Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'List Encrypting Now IKE Solutions' = 'C:\cbymtehnezgnx\chmvpeok.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\AutoConfig Wired PNRP Diagnostic] 'ImagePath' = 'C:\cbymtehnezgnx\chmvpeok.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\AutoConfig Wired PNRP Diagnostic] 'Start' = '00000002'
- 'C:\cbymtehnezgnx\qoinrukw.exe' "c:\cbymtehnezgnx\chmvpeok.exe"
- 'C:\cbymtehnezgnx\chmvpeok.exe'
- 'C:\cbymtehnezgnx\puv2g1plh4gwnplyygyd.exe'
- C:\cbymtehnezgnx\chmvpeok.exe
- C:\cbymtehnezgnx\qoinrukw.exe
- C:\cbymtehnezgnx\plozxtshz
- %WINDIR%\cbymtehnezgnx\kzynjdx0a
- C:\cbymtehnezgnx\kzynjdx0a
- C:\cbymtehnezgnx\puv2g1plh4gwnplyygyd.exe
- C:\cbymtehnezgnx\qoinrukw.exe
- C:\cbymtehnezgnx\chmvpeok.exe
- C:\cbymtehnezgnx\puv2g1plh4gwnplyygyd.exe
- %WINDIR%\cbymtehnezgnx\kzynjdx0a
- %WINDIR%\cbymtehnezgnx\kzynjdx0a
- '17#.#50.138.208':20422
- '95.##8.241.220':49038
- '87.##.238.184':44724
- '20#.#95.172.22':41884
- '61.##6.2.217':25840
- '91.##.35.122':26126
- '74.#5.64.25':22739
- '87.##.38.225':33631
- '78.#7.87.58':21017
- '84.##8.128.25':27132
- '73.##.228.84':36884
- '79.##3.139.198':21201
- ClassName: 'Shell_TrayWnd' WindowName: ''