Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Power Group SNMP Connection Protected Resolution' = '<LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.exe'
- <LS_APPDATA>\eyoeackpnbokai\xsukmplyxdk.exe "<LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.exe"
- <LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.exe
- <LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.a0j
- <LS_APPDATA>\eyoeackpnbokai\xsukmplyxdk.exe
- <LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.exe
- <LS_APPDATA>\eyoeackpnbokai\xsukmplyxdk.exe
- <LS_APPDATA>\eyoeackpnbokai\qzxyuzvxw.exe
- 'cl####ontinue.net':80
- 'th####ontinue.net':80
- cl####ontinue.net/forum/search.php?em#######################################
- th####ontinue.net/forum/search.php?em#######################################
- DNS ASK th####ndustry.net
- DNS ASK cl####iscover.net
- DNS ASK th####iscover.net
- DNS ASK pr####tbecame.net
- DNS ASK th###became.net
- DNS ASK pr####tindustry.net
- DNS ASK th###master.net
- DNS ASK cl####ontinue.net
- DNS ASK th####ontinue.net
- DNS ASK cl###wonder.net
- DNS ASK th###wonder.net
- DNS ASK cl###master.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''