Техническая информация
- '%HOMEPATH%\u39G88kK\hosts.exe'
- '%HOMEPATH%\l95W11jB\adobeflashplayer.exe'
- '%HOMEPATH%\fff.exe'
- '%HOMEPATH%\hostz.exe'
- %HOMEPATH%\i86P84bC.PM2
- %HOMEPATH%\l38W33fB.DE9
- %TEMP%\aut3.tmp
- %TEMP%\aut4.tmp
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\Preferred
- %APPDATA%\Microsoft\Crypto\RSA\S-1-5-21-2052111302-484763869-725345543-1003\ec702f375e1b12d218f67ab9ef19ca23_23ef5514-3059-436f-a4a7-4cefaab20eb1
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\76d20a22-52a3-45b6-9ed6-92ab00573dd7
- %TEMP%\aut2.tmp
- %HOMEPATH%\hostz.exe
- %TEMP%\aut1.tmp
- %HOMEPATH%\fff.exe
- %HOMEPATH%\u39G88kK\hosts.exe
- %HOMEPATH%\u39G88kK\DF.SCS
- %HOMEPATH%\l95W11jB\adobeflashplayer.exe
- %HOMEPATH%\l95W11jB\BP.PQL
- %HOMEPATH%\i86P84bC.PM2
- %HOMEPATH%\l38W33fB.DE9
- %HOMEPATH%\fff.exe
- %HOMEPATH%\hostz.exe
- %TEMP%\aut4.tmp
- %HOMEPATH%\i86P84bC.PM2
- %HOMEPATH%\l38W33fB.DE9
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- %TEMP%\aut3.tmp
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'