Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Sulofufuquz] 'Start' = '00000002'
- <SYSTEM32>\syswnt.exe
- <SYSTEM32>\Peednykia.exe
- %TEMP%\FastPingInstall.exe
- %TEMP%\DirextX.exe
- <SYSTEM32>\svchost.exe -k Xotabekex
- <SYSTEM32>\cmd.exe /c ""%TEMP%\_uninsep.bat" "
- <SYSTEM32>\golfinfo.ini
- %TEMP%\_uninsep.bat
- <SYSTEM32>\syswnt.exe
- <SYSTEM32>\gbp.ini
- <SYSTEM32>\Doroqopaa.dll
- <SYSTEM32>\Peednykia.exe
- %TEMP%\livecodec.txt
- %TEMP%\temp1234.dat
- %TEMP%\FastPingInstall.exe
- %TEMP%\DirextX.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\livecodec[1].txt
- %TEMP%\fastping.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\fastping[1].txt
- %TEMP%\DirextX.exe
- <SYSTEM32>\syswnt.exe
- %TEMP%\temp1234.dat
- <SYSTEM32>\golfinfo.ini
- '27.##5.205.36':11130
- '12#.#54.231.131':11180
- 'www.fa###ing.co.kr':80
- 'localhost':1041
- www.fa###ing.co.kr/4g/license/livecodec.txt
- www.fa###ing.co.kr/4g/license/fastping.txt
- www.fa###ing.co.kr/4g/update/install.php
- DNS ASK www.fa###ing.co.kr
- ClassName: 'Shell_TrayWnd' WindowName: ''