Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58b640af-53c7-46bb-bc7e-b201f0799a4c}]
- %TEMP%\6e5423cc\zmnc0xobxfbi8mv.dat
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\guest\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\guest\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- <LS_APPDATA>\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- <LS_APPDATA>\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- <LS_APPDATA>\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- <LS_APPDATA>\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- <LS_APPDATA>\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\administrator\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- <LS_APPDATA>\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- <LS_APPDATA>\torch\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- <LS_APPDATA>\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- <LS_APPDATA>\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- <LS_APPDATA>\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- <LS_APPDATA>\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- %WINDIR%\syswow64\grouppolicy\gpt.ini
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\3@1lbees.org\bootstrap.js
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\3@1lbees.org\chrome.manifest
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\3@1lbees.org\content\bg.js
- %APPDATA%\mozilla\firefox\profiles\gn7ryp3k.default\extensions\staged\3@1lbees.org\install.rdf
- %ProgramFiles(x86)%\gousave\mzsqndfv0ailjd.dll
- %ProgramFiles(x86)%\gousave\mzsqndfv0ailjd.tlb
- %ProgramFiles(x86)%\gousave\mzsqndfv0ailjd.dat
- %ProgramFiles(x86)%\gousave\mzsqndfv0ailjd.x64.dll
- %PROGRAMDATA%\gousave\zmnc0xobxfbi8mv.exe
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\aspnet\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\guest\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\guest\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\guest\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\homegroupuser$\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- <LS_APPDATA>\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- %PROGRAMDATA%\gousave\zmnc0xobxfbi8mv.dat
- <LS_APPDATA>\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- %TEMP%\6e5423cc\mzsqndfv0ailjd.tlb
- %TEMP%\6e5423cc\mzsqndfv0ailjd.x64.dll
- %TEMP%\6e5423cc\3@1lbees.org\content\bg.js
- %TEMP%\6e5423cc\3@1lbees.org\bootstrap.js
- %TEMP%\6e5423cc\3@1lbees.org\chrome.manifest
- %TEMP%\6e5423cc\3@1lbees.org\install.rdf
- %TEMP%\6e5423cc\mzsqndfv0ailjd.dll
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\ynwuin.js
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\manifest.json
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\content.js
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\lsdb.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\background.html
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\chromatic browser\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- <LS_APPDATA>\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- <LS_APPDATA>\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- <LS_APPDATA>\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- <LS_APPDATA>\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- <LS_APPDATA>\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\administrator\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\aspnet\appdata\local\google\chrome sxs\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- <LS_APPDATA>\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\google\chrome\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\administrator\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\aspnet\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\lsdb.js
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- C:\users\guest\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\ynwuin.js
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\background.html
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\content.js
- C:\users\homegroupuser$\appdata\local\comodo\dragon\user data\default\extensions\ldcjjnnhbejchkddamkoipjfalnpephc\2.0\manifest.json
- %PROGRAMDATA%\b959d6fa45457b60\{c87834eb-a2a0-b9d4-aa9a-c263d1191051}.20191023184023
- %TEMP%\6e5423cc\zmnc0xobxfbi8mv.dat
- %TEMP%\6e5423cc\mzsqndfv0ailjd.dll
- %TEMP%\6e5423cc\mzsqndfv0ailjd.tlb
- %TEMP%\6e5423cc\mzsqndfv0ailjd.x64.dll
- %TEMP%\6e5423cc\3@1lbees.org\content\bg.js
- %TEMP%\6e5423cc\3@1lbees.org\bootstrap.js
- %TEMP%\6e5423cc\3@1lbees.org\chrome.manifest
- %TEMP%\6e5423cc\3@1lbees.org\install.rdf
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\ynwuin.js
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\background.html
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\manifest.json
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\content.js
- %TEMP%\6e5423cc\ldcjjnnhbejchkddamkoipjfalnpephc\lsdb.js
- %PROGRAMDATA%\ntuser.pol
- '%WINDIR%\syswow64\regsvr32.exe' /s "%ProgramFiles(x86)%\GOuSaVe\MZsqndfv0aILJD.x64.dll"
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles(x86)%\GOuSaVe\MZsqndfv0aILJD.x64.dll"
- '<SYSTEM32>\raserver.exe' /offerraupdate