Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'TFM0N' = 'c:\TQX3LU137E1X1VE7\Nxvqk.exe'
- 'C:\TQX3LU137E1X1VE7\Nxvqk.exe'
- 'C:\cache\Install.exe'
- C:\TQX3LU137E1X1VE7\setting.xml
- C:\1.txt
- C:\cache\Install.exe
- %TEMP%\nsq2.tmp\Banner.dll
- C:\cache\Config.ini
- %TEMP%\nsq2.tmp\Banner.dll
- C:\cache\Install.exe в C:\TQX3LU137E1X1VE7\Nxvqk.exe
- C:\cache\Config.ini в C:\TQX3LU137E1X1VE7\Config.ini
- '98.##6.220.101':23456
- '11#.#4.196.132':9964
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''