Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemefeol.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemusznr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrrqxq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemzpnle.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemmjapk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwjngt.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemmegkh.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemeafyi.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnfmyw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnxxbv.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfettg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemydgkc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemctnfc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemewaez.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemipcpk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnzuqd.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemthhcj.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfcnea.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemxuazm.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvmhtr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhlkpq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemctcxh.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemkfmfw.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemsatnm.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvvgif.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqdisn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemagjtl.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembeeqx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgogkd.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfzqdq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtnrlo.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqldnf.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgqyjg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnavlz.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgxbrc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemyponp.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjghie.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwxnwm.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemtacwj.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemddcek.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemoyjkb.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembldgn.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemhcanr.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemuxrtq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembtgcy.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemrunif.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqembckmk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemwpcqq.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemcbdzf.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjyvwx.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemzrtai.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemaehlg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemqmcqt.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemixver.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvcpsk.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdaffp.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemfkxah.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemgvqof.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemsmupc.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemydaeg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemolocs.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvwadg.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemosbbo.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemdrhwb.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemnugeu.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemvllas.exe'
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'load' = '%TEMP%\Sysqemjvbab.exe'
- '%TEMP%\Sysqemzpnle.exe'
- '%TEMP%\Sysqemefeol.exe'
- '%TEMP%\Sysqemewaez.exe'
- '%TEMP%\Sysqemrrqxq.exe'
- '%TEMP%\Sysqemeafyi.exe'
- '%TEMP%\Sysqemmjapk.exe'
- '%TEMP%\Sysqemusznr.exe'
- '%TEMP%\Sysqemmegkh.exe'
- '%TEMP%\Sysqemydgkc.exe'
- '%TEMP%\Sysqemnfmyw.exe'
- '%TEMP%\Sysqemnavlz.exe'
- '%TEMP%\Sysqemfettg.exe'
- '%TEMP%\Sysqemnzuqd.exe'
- '%TEMP%\Sysqemctnfc.exe'
- '%TEMP%\Sysqemnxxbv.exe'
- '%TEMP%\Sysqemipcpk.exe'
- '%TEMP%\Sysqemwjngt.exe'
- '%TEMP%\Sysqemhlkpq.exe'
- '%TEMP%\Sysqemfcnea.exe'
- '%TEMP%\Sysqemtnrlo.exe'
- '%TEMP%\Sysqemvmhtr.exe'
- '%TEMP%\Sysqemvvgif.exe'
- '%TEMP%\Sysqemctcxh.exe'
- '%TEMP%\Sysqemxuazm.exe'
- '%TEMP%\Sysqemsatnm.exe'
- '%TEMP%\Sysqemgogkd.exe'
- '%TEMP%\Sysqemqdisn.exe'
- '%TEMP%\Sysqemthhcj.exe'
- '%TEMP%\Sysqembeeqx.exe'
- '%TEMP%\Sysqemgqyjg.exe'
- '%TEMP%\Sysqemfzqdq.exe'
- '%TEMP%\Sysqemagjtl.exe'
- '%TEMP%\Sysqemqldnf.exe'
- '%TEMP%\Sysqemgxbrc.exe'
- '%TEMP%\Sysqemyponp.exe'
- '%TEMP%\Sysqemjghie.exe'
- '%TEMP%\Sysqemwxnwm.exe'
- '%TEMP%\Sysqemtacwj.exe'
- '%TEMP%\Sysqemddcek.exe'
- '%TEMP%\Sysqemoyjkb.exe'
- '%TEMP%\Sysqembldgn.exe'
- '%TEMP%\Sysqemhcanr.exe'
- '%TEMP%\Sysqemuxrtq.exe'
- '%TEMP%\Sysqembtgcy.exe'
- '%TEMP%\Sysqemrunif.exe'
- '%TEMP%\Sysqembckmk.exe'
- '%TEMP%\Sysqemwpcqq.exe'
- '%TEMP%\Sysqemcbdzf.exe'
- '%TEMP%\Sysqemjyvwx.exe'
- '%TEMP%\Sysqemzrtai.exe'
- '%TEMP%\Sysqemaehlg.exe'
- '%TEMP%\Sysqemqmcqt.exe'
- '%TEMP%\Sysqemixver.exe'
- '%TEMP%\Sysqemvcpsk.exe'
- '%TEMP%\Sysqemdaffp.exe'
- '%TEMP%\Sysqemfkxah.exe'
- '%TEMP%\Sysqemgvqof.exe'
- '%TEMP%\Sysqemsmupc.exe'
- '%TEMP%\Sysqemydaeg.exe'
- '%TEMP%\Sysqemolocs.exe'
- '%TEMP%\Sysqemvwadg.exe'
- '%TEMP%\Sysqemosbbo.exe'
- '%TEMP%\Sysqemdrhwb.exe'
- '%TEMP%\Sysqemnugeu.exe'
- '%TEMP%\Sysqemvllas.exe'
- '%TEMP%\Sysqemjvbab.exe'
- %TEMP%\Sysqemefeol.exe
- %TEMP%\Sysqemusznr.exe
- %TEMP%\Sysqemrrqxq.exe
- %TEMP%\Sysqemzpnle.exe
- %TEMP%\Sysqemmjapk.exe
- %TEMP%\Sysqemwjngt.exe
- %TEMP%\Sysqemmegkh.exe
- %TEMP%\Sysqemeafyi.exe
- %TEMP%\Sysqemewaez.exe
- %TEMP%\Sysqemydgkc.exe
- %TEMP%\Sysqemnfmyw.exe
- %TEMP%\Sysqemnavlz.exe
- %TEMP%\Sysqemfettg.exe
- %TEMP%\Sysqemnzuqd.exe
- %TEMP%\Sysqemctnfc.exe
- %TEMP%\Sysqemnxxbv.exe
- %TEMP%\Sysqemipcpk.exe
- %TEMP%\Sysqemfcnea.exe
- %TEMP%\Sysqemxuazm.exe
- %TEMP%\Sysqemvmhtr.exe
- %TEMP%\Sysqemhlkpq.exe
- %TEMP%\Sysqemctcxh.exe
- %TEMP%\Sysqemkfmfw.exe
- %TEMP%\Sysqemsatnm.exe
- %TEMP%\Sysqemvvgif.exe
- %TEMP%\Sysqemtnrlo.exe
- %TEMP%\Sysqemgogkd.exe
- %TEMP%\Sysqemqdisn.exe
- %TEMP%\Sysqemthhcj.exe
- %TEMP%\Sysqembeeqx.exe
- %TEMP%\Sysqemgqyjg.exe
- %TEMP%\Sysqemfzqdq.exe
- %TEMP%\Sysqemagjtl.exe
- %TEMP%\Sysqemqldnf.exe
- %TEMP%\Sysqemfkxah.exe
- %TEMP%\Sysqemwxnwm.exe
- %TEMP%\Sysqemgxbrc.exe
- %TEMP%\Sysqemwpcqq.exe
- %TEMP%\Sysqemjghie.exe
- %TEMP%\Sysqembldgn.exe
- %TEMP%\Sysqemtacwj.exe
- %TEMP%\Sysqemyponp.exe
- %TEMP%\Sysqemoyjkb.exe
- %TEMP%\Sysqembckmk.exe
- %TEMP%\Sysqembtgcy.exe
- %TEMP%\Sysqemrunif.exe
- %TEMP%\qpath.ini
- %TEMP%\Sysqamqqvaqqd.exe
- %TEMP%\Sysqemcbdzf.exe
- %TEMP%\Sysqemjyvwx.exe
- %TEMP%\Sysqemhcanr.exe
- %TEMP%\Sysqemuxrtq.exe
- %TEMP%\Sysqemvcpsk.exe
- %TEMP%\Sysqemaehlg.exe
- %TEMP%\Sysqemnugeu.exe
- %TEMP%\Sysqemixver.exe
- %TEMP%\Sysqemsmupc.exe
- %TEMP%\Sysqemdaffp.exe
- %TEMP%\Sysqemqmcqt.exe
- %TEMP%\Sysqemgvqof.exe
- %TEMP%\Sysqemdrhwb.exe
- %TEMP%\Sysqemvwadg.exe
- %TEMP%\Sysqemosbbo.exe
- %TEMP%\Sysqemddcek.exe
- %TEMP%\Sysqemzrtai.exe
- %TEMP%\Sysqemvllas.exe
- %TEMP%\Sysqemjvbab.exe
- %TEMP%\Sysqemydaeg.exe
- %TEMP%\Sysqemolocs.exe
- %TEMP%\Sysqemefeol.exe
- %TEMP%\Sysqemusznr.exe
- %TEMP%\Sysqemrrqxq.exe
- %TEMP%\Sysqemzpnle.exe
- %TEMP%\Sysqemmjapk.exe
- %TEMP%\Sysqemwjngt.exe
- %TEMP%\Sysqemmegkh.exe
- %TEMP%\Sysqemeafyi.exe
- %TEMP%\Sysqemewaez.exe
- %TEMP%\Sysqemydgkc.exe
- %TEMP%\Sysqemnfmyw.exe
- %TEMP%\Sysqemnavlz.exe
- %TEMP%\Sysqemfettg.exe
- %TEMP%\Sysqemnzuqd.exe
- %TEMP%\Sysqemctnfc.exe
- %TEMP%\Sysqemnxxbv.exe
- %TEMP%\Sysqemipcpk.exe
- %TEMP%\Sysqemfcnea.exe
- %TEMP%\Sysqemxuazm.exe
- %TEMP%\Sysqemvmhtr.exe
- %TEMP%\Sysqemhlkpq.exe
- %TEMP%\Sysqemctcxh.exe
- %TEMP%\Sysqemkfmfw.exe
- %TEMP%\Sysqemsatnm.exe
- %TEMP%\Sysqemvvgif.exe
- %TEMP%\Sysqemtnrlo.exe
- %TEMP%\Sysqemgogkd.exe
- %TEMP%\Sysqemqdisn.exe
- %TEMP%\Sysqemthhcj.exe
- %TEMP%\Sysqembeeqx.exe
- %TEMP%\Sysqemgqyjg.exe
- %TEMP%\Sysqemfzqdq.exe
- %TEMP%\Sysqemagjtl.exe
- %TEMP%\Sysqemqldnf.exe
- %TEMP%\Sysqemgxbrc.exe
- %TEMP%\Sysqemyponp.exe
- %TEMP%\Sysqemjghie.exe
- %TEMP%\Sysqemwxnwm.exe
- %TEMP%\Sysqemtacwj.exe
- %TEMP%\Sysqemddcek.exe
- %TEMP%\Sysqemoyjkb.exe
- %TEMP%\Sysqembldgn.exe
- %TEMP%\Sysqemwpcqq.exe
- %TEMP%\Sysqemrunif.exe
- %TEMP%\Sysqemhcanr.exe
- %TEMP%\Sysqembtgcy.exe
- %TEMP%\Sysqamqqvaqqd.exe
- %TEMP%\Sysqemjyvwx.exe
- %TEMP%\Sysqembckmk.exe
- %TEMP%\Sysqemuxrtq.exe
- %TEMP%\Sysqemcbdzf.exe
- %TEMP%\Sysqemaehlg.exe
- %TEMP%\Sysqemqmcqt.exe
- %TEMP%\Sysqemixver.exe
- %TEMP%\Sysqemvcpsk.exe
- %TEMP%\Sysqemdaffp.exe
- %TEMP%\Sysqemfkxah.exe
- %TEMP%\Sysqemgvqof.exe
- %TEMP%\Sysqemsmupc.exe
- %TEMP%\Sysqemnugeu.exe
- %TEMP%\Sysqemosbbo.exe
- %TEMP%\Sysqemydaeg.exe
- %TEMP%\Sysqemzrtai.exe
- %TEMP%\Sysqemvwadg.exe
- %TEMP%\Sysqemjvbab.exe
- %TEMP%\Sysqemdrhwb.exe
- %TEMP%\Sysqemolocs.exe
- %TEMP%\Sysqemvllas.exe