Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{1D476073-5E7F-AD41-B897-60D4A63F43C6}' = '"%APPDATA%\Akdaa\hyemiw.exe"'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- %APPDATA%\Akdaa\hyemiw.exe
- <Служебный элемент>
- %TEMP%\tmp4fe20d98.bat
- <LS_APPDATA>\jygy.yka
- %APPDATA%\Akdaa\hyemiw.exe
- '46.#9.20.69':15320
- '99.##1.91.69':18955
- '46.##.86.167':10343
- '31.##2.27.193':16556
- '10#.#02.129.72':28030
- '17#.#21.156.77':14380
- '99.##.197.178':15336
- '77.##2.58.208':24916
- '18#.#41.14.25':17107
- '78.##8.234.200':27506
- '72.#4.69.88':17132
- '75.##2.169.226':24477
- '77.##.237.45':12541
- '95.##4.97.119':15698
- '18#.#7.206.230':25561
- ClassName: 'Indicator' WindowName: ''