Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f5948863-6ffc-492a-bef4-0e02c008f70c}]
- %TEMP%\0a165618\kf9hgvnfw30rn8o.dat
- %TEMP%\0a165618\zk6fg98szedzz2.dll
- %TEMP%\0a165618\zk6fg98szedzz2.tlb
- %TEMP%\0a165618\zk6fg98szedzz2.x64.dll
- %ProgramFiles(x86)%\goosoave\zk6fg98szedzz2.dll
- %ProgramFiles(x86)%\goosoave\zk6fg98szedzz2.tlb
- %ProgramFiles(x86)%\goosoave\zk6fg98szedzz2.dat
- %ProgramFiles(x86)%\goosoave\zk6fg98szedzz2.x64.dll
- %ALLUSERSPROFILE%\goosoave\kf9hgvnfw30rn8o.exe
- %ALLUSERSPROFILE%\goosoave\kf9hgvnfw30rn8o.dat
- %ALLUSERSPROFILE%\eb7871e0db1f2653\{c87834eb-a2a0-b9d4-aa9a-c263d1191051}.20230203212252
- %TEMP%\0a165618\kf9hgvnfw30rn8o.dat
- %TEMP%\0a165618\zk6fg98szedzz2.dll
- %TEMP%\0a165618\zk6fg98szedzz2.tlb
- %TEMP%\0a165618\zk6fg98szedzz2.x64.dll
- '%WINDIR%\syswow64\regsvr32.exe' /s "%ProgramFiles(x86)%\GooSoave\zk6Fg98sZEdzZ2.x64.dll"
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles(x86)%\GooSoave\zk6Fg98sZEdzZ2.x64.dll"