Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{FC1A2802-C13B-0205-BD4D-70831E6EA506}] 'StubPath' = '%TEMP%\jteatt.exe'
- <LS_APPDATA>\Xenocode\ApplianceCaches\jt11111.exe_v05A35561\Native\STUBEXE\@PROFILE@\Local Settings\Temp\jteatt.exe
- <LS_APPDATA>\Xenocode\ApplianceCaches\jt11111.exe_v05A35561\Native\STUBEXE\@PROFILE@\Local Settings\Temp\ya_ghayeb.exe
- %WINDIR%\Explorer.EXE
- %TEMP%\jteatt.exe
- %TEMP%\ya_ghayeb.exe
- 'sk###.servepics.com':3460
- DNS ASK sk###.servepics.com
- ClassName: 'Shell_TrayWnd' WindowName: ''