Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\Computer Cache Background Installer] 'Start' = '00000002'
- 'C:\rdrltmxnfe\fiyzprwbl.exe' "c:\rdrltmxnfe\zldpuyk.exe"
- 'C:\rdrltmxnfe\zldpuyk.exe'
- 'C:\rdrltmxnfe\mv7zwyrdgsr0gs7p.exe'
- C:\rdrltmxnfe\zldpuyk.exe
- C:\rdrltmxnfe\fiyzprwbl.exe
- C:\rdrltmxnfe\qqykpzmk
- %WINDIR%\rdrltmxnfe\ykp1kvfnfxbx
- C:\rdrltmxnfe\ykp1kvfnfxbx
- C:\rdrltmxnfe\mv7zwyrdgsr0gs7p.exe
- C:\rdrltmxnfe\fiyzprwbl.exe
- C:\rdrltmxnfe\zldpuyk.exe
- C:\rdrltmxnfe\mv7zwyrdgsr0gs7p.exe
- %WINDIR%\rdrltmxnfe\ykp1kvfnfxbx
- DNS ASK re####esettle.net
- DNS ASK or###settle.net
- DNS ASK or####anguage.net
- DNS ASK or###device.net
- DNS ASK re####elanguage.net
- DNS ASK ne####arybefore.net
- DNS ASK pl####ntdevice.net
- DNS ASK ne#####rylanguage.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK pl####ntbefore.net
- DNS ASK ne####arydevice.net
- ClassName: 'Shell_TrayWnd' WindowName: ''