Техническая информация
- '<LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\zbxw9ot94axbaz.exe'
- '<LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\0sg99uk.exe'
- '<LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\zbxw9ot94axbaz.exe' (загружен из сети Интернет)
- '<LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\0sg99uk.exe' (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\Ltrew[1].png
- <LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\zbxw9ot94axbaz.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Ghikd[1].png
- <LS_APPDATA>\{0AOKU4CL-SGK6-1H67-L54T-Q9TKDBTA6FGV}\0sg99uk.exe
- 'lo########da33.web142.f1.k8.com.br':80
- lo########da33.web142.f1.k8.com.br/imgtmp/Ltrew.png
- lo########da33.web142.f1.k8.com.br/imgtmp/Ghikd.png
- DNS ASK lo########da33.web142.f1.k8.com.br
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'TStartupSys' WindowName: '(null)'