Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'iTaRjJOa6JYniCRZKNefyic' = '"%TEMP%\Google Chrome.exe" ..'
- %HOMEPATH%\start menu\programs\startup\itarjjoa6jynicrzknefyic.exe
- %ALLUSERSPROFILE%\application data\mix\mix\1.0.0.0\temp\googlechrome.exe
- %ALLUSERSPROFILE%\application data\mix\mix\1.0.0.0\temp\kmsautonet.exe
- %TEMP%\google chrome.exe
- %HOMEPATH%\start menu\programs\startup\itarjjoa6jynicrzknefyic.exe
- DNS ASK am####2018.ddns.net
- '%ALLUSERSPROFILE%\application data\mix\mix\1.0.0.0\temp\googlechrome.exe'
- '%TEMP%\google chrome.exe'