Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\BranchCache Telephony Distributed Auto] 'Start' = '00000002'
- 'C:\dtauabqv\mgwhognt.exe' "c:\dtauabqv\lydesnhpcrht.exe"
- 'C:\dtauabqv\lydesnhpcrht.exe'
- 'C:\dtauabqv\oqea9h5mqkldwkacn1d.exe'
- C:\dtauabqv\lydesnhpcrht.exe
- C:\dtauabqv\mgwhognt.exe
- C:\dtauabqv\lfnqeatolw
- %WINDIR%\dtauabqv\hk3m0mdfszq
- C:\dtauabqv\hk3m0mdfszq
- C:\dtauabqv\oqea9h5mqkldwkacn1d.exe
- C:\dtauabqv\mgwhognt.exe
- C:\dtauabqv\lydesnhpcrht.exe
- C:\dtauabqv\oqea9h5mqkldwkacn1d.exe
- %WINDIR%\dtauabqv\hk3m0mdfszq
- DNS ASK re#####rtraining.net
- DNS ASK wo####raining.net
- DNS ASK wo###storm.net
- DNS ASK wo###thrown.net
- DNS ASK re####erstorm.net
- DNS ASK re####erhunger.net
- DNS ASK fo####thrown.net
- DNS ASK in####sestorm.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK wo###hunger.net
- DNS ASK in####sethrown.net
- ClassName: 'Shell_TrayWnd' WindowName: ''