Техническая информация
- %WINDIR%\explorer.exe
- <SYSTEM32>\rundll32.exe "%TEMP%\3pzDyhBJ.dll," AgereEventlog BluetoothGLcdrom
- <SYSTEM32>\rundll32.exe "%TEMP%\PxrBbdMf.dll,DllUnregisterServer" install
- %TEMP%\kFMbGTzJ
- %TEMP%\3pzDyhBJ.dll
- %TEMP%\nss2.tmp\SelfDel.dll
- %TEMP%\PxrBbdMf.dll
- %TEMP%\nss2.tmp\GetVersion.dll
- %TEMP%\nss2.tmp\System.dll
- %TEMP%\nss2.tmp\inetc.dll
- %TEMP%\nss2.tmp\SelfDel.dll
- %TEMP%\nss2.tmp\System.dll
- %TEMP%\nss2.tmp\GetVersion.dll
- %TEMP%\nss2.tmp\inetc.dll
- 'up######.backkhapjui.co.cc':80
- up######.backkhapjui.co.cc/L3PFvDWKzQn5ho5ZHgSx2nFMMU0CvvZ4zp7xJMM/lZFuf5Myt2yXr9rh
- up######.backkhapjui.co.cc/FHrwQmXtAcWIHF12wzR9vJNV306b5mKO2U+Xmcbj6LEKYVpsThTcD/QzeHmK8n0SlgMBxmlM8vGff/3iT9vZb4vIduk2VRG8TDakqxTumZk=
- up######.backkhapjui.co.cc/HKbkYL9nS8szqiP6e28JJvlQoyZoy/5kgNlR9dqE8ZhUFfomB93Pyo6RgPI7+sbjgZbD8JtA4oa7w7sj
- DNS ASK up######.backkhapjui.co.cc
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''