Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Themes IKE Multimedia Solutions] 'Start' = '00000002'
- 'C:\jhbqzgq\jewrayzvsvz.exe' "c:\jhbqzgq\ifhmgsbh.exe"
- 'C:\jhbqzgq\ifhmgsbh.exe'
- 'C:\jhbqzgq\majcs7zrbji6zxu3elp.exe'
- C:\jhbqzgq\ifhmgsbh.exe
- C:\jhbqzgq\jewrayzvsvz.exe
- C:\jhbqzgq\pbnp4jko
- %WINDIR%\jhbqzgq\ly9ivao
- C:\jhbqzgq\ly9ivao
- C:\jhbqzgq\majcs7zrbji6zxu3elp.exe
- C:\jhbqzgq\jewrayzvsvz.exe
- C:\jhbqzgq\ifhmgsbh.exe
- C:\jhbqzgq\majcs7zrbji6zxu3elp.exe
- %WINDIR%\jhbqzgq\ly9ivao
- DNS ASK in####sewonder.net
- DNS ASK fo####wonder.net
- DNS ASK fo####discover.net
- DNS ASK wo####ontinue.net
- DNS ASK in#####ediscover.net
- DNS ASK in####semaster.net
- DNS ASK fo####continue.net
- DNS ASK th####hdiscover.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK fo####master.net
- DNS ASK in#####econtinue.net
- ClassName: 'Shell_TrayWnd' WindowName: ''