Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'CNG Video Filtering HomeGroup' = '<LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.exe'
- '<LS_APPDATA>\ympuonmpdgh\bynimboowwp.exe' "<LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.exe"
- '<LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.exe'
- <LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.tsto
- <LS_APPDATA>\ympuonmpdgh\bynimboowwp.exe
- <LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.exe
- <LS_APPDATA>\ympuonmpdgh\bynimboowwp.exe
- <LS_APPDATA>\ympuonmpdgh\rbqurmgffksh.exe
- 'of####eeting.net':80
- 'al###chance.net':80
- 'of###chance.net':80
- of####eeting.net/forum/search.php?em####################################################
- al###chance.net/forum/search.php?em####################################################
- of###chance.net/forum/search.php?em####################################################
- DNS ASK tw####chance.net
- DNS ASK mi####chance.net
- DNS ASK al####nderstood.net
- DNS ASK mi####meeting.net
- DNS ASK tw####twenty.net
- DNS ASK mi####twenty.net
- DNS ASK tw####meeting.net
- DNS ASK of####eeting.net
- DNS ASK al###chance.net
- DNS ASK of###chance.net
- DNS ASK al####eeting.net
- DNS ASK of####nderstood.net
- DNS ASK al###twenty.net
- DNS ASK of###twenty.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''