Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Builder Superfetch Error Application' = 'C:\sahqisinfmw\famryqg.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Net.Tcp Certificate Services Coordinator] 'ImagePath' = 'C:\sahqisinfmw\famryqg.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Net.Tcp Certificate Services Coordinator] 'Start' = '00000002'
- 'C:\sahqisinfmw\ejyjudzpv.exe' "c:\sahqisinfmw\famryqg.exe"
- 'C:\sahqisinfmw\famryqg.exe'
- 'C:\sahqisinfmw\cnlyh2kz8hdp2bt2g.exe'
- C:\sahqisinfmw\famryqg.exe
- C:\sahqisinfmw\ejyjudzpv.exe
- C:\sahqisinfmw\hcidtrgmld
- %WINDIR%\sahqisinfmw\hj5zouoj
- C:\sahqisinfmw\hj5zouoj
- C:\sahqisinfmw\cnlyh2kz8hdp2bt2g.exe
- C:\sahqisinfmw\ejyjudzpv.exe
- C:\sahqisinfmw\famryqg.exe
- C:\sahqisinfmw\cnlyh2kz8hdp2bt2g.exe
- %WINDIR%\sahqisinfmw\hj5zouoj
- %WINDIR%\sahqisinfmw\hj5zouoj
- '98.##.239.20':20922
- '18#.#5.131.224':26337
- '84.##2.194.230':27426
- '10#.#4.136.243':42581
- '19#.#47.86.10':25432
- '77.##7.13.68':30018
- '87.##.238.184':44724
- '82.##7.164.91':40801
- ClassName: 'Shell_TrayWnd' WindowName: ''