Техническая информация
- '<SYSTEM32>\fiui.exe'
- '<SYSTEM32>\ptefi.exe' wqycg
- '<SYSTEM32>\wqycg.exe'
- '<SYSTEM32>\wccrrf.exe' wqycg
- %TEMP%\nsh5.tmp\System.dll
- <SYSTEM32>\tsmfl.dll
- <SYSTEM32>\ClearTemp.exe
- %TEMP%\nsh5.tmp\AccessControl.dll
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Жф¶ЇдЇААЖч.lnk
- <SYSTEM32>\Log\Install.log
- %TEMP%\nsh5.tmp\ShellLink.dll
- <Текущая директория>\perffilt.ini
- %TEMP%\~TMP32BF.tmp
- %TEMP%\nst2.tmp\System.dll
- %TEMP%\nst2.tmp\AccessControl.dll
- <SYSTEM32>\Launch_IE.exe
- <SYSTEM32>\IEMon.exe
- <SYSTEM32>\Launcher.exe
- <SYSTEM32>\ptefi.exe
- <SYSTEM32>\qsavg.dll
- <SYSTEM32>\Log\Install.log
- <SYSTEM32>\fiui.exe
- %TEMP%\~TMP32BF.tmp
- <SYSTEM32>\wqycg.exe
- <SYSTEM32>\wccrrf.exe
- %TEMP%\nsh5.tmp\ShellLink.dll
- %TEMP%\nsh5.tmp\System.dll
- %TEMP%\nsh5.tmp\AccessControl.dll
- %TEMP%\nst2.tmp\AccessControl.dll
- %TEMP%\nst2.tmp\System.dll
- <SYSTEM32>\ClearTemp.exe в <SYSTEM32>\ptefi.exe
- <SYSTEM32>\tsmfl.dll в <SYSTEM32>\qsavg.dll
- <SYSTEM32>\Launch_IE.exe в <SYSTEM32>\fiui.exe
- <SYSTEM32>\Launcher.exe в <SYSTEM32>\wqycg.exe
- <SYSTEM32>\IEMon.exe в <SYSTEM32>\wccrrf.exe
- 'co####.netbarad.net':80
- co####.netbarad.net/homepagepic.aspx?us###############################
- DNS ASK co####.netbarad.net