Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Access Time Scheduler' = 'C:\vuhpxriagorekma\cqyszmspbxd.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Support Gateway Backup Profile] 'ImagePath' = 'C:\vuhpxriagorekma\cqyszmspbxd.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Support Gateway Backup Profile] 'Start' = '00000002'
- 'C:\vuhpxriagorekma\qatnkfcpkch.exe' "c:\vuhpxriagorekma\cqyszmspbxd.exe"
- 'C:\vuhpxriagorekma\cqyszmspbxd.exe'
- 'C:\vuhpxriagorekma\reo301rjcgur3smwp1h.exe'
- C:\vuhpxriagorekma\cqyszmspbxd.exe
- C:\vuhpxriagorekma\qatnkfcpkch.exe
- C:\vuhpxriagorekma\wp1w5rf5f
- %WINDIR%\vuhpxriagorekma\iqqtsyinx
- C:\vuhpxriagorekma\iqqtsyinx
- C:\vuhpxriagorekma\reo301rjcgur3smwp1h.exe
- C:\vuhpxriagorekma\qatnkfcpkch.exe
- C:\vuhpxriagorekma\cqyszmspbxd.exe
- C:\vuhpxriagorekma\reo301rjcgur3smwp1h.exe
- %WINDIR%\vuhpxriagorekma\iqqtsyinx
- %WINDIR%\vuhpxriagorekma\iqqtsyinx
- '19#.#7.134.20':44965
- '10#.#2.195.20':39160
- '62.##.253.114':51156
- '5.#.166.192':41199
- '37.##2.223.103':22969
- '15#.#82.245.137':33982
- '17#.#40.117.149':27603
- '21#.#19.80.21':36542
- ClassName: 'Shell_TrayWnd' WindowName: ''