Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\genei.lnk
- %WINDIR%\explorer.exe
- <SYSTEM32>\ctfmon.exe
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4] '1609' = '00000000'
- %TEMP%\bootstrap-dropdown.min.js
- %TEMP%\app-loading.min.css
- %TEMP%\dbc481a88c.css
- %TEMP%\1458071417798.png
- %TEMP%\485ebf2fb0.css
- %TEMP%\favicon.ico
- %TEMP%\pgVScdzZeP.yJjlAUnegdTq
- %TEMP%\nsg2.tmp\System.dll
- %ALLUSERSPROFILE%\Application Data\nyfa\genei.exe
- <Полный путь к файлу>
- 'wo###pplier.ga':443
- DNS ASK wo###pplier.ga
- '%WINDIR%\explorer.exe'