Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'slfcenv1' = 'C:\slpcenv\slfcenv1.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\slwinmaint] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\winhealthw] 'Start' = '00000002'
- %WINDIR%\sldnload.dll
- C:\slpcenv\slfcimsi\slfcenv1_04_slfcver.txt
- C:\slpcenv\slfcimsi\slfcenv1_04_chk1.tmp
- C:\slpcenv\slfcver\slfcver.txt
- C:\slpcenv\slfcver\slfcenv1_err.txt
- %TEMP%\nsi2.tmp\System.dll
- %TEMP%\nsi2.tmp\NSISdl.dll
- C:\slpcenv\slfclog\sl-2012-10-11.log
- '10#.#54.81.100':80
- 10#.#54.81.100/slfcenv1========10.10.11.txt
- 10#.#54.81.100/slfcver/slfcver.txt