Техническая информация
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit4a36.tmp
- %WINDIR%\tasks\explorer.job
- <SYSTEM32>\tasks\explorer
- %WINDIR%\syswow64\cmd.exe
- %TEMP%\nsj1cb2.tmp\system.dll
- %TEMP%\autorun.exe
- %TEMP%\xserver-xorg-video-nouveau-hwe-18.04.md5sums
- %TEMP%\vnd.wap.wmlscript.xml
- %TEMP%\libnssnis.so.2
- %TEMP%\activesyncbootstrap.dll
- %TEMP%\spirilla
- %TEMP%\babel.exe
- %TEMP%\nightwear.dll
- %APPDATA%\adobe\linguistics\bit410d.tmp
- %TEMP%\fcc1174.lnk
- %APPDATA%\adobe\linguistics\bit410d.tmp
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit4a36.tmp
- %TEMP%\nsj1cb2.tmp\system.dll
- %APPDATA%\adobe\linguistics\bit410d.tmp в %APPDATA%\adobe\linguistics\explorer.exe
- 'ar#####e20.myq-see.com':5487
- DNS ASK ar#####e20.myq-see.com
- '%TEMP%\babel.exe'
- '%WINDIR%\syswow64\regsvr32.exe' /s dtssource.ax
- '%WINDIR%\syswow64\cmd.exe'