Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{FEF5C15B-D5C7-B216-47E1-EE3D261F4C32}' = '"%APPDATA%\Ditoen\onucy.exe"'
- %APPDATA%\Ditoen\onucy.exe
- <SYSTEM32>\ctfmon.exe
- %WINDIR%\Explorer.EXE
- aion.exe
- ageofconan.exe
- __cd75efb816b2cc__.exe
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\4] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1] '1406' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2] '1609' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\1] '1609' = '00000000'
- %APPDATA%\Ixnic\pieh.osu
- %TEMP%\tmpa01ce8a4.bat
- %APPDATA%\Ditoen\onucy.exe
- '91.##6.11.86':443
- ClassName: 'Indicator' WindowName: ''