Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'LoadAppInit_DLLs' = '00000001'
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] 'AppInit_DLLs' = '%ALLUSERSPROFILE%\Application Data\Mozilla\bwlnzvl.dll'
- %WINDIR%\Tasks\gduivwf.job
- %ALLUSERSPROFILE%\Application Data\Mozilla\sklfxjg.exe Data\Mozilla\sklfxjg.exe -jytqpci
- %ALLUSERSPROFILE%\Application Data\Mozilla\bwlnzvl.dll
- %ALLUSERSPROFILE%\Application Data\Mozilla\sklfxjg.exe