Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'Parametr' = 'C:\SysDrv45\xdobec.exe'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce] 'Parametr' = 'C:\LabZJ2\boddevec.exe'
- %HOMEPATH%\262143995904_10.0_user.ini
- C:\sysdrv45\xdobec.exe
- C:\labzj2\boddevec.exe
- DNS ASK pr##.###########nature-chains.prod.webservices.mozgcp.net
- ClassName: 'OleMainThreadWndClass' WindowName: ''
- 'C:\sysdrv45\xdobec.exe'
- 'C:\sysdrv45\xdobec.exe' ' (со скрытым окном)
- '<SYSTEM32>\searchprotocolhost.exe' Global\UsGthrFltPipeMssGthrPipe3_ Global\UsGthrCtrlFltPipeMssGthrPipe3 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "%...
- '<SYSTEM32>\searchfilterhost.exe' 0 776 780 788 8192 784