Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Net.Tcp Internet Support Brightness] 'Start' = '00000002'
- 'C:\zqyonrypwpcwygd\nwyqknrgghuj.exe' "c:\zqyonrypwpcwygd\jceqmaiegxx.exe"
- 'C:\zqyonrypwpcwygd\jceqmaiegxx.exe'
- 'C:\zqyonrypwpcwygd\zqsi8bjkzzvyxpkisyr.exe'
- C:\zqyonrypwpcwygd\jceqmaiegxx.exe
- C:\zqyonrypwpcwygd\nwyqknrgghuj.exe
- C:\zqyonrypwpcwygd\pgk5xp
- %WINDIR%\zqyonrypwpcwygd\swvqekh
- C:\zqyonrypwpcwygd\swvqekh
- C:\zqyonrypwpcwygd\zqsi8bjkzzvyxpkisyr.exe
- C:\zqyonrypwpcwygd\nwyqknrgghuj.exe
- C:\zqyonrypwpcwygd\jceqmaiegxx.exe
- C:\zqyonrypwpcwygd\zqsi8bjkzzvyxpkisyr.exe
- %WINDIR%\zqyonrypwpcwygd\swvqekh
- DNS ASK am####believe.net
- DNS ASK we####rbranch.net
- DNS ASK we####rbelieve.net
- DNS ASK we####rreceive.net
- DNS ASK am####receive.net
- DNS ASK am####branch.net
- DNS ASK hi####yreceive.net
- DNS ASK st####ereceive.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK hi####yquarter.net
- DNS ASK st####equarter.net
- ClassName: 'Shell_TrayWnd' WindowName: ''