Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Framework CNG Audio Engine Access WWAN] 'Start' = '00000002'
- 'C:\oahsauu\nznfixorrdnk.exe' "c:\oahsauu\rnhsagfdp.exe"
- 'C:\oahsauu\rnhsagfdp.exe'
- 'C:\oahsauu\v23no7znfjqw2ycyoutqby.exe'
- C:\oahsauu\rnhsagfdp.exe
- C:\oahsauu\nznfixorrdnk.exe
- C:\oahsauu\jfj8q7yo0
- %WINDIR%\oahsauu\lcvbgwdztoi
- C:\oahsauu\lcvbgwdztoi
- C:\oahsauu\v23no7znfjqw2ycyoutqby.exe
- C:\oahsauu\nznfixorrdnk.exe
- C:\oahsauu\rnhsagfdp.exe
- C:\oahsauu\v23no7znfjqw2ycyoutqby.exe
- %WINDIR%\oahsauu\lcvbgwdztoi
- DNS ASK la####eceive.net
- DNS ASK ca####nbelieve.net
- DNS ASK ca####nreceive.net
- DNS ASK ca####nquarter.net
- DNS ASK la####uarter.net
- DNS ASK la####elieve.net
- DNS ASK de####quarter.net
- DNS ASK ni####uarter.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK ca####nbranch.net
- DNS ASK la###branch.net
- ClassName: 'Shell_TrayWnd' WindowName: ''