Техническая информация
- %WINDIR%\syswow64\svchost.exe
- %WINDIR%\syswow64\help\0202021dsfsd.ini
- %WINDIR%\syswow64\help\1.xyuavke
- %WINDIR%\syswow64\help\2.xyuavke
- %WINDIR%\syswow64\xyuavke\xyuavke\jblphtc\m.ini
- %WINDIR%\2.ini
- %WINDIR%\help\xyuavke.hlp
- %WINDIR%\syswow64\xyuavke\xyuavke\jblphtc\fbynbqd.exe
- <SYSTEM32>\spool\drivers\w32x86\3\yuavkex\yuavkex.exe
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex000.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex001.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex002.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex003.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex004.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex005.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex006.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex007.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex008.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex009.imd
- D:\recycler\s-1-5-18\dc8\yuavkex\yuavkex010.imd
- '%WINDIR%\syswow64\xyuavke\xyuavke\jblphtc\fbynbqd.exe' -close
- '%WINDIR%\syswow64\svchost.exe' -NetworkService
- '%WINDIR%\syswow64\xyuavke\xyuavke\jblphtc\fbynbqd.exe' -close (со скрытым окном)