Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Sharing Offline Event WinHTTP Topology CardSpace' = 'C:\ygqlijbylxguax\zuufjjwplgdh.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Instrumentation Awareness RPC Windows Profile] 'ImagePath' = 'C:\ygqlijbylxguax\zuufjjwplgdh.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\Instrumentation Awareness RPC Windows Profile] 'Start' = '00000002'
- 'C:\ygqlijbylxguax\kozcrkacs.exe' "c:\ygqlijbylxguax\zuufjjwplgdh.exe"
- 'C:\ygqlijbylxguax\zuufjjwplgdh.exe'
- 'C:\ygqlijbylxguax\bkb2j7fmujxmgrmxyyh.exe'
- C:\ygqlijbylxguax\zuufjjwplgdh.exe
- C:\ygqlijbylxguax\kozcrkacs.exe
- C:\ygqlijbylxguax\txvfwvklxrdc
- %WINDIR%\ygqlijbylxguax\aaqp9pwnzsq
- C:\ygqlijbylxguax\aaqp9pwnzsq
- C:\ygqlijbylxguax\bkb2j7fmujxmgrmxyyh.exe
- C:\ygqlijbylxguax\kozcrkacs.exe
- C:\ygqlijbylxguax\zuufjjwplgdh.exe
- C:\ygqlijbylxguax\bkb2j7fmujxmgrmxyyh.exe
- %WINDIR%\ygqlijbylxguax\aaqp9pwnzsq
- %WINDIR%\ygqlijbylxguax\aaqp9pwnzsq
- 'al####yneither.net':80
- 'ge####mansystem.net':80
- 'al####ysystem.net':80
- 'ge####manhonor.net':80
- 'al####yhonor.net':80
- 'ge#####anneither.net':80
- 'ge####mantrust.net':80
- 'fo####neither.net':80
- 'me####neither.net':80
- 'fo####system.net':80
- 'al####ytrust.net':80
- 'fo###whonor.net':80
- 'me###rhonor.net':80
- 'ex####encetrust.net':80
- 'fi####eceive.net':80
- 'pa####uarter.net':80
- 'fi####uarter.net':80
- 'pa####elieve.net':80
- 'fi####elieve.net':80
- 'pa####eceive.net':80
- 'fr###honor.net':80
- 'fr###system.net':80
- 'ex#####ncesystem.net':80
- 'fr###trust.net':80
- 'ex####encehonor.net':80
- 'fr####either.net':80
- 'ex#####nceneither.net':80
- 'me####system.net':80
- 'cr###trust.net':80
- 'th####thonor.net':80
- 'wa###honor.net':80
- 'su####system.net':80
- 'cr###system.net':80
- 'su###rtrust.net':80
- 'th####tneither.net':80
- 'th####ttrust.net':80
- 'wa###trust.net':80
- 'wo###honor.net':80
- 'wa####either.net':80
- 'th####tsystem.net':80
- 'wa###system.net':80
- 'cr####either.net':80
- 'kn###honor.net':80
- 'be####either.net':80
- 'kn####either.net':80
- 'fo###wtrust.net':80
- 'me###rtrust.net':80
- 'be###honor.net':80
- 'be###system.net':80
- 'su###rhonor.net':80
- 'cr###honor.net':80
- 'su####neither.net':80
- 'kn###system.net':80
- 'be###trust.net':80
- 'kn###trust.net':80
- 'fo####receive.net':80
- 'me####receive.net':80
- 'fo####quarter.net':80
- 'me####branch.net':80
- 'fo####believe.net':80
- 'me####believe.net':80
- 'me####quarter.net':80
- 'kn####elieve.net':80
- 'be####eceive.net':80
- 'kn####eceive.net':80
- 'be###branch.net':80
- 'kn###branch.net':80
- 'be####elieve.net':80
- 'fo####branch.net':80
- 'fr####uarter.net':80
- 'ex#####ncequarter.net':80
- 'ge####manbranch.net':80
- 'ex#####ncebelieve.net':80
- 'fr####eceive.net':80
- 'ex#####ncereceive.net':80
- 'al####ybranch.net':80
- 'al####yreceive.net':80
- 'ge#####anquarter.net':80
- 'al####yquarter.net':80
- 'ge#####anbelieve.net':80
- 'al####ybelieve.net':80
- 'ge#####anreceive.net':80
- 'be####uarter.net':80
- 'wo###branch.net':80
- 'sm###branch.net':80
- 'wo####elieve.net':80
- 'wa####eceive.net':80
- 'th####tquarter.net':80
- 'wa####uarter.net':80
- 'sm####elieve.net':80
- 'sm####uarter.net':80
- 'pa###branch.net':80
- 'fi###branch.net':80
- 'wo####eceive.net':80
- 'sm####eceive.net':80
- 'wo####uarter.net':80
- 'th####treceive.net':80
- 'su####believe.net':80
- 'cr####elieve.net':80
- 'su####receive.net':80
- 'kn####uarter.net':80
- 'su####branch.net':80
- 'cr###branch.net':80
- 'cr####eceive.net':80
- 'wa###branch.net':80
- 'th####tbelieve.net':80
- 'wa####elieve.net':80
- 'su####quarter.net':80
- 'cr####uarter.net':80
- 'th####tbranch.net':80
- http://al####yneither.net/index.php
- http://ge####mansystem.net/index.php
- http://al####ysystem.net/index.php
- http://ge####manhonor.net/index.php
- http://al####yhonor.net/index.php
- http://ge#####anneither.net/index.php
- http://ge####mantrust.net/index.php
- http://fo####neither.net/index.php
- http://me####neither.net/index.php
- http://fo####system.net/index.php
- http://al####ytrust.net/index.php
- http://fo###whonor.net/index.php
- http://me###rhonor.net/index.php
- http://ex####encetrust.net/index.php
- http://fi####eceive.net/index.php
- http://pa####uarter.net/index.php
- http://fi####uarter.net/index.php
- http://pa####elieve.net/index.php
- http://fi####elieve.net/index.php
- http://pa####eceive.net/index.php
- http://fr###honor.net/index.php
- http://fr###system.net/index.php
- http://ex#####ncesystem.net/index.php
- http://fr###trust.net/index.php
- http://ex####encehonor.net/index.php
- http://fr####either.net/index.php
- http://ex#####nceneither.net/index.php
- http://me####system.net/index.php
- http://cr###trust.net/index.php
- http://th####thonor.net/index.php
- http://wa###honor.net/index.php
- http://su####system.net/index.php
- http://cr###system.net/index.php
- http://su###rtrust.net/index.php
- http://th####tneither.net/index.php
- http://th####ttrust.net/index.php
- http://wa###trust.net/index.php
- http://wo###honor.net/index.php
- http://wa####either.net/index.php
- http://th####tsystem.net/index.php
- http://wa###system.net/index.php
- http://cr####either.net/index.php
- http://kn###honor.net/index.php
- http://be####either.net/index.php
- http://kn####either.net/index.php
- http://fo###wtrust.net/index.php
- http://me###rtrust.net/index.php
- http://be###honor.net/index.php
- http://be###system.net/index.php
- http://su###rhonor.net/index.php
- http://cr###honor.net/index.php
- http://su####neither.net/index.php
- http://kn###system.net/index.php
- http://be###trust.net/index.php
- http://kn###trust.net/index.php
- http://fo####receive.net/index.php
- http://me####receive.net/index.php
- http://fo####quarter.net/index.php
- http://me####branch.net/index.php
- http://fo####believe.net/index.php
- http://me####believe.net/index.php
- http://me####quarter.net/index.php
- http://kn####elieve.net/index.php
- http://be####eceive.net/index.php
- http://kn####eceive.net/index.php
- http://be###branch.net/index.php
- http://kn###branch.net/index.php
- http://be####elieve.net/index.php
- http://fo####branch.net/index.php
- http://fr####uarter.net/index.php
- http://ex#####ncequarter.net/index.php
- http://ge####manbranch.net/index.php
- http://ex#####ncebelieve.net/index.php
- http://fr####eceive.net/index.php
- http://ex#####ncereceive.net/index.php
- http://al####ybranch.net/index.php
- http://al####yreceive.net/index.php
- http://ge#####anquarter.net/index.php
- http://al####yquarter.net/index.php
- http://ge#####anbelieve.net/index.php
- http://al####ybelieve.net/index.php
- http://ge#####anreceive.net/index.php
- http://be####uarter.net/index.php
- http://wo###branch.net/index.php
- http://sm###branch.net/index.php
- http://wo####elieve.net/index.php
- http://wa####eceive.net/index.php
- http://th####tquarter.net/index.php
- http://wa####uarter.net/index.php
- http://sm####elieve.net/index.php
- http://sm####uarter.net/index.php
- http://pa###branch.net/index.php
- http://fi###branch.net/index.php
- http://wo####eceive.net/index.php
- http://sm####eceive.net/index.php
- http://wo####uarter.net/index.php
- http://th####treceive.net/index.php
- http://su####believe.net/index.php
- http://cr####elieve.net/index.php
- http://su####receive.net/index.php
- http://kn####uarter.net/index.php
- http://su####branch.net/index.php
- http://cr###branch.net/index.php
- http://cr####eceive.net/index.php
- http://wa###branch.net/index.php
- http://th####tbelieve.net/index.php
- http://wa####elieve.net/index.php
- http://su####quarter.net/index.php
- http://cr####uarter.net/index.php
- http://th####tbranch.net/index.php
- DNS ASK ge####mansystem.net
- DNS ASK al####ysystem.net
- DNS ASK ge####mantrust.net
- DNS ASK al####yhonor.net
- DNS ASK ge#####anneither.net
- DNS ASK al####yneither.net
- DNS ASK al####ytrust.net
- DNS ASK me####neither.net
- DNS ASK fo####system.net
- DNS ASK me####system.net
- DNS ASK fo###whonor.net
- DNS ASK me###rhonor.net
- DNS ASK fo####neither.net
- DNS ASK ge####manhonor.net
- DNS ASK pa####uarter.net
- DNS ASK fi####uarter.net
- DNS ASK fr###honor.net
- DNS ASK fi####elieve.net
- DNS ASK pa####eceive.net
- DNS ASK fi####eceive.net
- DNS ASK ex####encehonor.net
- DNS ASK ex#####ncesystem.net
- DNS ASK fr###trust.net
- DNS ASK ex####encetrust.net
- DNS ASK fr####either.net
- DNS ASK ex#####nceneither.net
- DNS ASK fr###system.net
- DNS ASK fo###wtrust.net
- DNS ASK th####thonor.net
- DNS ASK wa###honor.net
- DNS ASK th####tneither.net
- DNS ASK cr###system.net
- DNS ASK su###rtrust.net
- DNS ASK cr###trust.net
- DNS ASK wa####either.net
- DNS ASK wa###trust.net
- DNS ASK wo###honor.net
- DNS ASK sm###honor.net
- DNS ASK th####tsystem.net
- DNS ASK wa###system.net
- DNS ASK th####ttrust.net
- DNS ASK su####system.net
- DNS ASK be####either.net
- DNS ASK kn####either.net
- DNS ASK be###system.net
- DNS ASK me###rtrust.net
- DNS ASK be###honor.net
- DNS ASK kn###honor.net
- DNS ASK kn###system.net
- DNS ASK cr###honor.net
- DNS ASK su####neither.net
- DNS ASK cr####either.net
- DNS ASK be###trust.net
- DNS ASK kn###trust.net
- DNS ASK su###rhonor.net
- DNS ASK pa####elieve.net
- DNS ASK fo####receive.net
- DNS ASK me####receive.net
- DNS ASK fo####quarter.net
- DNS ASK me####branch.net
- DNS ASK fo####believe.net
- DNS ASK me####believe.net
- DNS ASK me####quarter.net
- DNS ASK kn####elieve.net
- DNS ASK be####eceive.net
- DNS ASK kn####eceive.net
- DNS ASK be###branch.net
- DNS ASK kn###branch.net
- DNS ASK be####elieve.net
- DNS ASK fo####branch.net
- DNS ASK fr####uarter.net
- DNS ASK ex#####ncequarter.net
- DNS ASK ge####manbranch.net
- DNS ASK ex#####ncebelieve.net
- DNS ASK fr####eceive.net
- DNS ASK ex#####ncereceive.net
- DNS ASK al####ybranch.net
- DNS ASK al####yreceive.net
- DNS ASK ge#####anquarter.net
- DNS ASK al####yquarter.net
- DNS ASK ge#####anbelieve.net
- DNS ASK al####ybelieve.net
- DNS ASK ge#####anreceive.net
- DNS ASK be####uarter.net
- DNS ASK wo###branch.net
- DNS ASK sm###branch.net
- DNS ASK wo####elieve.net
- DNS ASK wa####eceive.net
- DNS ASK th####tquarter.net
- DNS ASK wa####uarter.net
- DNS ASK sm####elieve.net
- DNS ASK sm####uarter.net
- DNS ASK pa###branch.net
- DNS ASK fi###branch.net
- DNS ASK wo####eceive.net
- DNS ASK sm####eceive.net
- DNS ASK wo####uarter.net
- DNS ASK th####treceive.net
- DNS ASK su####believe.net
- DNS ASK cr####elieve.net
- DNS ASK su####receive.net
- DNS ASK kn####uarter.net
- DNS ASK su####branch.net
- DNS ASK cr###branch.net
- DNS ASK cr####eceive.net
- DNS ASK wa###branch.net
- DNS ASK th####tbelieve.net
- DNS ASK wa####elieve.net
- DNS ASK su####quarter.net
- DNS ASK cr####uarter.net
- DNS ASK th####tbranch.net
- ClassName: 'Shell_TrayWnd' WindowName: ''