Техническая информация
- %WINDIR%\explorer.exe
- <SYSTEM32>\rundll32.exe "%TEMP%\JtTBVhHb.dll," CdapiInit QuickAuthenticationNotifier
- <SYSTEM32>\rundll32.exe "%TEMP%\4WHBkhcm.dll,DllUnregisterServer" install
- %TEMP%\bVcqQFW6
- %TEMP%\JtTBVhHb.dll
- %TEMP%\nsn2.tmp\SelfDel.dll
- %TEMP%\4WHBkhcm.dll
- %TEMP%\nsn2.tmp\GetVersion.dll
- %TEMP%\nsn2.tmp\System.dll
- %TEMP%\nsn2.tmp\inetc.dll
- %TEMP%\nsn2.tmp\SelfDel.dll
- %TEMP%\nsn2.tmp\System.dll
- %TEMP%\nsn2.tmp\GetVersion.dll
- %TEMP%\nsn2.tmp\inetc.dll
- 'sc####.beyconra.co.cc':80
- sc####.beyconra.co.cc/qmM6XTHwSSGypiRWOIhPpzqp5opSA/oy0d2vigXQseiUJ0rp6G/ivTVd
- sc####.beyconra.co.cc/7qbNLkhtwLzu49mym2ceiOa5BDlk35OJoY7w+7o4tlxV81nIOKfCaGLZkaVJEYGt0y/20vO8CzHjUUbYTLbibTb8/Et4PCNNZI7j1P/Z6vs=
- sc####.beyconra.co.cc/YHd7gkZ8/znMrKQhTnuodtlcscAHjsFVq4KY+C9743cy6eyIG7j/1hePKC1/+tRw8rIZ8GIV7vWBdQ8+
- DNS ASK sc####.beyconra.co.cc
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''