Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\jzzvllhx.exe
- %WINDIR%\Explorer.EXE
- %HOMEPATH%\Start Menu\Programs\Startup\jzzvllhx.exe
- 'ri###shhw.com':5894
- DNS ASK ri###shhw.com
- ClassName: '(null)' WindowName: 'File Monitor - Sysinternals: www.sysinternals.com'
- ClassName: '(null)' WindowName: 'Registry Monitor - Sysinternals: www.sysinternals.com'
- ClassName: '(null)' WindowName: 'T?? Wireshark Network Analyzer'
- ClassName: '(null)' WindowName: 'Process Monitor - Sysinternals: www.sysinternals.com'