Техническая информация
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7f377cda-f3e2-4c36-94eb-740b7742cedd}]
- %TEMP%\53d25750\dglgbuun8ng0nzh.dat
- %TEMP%\53d25750\jxzos8c3j0dmsi.dll
- %TEMP%\53d25750\jxzos8c3j0dmsi.tlb
- %TEMP%\53d25750\jxzos8c3j0dmsi.x64.dll
- %ProgramFiles(x86)%\gosaave\jxzos8c3j0dmsi.dll
- %ProgramFiles(x86)%\gosaave\jxzos8c3j0dmsi.tlb
- %ProgramFiles(x86)%\gosaave\jxzos8c3j0dmsi.dat
- %ProgramFiles(x86)%\gosaave\jxzos8c3j0dmsi.x64.dll
- %ALLUSERSPROFILE%\gosaave\dglgbuun8ng0nzh.exe
- %ALLUSERSPROFILE%\gosaave\dglgbuun8ng0nzh.dat
- %ALLUSERSPROFILE%\fed30f18d5e603a5\{c87834eb-a2a0-b9d4-aa9a-c263d1191051}.20250602213641
- %TEMP%\53d25750\dglgbuun8ng0nzh.dat
- %TEMP%\53d25750\jxzos8c3j0dmsi.dll
- %TEMP%\53d25750\jxzos8c3j0dmsi.tlb
- %TEMP%\53d25750\jxzos8c3j0dmsi.x64.dll
- '%WINDIR%\syswow64\regsvr32.exe' /s "%ProgramFiles(x86)%\GoSaave\jXZos8C3J0DmsI.x64.dll"
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles(x86)%\GoSaave\jXZos8C3J0DmsI.x64.dll"