Technical Information
- [<HKLM>\System\CurrentControlSet\Services\lyzrgtcwxf] 'ImagePath' = '%APPDATA%\Microsoft\Windows\Start Menu\uvxwsfusvx.sys'
- 'lyzrgtcwxf' %APPDATA%\Microsoft\Windows\Start Menu\uvxwsfusvx.sys
- %WINDIR%\syswow64\14852regsvr32.exe
- %APPDATA%\microsoft\windows\start menu\uvxwsfusvx.sys
- %APPDATA%\microsoft\windows\start menu\uvxwsfusvx.sys
- %APPDATA%\microsoft\windows\start menu\uvxwsfusvx.sys
- '10#.#60.34.101':8080