Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\BITSSys] 'ImagePath' = '%ALLUSERSPROFILE%\Application Data\Mozilla\svchost.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\BITSSys] 'Start' = '00000002'
- '<SYSTEM32>\svchost.exe' -k netsvcs
- <SYSTEM32>\svchost.exe
- %ALLUSERSPROFILE%\Application Data\Mozilla\svchost.exe
- %ALLUSERSPROFILE%\Application Data\Mozilla\UV9FXlFbb1NfWVQPBg.bin
- %ALLUSERSPROFILE%\Application Data\Mozilla\svchost.exe
- %ALLUSERSPROFILE%\Application Data\Mozilla\UV9FXlFbb1NfWVQPBg.bin
- '19#.#46.180.43':80
- '46.##.66.139':443
- http://19#.#46.180.43/qJtyLTsaWGHoq6zED70YTOlOUEMe6h/5N-qudS0z8WljyNiyN/6d/qZ2GFcx7MnKsqkU.UfoWGbifziSfZZqc05TbEtWPQoXA4Ufwnlum0IFBrkZ.jpg
- http://19#.#46.180.43/XnsFjqddCpUPuaaOzVAd-fVbmDDsCZT/bPOvx.MuHMFs0fwAzG8Djl7NngYWCC/x3vG-gWwBmMwtxoI35.gif
- ClassName: 'Shell_TrayWnd' WindowName: ''