Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'r.exe' = '<SYSTEM32>\nvrkir.exe'
- %HOMEPATH%\Start Menu\Programs\Startup\vpneismeywx.htm
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\bxulhgkukkbfdh.htm
- %ALLUSERSPROFILE%\Start Menu\Programs\jqrzrl.htm
- %ALLUSERSPROFILE%\Desktop\drfhxysn.htm
- %HOMEPATH%\Templates\kkrlsxdjdhq.htm
- %ALLUSERSPROFILE%\Start Menu\ndhrcddzlksm.htm
- %APPDATA%\cyfdkoqndrxik.htm
- %ALLUSERSPROFILE%\Favorites\ehyuqbq.htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\javvps.htm
- %HOMEPATH%\PrintHood\vtlgjzdbye.htm
- <LS_APPDATA>\meyobjjfvnjax.htm
- %WINDIR%\Fonts\zatruhrhub.htm
- %HOMEPATH%\Favorites\nkuaozhcvwbc.htm
- %HOMEPATH%\Recent\twjbcya.htm
- %HOMEPATH%\Start Menu\Programs\mqej.htm
- %HOMEPATH%\My Documents\fsileppczhu.htm
- %HOMEPATH%\SendTo\orrnrtrmyuvwd.htm
- %HOMEPATH%\Desktop\nmpvuaqgsb.htm
- %HOMEPATH%\NetHood\fdjlgnkfiwvvlc.htm
- %HOMEPATH%\Start Menu\cpyuihjzzcgxx.htm
- %HOMEPATH%\My Documents\My Music\afjthquv.htm
- %HOMEPATH%\Cookies\hnieyvmxu.htm
- %HOMEPATH%\Start Menu\Programs\Administrative Tools\pknatjpa.htm
- %ALLUSERSPROFILE%\Documents\My Music\rejfmmq.htm
- %ALLUSERSPROFILE%\Documents\jyiwplwejv.htm
- %ALLUSERSPROFILE%\Start Menu\Programs\Administrative Tools\gqyv.htm
- %ALLUSERSPROFILE%\Documents\My Pictures\kfdtilyyog.htm
- <LS_APPDATA>\Microsoft\CD Burning\fqlzxmdbnhi.htm
- <SYSTEM32>\nvrkir.exe
- %ALLUSERSPROFILE%\Documents\My Videos\phwwdmmv.htm
- %WINDIR%\Resources\hxwligxaro.htm
- %ALLUSERSPROFILE%\Templates\hktr.htm
- %WINDIR%\ulgrixmidptsg.htm
- <SYSTEM32>\bhdc.htm
- %HOMEPATH%\Local Settings\History\szxtlthrvfbmmy.htm
- %ALLUSERSPROFILE%\Application Data\dyjf.htm
- %PROGRAM_FILES%\exni.htm
- <SYSTEM32>\qjarbos.htm
- %CommonProgramFiles%\hwrcjiw.htm
- %HOMEPATH%\My Documents\My Pictures\aawifokzbxnuf.htm
- %HOMEPATH%\oitztksluf.htm