Техническая информация
- [\REGISTRY\USER\S-1-5-21-3691498038-2086406363-2140527554-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '2500' = '00000003'
- %TEMP%\nsnc726.tmp
- %TEMP%\nsic756.tmp\uac.dll
- %TEMP%\nsic756.tmp\system.dll
- %TEMP%\nsic756.tmp\math.dll
- %WINDIR%\syswow64\-bs6qml-_3.dll
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\1305016
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\low\1304711
- %APPDATA%\microsoft\crypto\rsa\s-1-5-21-3691498038-2086406363-2140527554-1000\6fb6ec85c9f49ae98f766e9d733d1181_0cb67e2f-dc95-45ca-8fb8-69bde8e3f814
- %TEMP%\nsic756.tmp\nsiedbb.tmp
- %WINDIR%\syswow64\a_--kfkyvq0q-v0.exe
- %ALLUSERSPROFILE%\microsoft\windows\start menu\programs\babelfish\uninstall loudmo contextual ad assistant.lnk
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\1305016
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\low\1304711
- %TEMP%\nsic756.tmp\math.dll
- %TEMP%\nsic756.tmp\nsiedbb.tmp
- %TEMP%\nsic756.tmp\system.dll
- %TEMP%\nsic756.tmp\uac.dll
- DNS ASK bf.####lfishnetwork.com