Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_Dlls' = 'nhmxcjkl.dll'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] '{37AC9076-C898-B098-D098-A18319080973}' = 'nhmxcjkl.dll'
- <SYSTEM32>\lpmxajkl.exe
- <SYSTEM32>\cmd.exe /c %TEMP%\~DFD297796.bat
- %WINDIR%\Explorer.EXE
- maplestory.exe
- %TEMP%\~DFD297796.bat
- <SYSTEM32>\wymxajkl.sys
- <SYSTEM32>\rnmxajkl.sys
- <SYSTEM32>\nhmxcjkl.dll
- <SYSTEM32>\lpmxajkl.exe
- <SYSTEM32>\rnmxajkl.sys
- <SYSTEM32>\nhmxcjkl.dll
- <SYSTEM32>\lpmxajkl.exe