Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'rundll32.exe' = ''
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'WAB' = '%APPDATA%\Macromedia\Common\11ffe07c19.exe'
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] 'midi2' = '%APPDATA%\macromedia\Common\11ffe07c1.dll'
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] 'wave1' = '%APPDATA%\macromedia\Common\11ffe07c1.dll'
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] 'aux1' = '%APPDATA%\macromedia\Common\11ffe07c1.dll'
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Drivers32] 'mixer2' = '%APPDATA%\macromedia\Common\11ffe07c1.dll'
- %APPDATA%\macromedia\common\11ffe07c1.dll
- %APPDATA%\macromedia\common\11ffe07c19.exe
- 'co##############e-chains.prod.autograph.services.mozaws.net':443
- DNS ASK co##############e-chains.prod.autograph.services.mozaws.net