0.30':445
- '11#.#02.190.61':445
- '<LOCALNET>.0.29':445
- '<LOCALNET>.0.28':445
- '<LOCALNET>.0.64':445
- '1.##0.77.81':445
- '<LOCALNET>.0.25':445
- '<LOCALNET>.0.24':445
- '<LOCALNET>.0.23':445
- '70.##.245.59':445
- '<LOCALNET>.0.22':445
- '<LOCALNET>.0.21':445
- '<LOCALNET>.0.20':445
- '<LOCALNET>.0.19':445
- '<LOCALNET>.0.18':445
- '<LOCALNET>.0.17':445
- '<LOCALNET>.0.27':445
- '<LOCALNET>.0.72':445
- '14#.#38.89.240':445
- '5.##.251.69':445
- '<LOCALNET>.0.122':445
- '<LOCALNET>.0.121':445
- '<LOCALNET>.0.120':445
- '<LOCALNET>.0.119':445
- '47.##.200.220':445
- '<LOCALNET>.0.118':445
- '<LOCALNET>.0.117':445
- '9.###.126.209':445
- '<LOCALNET>.0.116':445
- '<LOCALNET>.0.115':445
- '<LOCALNET>.0.114':445
- '17#.#14.166.18':445
- '<LOCALNET>.0.113':445
- '73.##3.83.32':445
- '<LOCALNET>.0.112':445
- '<LOCALNET>.0.111':445
- '<LOCALNET>.0.110':445
- '<LOCALNET>.0.109':445
- '72.##0.173.69':445
- '<LOCALNET>.0.108':445
- '<LOCALNET>.0.107':445
- '<LOCALNET>.0.123':445
- '<LOCALNET>.0.124':445
- '<LOCALNET>.0.125':445
- '10#.#3.123.105':445
- '20#.#23.88.108':445
- '58.##8.123.149':445
- '16#.#22.126.51':445
- '21#.#75.103.200':445
- '53.##.143.39':445
- '17#.#89.129.142':445
- '15#.#55.207.145':445
- '53.##.25.212':445
- '15#.#17.78.138':445
- '<LOCALNET>.0.129':445
- '10#.#0.95.101':445
- '58.##.166.87':445
- '15#.#99.116.22':445
- '68.##3.94.215':445
- '14#.#98.183.74':445
- '75.##9.26.114':445
- '13#.#8.206.126':445
- '50.##8.112.105':445
- '<LOCALNET>.0.128':445
- '15#.#13.143.72':445
- '<LOCALNET>.0.127':445
- '<LOCALNET>.0.126':445
- '21#.#8.135.167':445
- '<LOCALNET>.0.96':445
- '<LOCALNET>.0.105':445
- '47.##.229.123':445
- '11#.#95.242.8':445
- '<LOCALNET>.0.85':445
- '13.##6.19.63':445
- '<LOCALNET>.0.84':445
- '<LOCALNET>.0.83':445
- '16#.#98.21.43':445
- '<LOCALNET>.0.82':445
- '<LOCALNET>.0.81':445
- '40.##7.2.142':445
- '<LOCALNET>.0.80':445
- '<LOCALNET>.0.79':445
- '10#.#49.133.232':445
- '62.##7.93.165':445
- '<LOCALNET>.0.78':445
- '<LOCALNET>.0.77':445
- '<LOCALNET>.0.76':445
- '<LOCALNET>.0.75':445
- '<LOCALNET>.0.74':445
- '92.##5.19.65':445
- '<LOCALNET>.0.73':445
- '81.##.227.110':445
- '<LOCALNET>.0.86':445
- '<LOCALNET>.0.87':445
- '13#.#.52.119':445
- '<LOCALNET>.0.88':445
- '18#.#37.191.172':445
- '<LOCALNET>.0.103':445
- '<LOCALNET>.0.102':445
- '16#.#2.42.66':445
- '<LOCALNET>.0.101':445
- '<LOCALNET>.0.100':445
- '10#.#1.149.231':445
- '<LOCALNET>.0.99':445
- '<LOCALNET>.0.98':445
- '14#.#30.14.120':445
- '11#.#96.202.138':445
- '<LOCALNET>.0.97':445
- '<LOCALNET>.0.95':445
- '14#.#18.131.39':445
- '<LOCALNET>.0.94':445
- '<LOCALNET>.0.93':445
- '<LOCALNET>.0.92':445
- '32.#.38.39':445
- '20#.#06.26.178':445
- '<LOCALNET>.0.91':445
- '<LOCALNET>.0.90':445
- '<LOCALNET>.0.89':445
- '<LOCALNET>.0.104':445
- '<LOCALNET>.0.255':445
- DNS ASK po##.#inexmr.com
- '%ALLUSERSPROFILE%\Application Data\wepizup.exe' and Settings\\All Users\\Application Data\\wepizup.exe\"