Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{D35E4407-9900-48a9-8739-31BBAFC67716}] 'stubpath' = ''
- '<SYSTEM32>\inbuxzyre.exe' delC:\server.exe
- 'C:\їАЕдј¦.exe'
- 'C:\server.exe'
- '<SYSTEM32>\userinit.exe'
- <SYSTEM32>\userinit.exe
- <SYSTEM32>\inbuxzyre.exe_lang.ini
- %TEMP%\125968_res.tmp
- <SYSTEM32>\inbuxzyre.exe
- C:\server.exe
- C:\їАЕдј¦.exe
- C:\server.exe
- %TEMP%\125968_res.tmp в %TEMP%\126000_lang.dll
- 'ca##.naver.com':80
- 'localhost':1038
- '1.###.21.166':414
- ca##.naver.com/autosd
- DNS ASK ca##.naver.com
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '#32771' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''