Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'DZ' = '%PROGRAM_FILES%\DZ\Sogou.exe'
- '%PROGRAM_FILES%\DZ\Sogou.exe'
- 'C:\DNFѕшЙ±1.60.exe'
- 'C:\Svchost.exe'
- '<SYSTEM32>\taskkill.exe' /f /im Ksafetray.exe
- dnf.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\juesha[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\dnf2020[1]
- C:\Svchost.exe
- C:\DNFѕшЙ±1.60.exe
- C:\DNFѕшЙ±1.60.exe
- C:\Svchost.exe
- C:\Svchost.exe в %PROGRAM_FILES%\DZ\Sogou.exe
- 'www.dn##44.com':87
- 'www.dn##020.com':80
- 'localhost':1042
- 'xx#####1750.gicp.net':1750
- 'localhost':1041
- www.dn##020.com/
- www.dn##020.com/juesha.htm
- DNS ASK www.dn##020.com
- DNS ASK www.dn##44.com
- DNS ASK xx#####1750.gicp.net
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''