Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\AiFpPdp30FUQsb.sbtx] 'ImagePath' = '%WINDIR%\SysWOW64\drivers\rPFZgpB46spgZB.sbtx'
- 'AiFpPdp30FUQsb.sbtx' %WINDIR%\SysWOW64\drivers\rPFZgpB46spgZB.sbtx
- %WINDIR%\syswow64\drivers\rpfzgpb46spgzb.sbtx
- C:\80.txt
- C:\80.txt
- %WINDIR%\syswow64\drivers\rpfzgpb46spgzb.sbtx в %TEMP%\1100493\....\temporaryfile
- 'ya###engba.cn':80
- http://www.ya###engba.cn/api.php
- DNS ASK ya###engba.cn