Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Web Event Logger' = '{79FB9088-19CE-715E-D900-216290C5B738}'
- <SYSTEM32>\Jqolli32.exe
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1601' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4] '1601' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2] '1601' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1601' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1] '1601' = '00000000'
- <SYSTEM32>\hmjbaioijpel
- %TEMP%\heqjbgol.htm
- %TEMP%\ilelofbi.htm
- <SYSTEM32>\Jqolli32.exe
- <SYSTEM32>\Egndcdjp.dll
- <SYSTEM32>\hmjbaioijpel
- %TEMP%\heqjbgol.htm
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'IEFrame' WindowName: 'xIEPo$ter2 - Microsoft Internet Explorer'
- ClassName: 'IEFrame' WindowName: 'xIEPo$ter1 - Microsoft Internet Explorer'
- ClassName: '' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''