Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Defragmenter Helper Registry Performance] 'Start' = '00000002'
- 'C:\phifoqplaqoey\yfxmrut.exe' "c:\phifoqplaqoey\gxhqkugn.exe"
- 'C:\phifoqplaqoey\gxhqkugn.exe'
- 'C:\phifoqplaqoey\bp7kc8ravwuotngbzm.exe'
- C:\phifoqplaqoey\gxhqkugn.exe
- C:\phifoqplaqoey\yfxmrut.exe
- C:\phifoqplaqoey\mkqaejjexv
- %WINDIR%\phifoqplaqoey\yvej0ci7
- C:\phifoqplaqoey\yvej0ci7
- C:\phifoqplaqoey\bp7kc8ravwuotngbzm.exe
- C:\phifoqplaqoey\yfxmrut.exe
- C:\phifoqplaqoey\gxhqkugn.exe
- C:\phifoqplaqoey\bp7kc8ravwuotngbzm.exe
- %WINDIR%\phifoqplaqoey\yvej0ci7
- DNS ASK pl####ntspring.net
- DNS ASK ne####aryfound.net
- DNS ASK ne####aryspring.net
- DNS ASK ne#####rysuccess.net
- DNS ASK pl####ntsuccess.net
- DNS ASK pl####ntfound.net
- DNS ASK he####uccess.net
- DNS ASK di#####ltsuccess.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK he###banker.net
- DNS ASK di####ultbanker.net
- ClassName: 'Shell_TrayWnd' WindowName: ''