Техническая информация
- %WINDIR%\Tasks\Windows Update 80251487.job
- %WINDIR%\Tasks\Windows Update bb9d9160.job
- %WINDIR%\Tasks\Windows Update dda9c790.job
- %WINDIR%\Tasks\Windows Update f118abd8.job
- %WINDIR%\Tasks\Windows Update 9059a83e.job
- %WINDIR%\Tasks\Windows Update 11bcc632.job
- '<SYSTEM32>\rundll32.exe' "%ALLUSERSPROFILE%\Application Data\Winlogon\winlogon.lnk",DllGetClassObject host
- %ALLUSERSPROFILE%\Application Data\Winlogon\cec3aeb76b98
- %ALLUSERSPROFILE%\Application Data\Winlogon\winlogon.lnk
- %TEMP%\1.tmp
- %WINDIR%\Tasks\Windows Update bb9d9160.job
- %WINDIR%\Tasks\Windows Update dda9c790.job
- %WINDIR%\Tasks\Windows Update f118abd8.job
- %WINDIR%\Tasks\Windows Update 11bcc632.job
- %WINDIR%\Tasks\Windows Update 80251487.job
- %WINDIR%\Tasks\Windows Update 9059a83e.job
- %ALLUSERSPROFILE%\Application Data\Winlogon\cec3aeb76b98
- %TEMP%\1.tmp
- %TEMP%\1.tmp
- '19#.#83.98.154':53
- '13#.#55.73.90':53
- 'ca######ey-analitica.bit':80
- '10#.69.8.34':53
- '50.##6.23.211':53
- '10#.#86.17.181':53
- 'dn#.#ot-bit.org':53
- DNS ASK ca######ey-analitica.bit
- DNS ASK dn#.#ot-bit.org
- ClassName: 'd1dcb1a87487' WindowName: 'd6dbb6af73800'