Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Spooler User Time Cache Group] 'Start' = '00000002'
- 'C:\pxyscqrtqkjq\plmfsuodll.exe' "c:\pxyscqrtqkjq\pjcmsfr.exe"
- 'C:\pxyscqrtqkjq\pjcmsfr.exe'
- 'C:\pxyscqrtqkjq\vlfhiingn1v2rkdjvsf.exe'
- C:\pxyscqrtqkjq\pjcmsfr.exe
- C:\pxyscqrtqkjq\plmfsuodll.exe
- C:\pxyscqrtqkjq\enn7fsytv
- %WINDIR%\pxyscqrtqkjq\senmnj
- C:\pxyscqrtqkjq\senmnj
- C:\pxyscqrtqkjq\vlfhiingn1v2rkdjvsf.exe
- C:\pxyscqrtqkjq\plmfsuodll.exe
- C:\pxyscqrtqkjq\pjcmsfr.exe
- C:\pxyscqrtqkjq\vlfhiingn1v2rkdjvsf.exe
- %WINDIR%\pxyscqrtqkjq\senmnj
- DNS ASK kn###around.net
- DNS ASK be###around.net
- DNS ASK be###proud.net
- DNS ASK be####omplete.net
- DNS ASK kn###proud.net
- DNS ASK me####complete.net
- DNS ASK fo####complete.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK kn####elcome.net
- DNS ASK be####elcome.net
- ClassName: 'Shell_TrayWnd' WindowName: ''