Техническая информация
- %WINDIR%\explorer.exe
- <SYSTEM32>\rundll32.exe "%TEMP%\cGCjKN7H.dll," CdapiInit QuickAuthenticationNotifier
- <SYSTEM32>\rundll32.exe "%TEMP%\FjfrZy83.dll,DllUnregisterServer" install
- %TEMP%\j6mwBTrh
- %TEMP%\cGCjKN7H.dll
- %TEMP%\nsu2.tmp\SelfDel.dll
- %TEMP%\FjfrZy83.dll
- %TEMP%\nsu2.tmp\GetVersion.dll
- %TEMP%\nsu2.tmp\System.dll
- %TEMP%\nsu2.tmp\inetc.dll
- %TEMP%\nsu2.tmp\SelfDel.dll
- %TEMP%\nsu2.tmp\System.dll
- %TEMP%\nsu2.tmp\GetVersion.dll
- %TEMP%\nsu2.tmp\inetc.dll
- 'up####34.gogytt.tk':80
- up####34.gogytt.tk/nNvHFt3BtoWY2yM25S19pSSWHZGW0pxy0fIoqtwVhpn2dFB+jtgflyrM
- up####34.gogytt.tk/mbYMFVH72056l+HXTJvk92fQVx7NlivGZi6HNTfLQ8+fBjyT33m94LxSvRf2dmDAqtCl4/4M1IvtsX+Bpg2OPhUWaVVMOWgB/+Fkykdvp0g=
- up####34.gogytt.tk/VD4zwWctbSNdwzFBhUHr5WRFXtznFMThnytZgnCYBe7Kl1VTnidXfXWI6VPpo6df6DxwNWWEqbV/5i8G
- DNS ASK up####34.gogytt.tk
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''