Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Adaptive Registry Resolution' = 'C:\kxnhmfizy\xihifkqvlodf.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\DHCP Notification Grouping SSDP Modules Netlogon] 'ImagePath' = 'C:\kxnhmfizy\xihifkqvlodf.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\DHCP Notification Grouping SSDP Modules Netlogon] 'Start' = '00000002'
- 'C:\kxnhmfizy\qfdpmilen.exe' "c:\kxnhmfizy\xihifkqvlodf.exe"
- 'C:\kxnhmfizy\xihifkqvlodf.exe'
- 'C:\kxnhmfizy\wjis54fblcvxha5n0foy.exe'
- C:\kxnhmfizy\xihifkqvlodf.exe
- C:\kxnhmfizy\qfdpmilen.exe
- C:\kxnhmfizy\ouvlymbsy
- %WINDIR%\kxnhmfizy\qix9mty
- C:\kxnhmfizy\qix9mty
- C:\kxnhmfizy\wjis54fblcvxha5n0foy.exe
- C:\kxnhmfizy\qfdpmilen.exe
- C:\kxnhmfizy\xihifkqvlodf.exe
- C:\kxnhmfizy\wjis54fblcvxha5n0foy.exe
- %WINDIR%\kxnhmfizy\qix9mty
- %WINDIR%\kxnhmfizy\qix9mty
- '62.##.253.114':51156
- '37.##2.223.103':22969
- '79.##7.196.121':45688
- '2.##.167.151':22437
- '21#.#19.80.21':36542
- '11#.#6.137.96':49919
- '18#.#42.107.86':26662
- '20#.#7.225.58':33073
- ClassName: 'Shell_TrayWnd' WindowName: ''