Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Search Call System Detection Studio Connections' = '%APPDATA%\sjbksgrrk2v\pvi5ph5nr.exe'
- '%APPDATA%\sjbksgrrk2v\o0gp45.exe' "%APPDATA%\sjbksgrrk2v\pvi5ph5nr.exe"
- '%APPDATA%\sjbksgrrk2v\pvi5ph5nr.exe'
- %APPDATA%\sjbksgrrk2v\pvi5ph5nr.o81
- %APPDATA%\sjbksgrrk2v\o0gp45.exe
- %APPDATA%\sjbksgrrk2v\pvi5ph5nr.exe
- %APPDATA%\sjbksgrrk2v\pvi5ph5nr.exe
- 'pe####sready.net':80
- pe####sready.net/index.php?em####################################################
- DNS ASK fi###hbrown.net
- DNS ASK le###brown.net
- DNS ASK fi####people.net
- DNS ASK su####tdaughter.net
- DNS ASK fi###hready.net
- DNS ASK le###ready.net
- DNS ASK sw###ready.net
- DNS ASK pr####lyready.net
- DNS ASK sw###brown.net
- DNS ASK le###people.net
- DNS ASK fi####daughter.net
- DNS ASK le####aughter.net
- DNS ASK su####tpeople.net
- DNS ASK wi###wbrown.net
- DNS ASK pe####speople.net
- DNS ASK wi####people.net
- DNS ASK pe####sready.net
- DNS ASK wi###wready.net
- DNS ASK pe####sbrown.net
- DNS ASK su####tready.net
- DNS ASK wi###rbrown.net
- DNS ASK su####tbrown.net
- DNS ASK pe####sdaughter.net
- DNS ASK wi####daughter.net
- DNS ASK wi###rready.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''