Техническая информация
- '<SYSTEM32>\rundll32.exe' dfdts.dll,DfdGetDefaultPolicyAndSMART
- %HOMEPATH%\Documents\zkgpbah.html
- %HOMEPATH%\Documents\DecryptAllFiles 469797.txt
- %HOMEPATH%\Documents\AllFilesAreLocked 469812.bmp
- C:\ProgramData\Microsoft\dqxlgtk
- %TEMP%\xubcgfd.exe
- <SYSTEM32>\Tasks\jjfqvej
- '86.#9.21.38':443
- '19#.#3.244.244':443
- 'localhost':49158
- DNS ASK dn#.##ftncsi.com
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebCheckMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'SystemTray_Main' WindowName: '(null)'