Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'StubPath' = '"%WINDIR%\beyond.exe"'
- '%WINDIR%\beyond.exe'
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '%WINDIR%\explorer.exe'
- AVPM.EXE
- AVPCC.EXE
- nod32.exe
- nod.exe
- AVP.COM
- 360tray.exe
- AVP32.EXE
- AVP.EXE
- %WINDIR%\beyond.exe
- 'v.##uku.com':80
- 'localhost':1037
- v.##uku.com/v_show/id_XNjQxODcy.html
- DNS ASK v.##uku.com
- ClassName: 'SystemTray_Main' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '' WindowName: 'ёцИЛЙиЦГ'
- ClassName: '' WindowName: '????????'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''