Техническая информация
- '%TEMP%\676d5e77\NgCO2ho.exe'
- '<SYSTEM32>\RAServer.exe' /offerraupdate
- '<SYSTEM32>\svchost.exe' -k secsvcs
- '<SYSTEM32>\taskhost.exe' SYSTEM
- C:\ProgramData\YoutubeAdblocker\NgCO2ho.exe
- <SYSTEM32>\GroupPolicy\Machine\Registry.pol
- C:\ProgramData\YoutubeAdblocker\NgCO2ho.dat
- C:\ProgramData\ntuser.pol
- C:\ProgramData\5dc763d7b6575a38\{CF830981-8F31-C561-C7A0-FE2CE1878B40}
- C:\ProgramData\YoutubeAdblocker\fjgofjmlefbdakloadkjjoooofonmjjh\fjgofjmlefbdakloadkjjoooofonmjjh.crx.update.xml
- %TEMP%\676d5e77\NgCO2ho.exe
- %TEMP%\676d5e77\NgCO2ho.dat
- %TEMP%\676d5e77\fjgofjmlefbdakloadkjjoooofonmjjh.crx
- <SYSTEM32>\GroupPolicy\gpt.ini
- C:\ProgramData\YoutubeAdblocker\fjgofjmlefbdakloadkjjoooofonmjjh\fjgofjmlefbdakloadkjjoooofonmjjh.crx
- %TEMP%\676d5e77\fjgofjmlefbdakloadkjjoooofonmjjh.crx
- %TEMP%\676d5e77\NgCO2ho.exe
- %TEMP%\676d5e77\NgCO2ho.dat