Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '*DXRS90Q' = ''
- <SYSTEM32>\rundll32.exe "%HOMEPATH%\Local Settings\gKuGANjz\1wz2KrIT.2X4",HFF8
- <SYSTEM32>\cscript.exe
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\ctfmon.exe
- <SYSTEM32>\rundll32.exe
- %HOMEPATH%\Local Settings\gKuGANjz\mtzR8BmEVmBmn__grqnE_qEVo8v.J2-
- <LS_APPDATA>\PUTTY.RND
- %HOMEPATH%\Local Settings\gKuGANjz\mtzRBmmVmBmmmmmmmmmmmmmmmm.J2-
- %HOMEPATH%\Local Settings\gKuGANjz\mtzR8BqsqsBmn__grqnErMM_srm.J2-
- %HOMEPATH%\Local Settings\gKuGANjz\mtzR8BmEVnBmn__grqnEMsrVr_V.J2-
- %HOMEPATH%\Local Settings\gKuGANjz\PFSLf6lD.LiX
- %HOMEPATH%\Local Settings\gKuGANjz\FxyPictd.P5j
- %HOMEPATH%\Local Settings\gKuGANjz\1wz2KrIT.2X4
- %HOMEPATH%\Local Settings\gKuGANjz\nHQEDLek.EdV
- %HOMEPATH%\Local Settings\gKuGANjz\84lpb76Z.po0
- %HOMEPATH%\Local Settings\gKuGANjz\cT46zGWf.6UZ
- 'localhost':22
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''