Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\jjVBchppIc.lnk
- '<SYSTEM32>\svchost.exe'
- '%APPDATA%\winrar521.exe'
- <SYSTEM32>\svchost.exe
- <SYSTEM32>\.Identifier
- %APPDATA%\mPwTuuGhrjx\9756.xml
- %APPDATA%\winrar521.exe
- <SYSTEM32>\.Identifier
- %APPDATA%\mPwTuuGhrjx\9756.xml в %APPDATA%\mPwTuuGhrjx\jjVBchppIc.exe
- 'bu######.chickenkiller.com':3360
- DNS ASK bu######.chickenkiller.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''