Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Audio HDi Driver' = '"<SYSTEM32>\audiohd.exe"'
- скрытых файлов
- %CommonProgramFiles%\WUAuthHost.exe
- <SYSTEM32>\audiohd.exe
- %CommonProgramFiles%\WUAuthHost.exe
- <SYSTEM32>\audiohd.exe
- %CommonProgramFiles%\WUAuthHost.exe
- <SYSTEM32>\audiohd.exe
- 'ma#####.cardmarket.su':80
- ma#####.cardmarket.su/Webpanel/gate.php
- DNS ASK ma#####.cardmarket.su