Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'kmyckuum.exe' = '"%APPDATA%\Identities\kmyckuum.exe"'
- <SYSTEM32>\cmd.exe
- %APPDATA%\ms4336348.bat
- %APPDATA%\Identities\kmyckuum.exe
- %APPDATA%\ms4336348.bat
- '17#.#7.83.41':8080
- '72.##.216.199':8080
- '74.##8.72.190':8080
- '14#.4.4.53':8080
- '83.##8.129.247':8080
- '93.##4.219.82':8080
- '70.##.11.121':8080
- '46.##4.18.97':8080
- '20#.#35.56.124':8080
- '19#.#3.31.56':8080
- '10#.#39.61.98':8080
- '69.##7.144.34':8080
- '23.#.208.28':8080
- '23.##.104.121':8080
- '91.##8.174.192':8080
- '20#.#5.104.92':8080
- '20#.#13.10.181':8080
- '23.##7.182.231':8080
- '87.##7.242.7':8080
- '23.##.128.192':8080
- '17#.#94.39.6':8080
- '13#.19.0.17':8080
- '21#.#27.162.65':8080
- '94.##.11.156':8080
- '16#.#55.86.196':8080
- '17#.#2.50.238':8080
- '16#.#44.73.156':8080
- '17#.#10.167.213':8080
- '17#.#3.233.170':8080
- '10#.74.3.6':8080
- '21#.#9.62.76':8080
- '64.##.101.155':8080
- '14#.#6.59.84':8080
- '11#.#7.2.225':8080
- '23.#.213.230':8080
- '19#.#40.168.224':8080
- '17#.#3.44.120':8080
- '87.##0.19.234':8080
- '15#.#55.238.80':8080
- '15#.#1.69.28':8080
- '89.##7.184.219':8080
- '46.#.130.225':8080
- '66.##5.40.249':8080
- '19#.#9.127.2':8080
- ClassName: 'Indicator' WindowName: ''