Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Browser Parental Tablet Update COM DNS' = 'C:\szdbeislpql\lkmzlnt.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Access Call Panel Process] 'Start' = '00000002'
- 'C:\szdbeislpql\yzpuoryu.exe' "c:\szdbeislpql\lkmzlnt.exe"
- 'C:\szdbeislpql\lkmzlnt.exe'
- 'C:\szdbeislpql\ly18508ppy5xxwlgptg.exe'
- C:\szdbeislpql\lkmzlnt.exe
- C:\szdbeislpql\yzpuoryu.exe
- C:\szdbeislpql\wpysabrs4kiu
- %WINDIR%\szdbeislpql\sv5epzonzbwv
- C:\szdbeislpql\sv5epzonzbwv
- C:\szdbeislpql\ly18508ppy5xxwlgptg.exe
- C:\szdbeislpql\yzpuoryu.exe
- C:\szdbeislpql\lkmzlnt.exe
- C:\szdbeislpql\ly18508ppy5xxwlgptg.exe
- %WINDIR%\szdbeislpql\sv5epzonzbwv
- 'se####nothing.net':80
- 'qu####othing.net':80
- 'se####stream.net':80
- http://se####nothing.net/index.php?me########
- http://qu####othing.net/index.php?me########
- http://se####stream.net/index.php?me########
- DNS ASK qu###bottle.net
- DNS ASK se####bottle.net
- DNS ASK se####nothing.net
- DNS ASK se####stream.net
- DNS ASK qu####othing.net
- ClassName: 'Shell_TrayWnd' WindowName: ''