Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Ttzmtyuvmek Mhikytad Uho Esqes] 'Start' = '00000002'
- %PROGRAM_FILES%\Zvtbsh Zikvanqa\explorer.exe
- %WINDIR%\explorer.exe /idlist,:264:2412,%PROGRAM_FILES%
- %PROGRAM_FILES%\Lzxfpsgtfr\202
- %PROGRAM_FILES%\Lzxfpsgtfr\18291
- %PROGRAM_FILES%\Lzxfpsgtfr\Path.rcd
- %PROGRAM_FILES%\Zvtbsh Zikvanqa\explorer.exe
- %PROGRAM_FILES%\Lzxfpsgtfr\Path.rcd
- '12#.#pa520.com':6783
- DNS ASK 12#.#pa520.com
- '<IP-адрес в локальной сети>':1034
- ClassName: '' WindowName: '??????????'
- ClassName: 'FlashPlayer' WindowName: ''
- ClassName: '' WindowName: '????'
- ClassName: 'MacromediaFlashPlayerActiveX' WindowName: ''
- ClassName: '' WindowName: '1'
- ClassName: '????MM????????????????????' WindowName: ''
- ClassName: '' WindowName: ','
- ClassName: '???????? - ???????????????? - ????????????' WindowName: ''
- ClassName: 'PPLAbmWindow' WindowName: ''
- ClassName: '' WindowName: '????????????'
- ClassName: 'PPTV????????' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'CabinetWClass' WindowName: ''
- ClassName: 'PPL Flash Window' WindowName: ''
- ClassName: '' WindowName: '??????????????????????'
- ClassName: 'PPS????????' WindowName: ''
- ClassName: '' WindowName: '????????'