Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\cgzwjE4j3fD] 'ImagePath' = '<SYSTEM32>\1d01c\CDClient_EX.sys'
- '<SYSTEM32>\cmd.exe' /c dir "%HOMEPATH%\AppData\Local\Mozilla\Firefox\Profiles\*.default" /B
- '<SYSTEM32>\cmd.exe' /C <SYSTEM32>\020604.bat
- '<SYSTEM32>\cmd.exe' /C <SYSTEM32>\020601.bat
- '<SYSTEM32>\cmd.exe' /c dir "<LS_APPDATA>\Mozilla\Firefox\Profiles\*.default" /B
- <SYSTEM32>\1d01c\CDClient_EX.sys
- <SYSTEM32>\020604.bat
- <SYSTEM32>\JnmGFvH.dll
- <SYSTEM32>\020601.bat
- <SYSTEM32>\CDCLOG.txt
- <SYSTEM32>\CDCLOG.txt
- <SYSTEM32>\1d01c\CDClient_EX.sys
- 'localhost':1036
- DNS ASK www.99##.com
- ClassName: 'Internet Explorer_Server' WindowName: ''
- ClassName: 'TApplication' WindowName: 'eyoorun'
- ClassName: 'shell_wnd_05554' WindowName: 'unity-studio'
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'shell_wnd_class' WindowName: 'BROSS'
- ClassName: 'SysListView32' WindowName: 'FolderView'
- ClassName: 'SHELLDLL_DefView' WindowName: ''
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'ToolbarWindow32' WindowName: ''
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''