Техническая информация
- %TEMP%\ultravnc-1.0.9.6.1_tmp.exe (загружен из сети Интернет)
- %TEMP%\is-GOCJJ.tmp\ultravnc-1.0.9.6.1.tmp /SL5="$300DA,1931452,346624,%TEMP%\ultravnc-1.0.9.6.1.exe"
- %TEMP%\ultravnc-1.0.9.6.1.exe
- %TEMP%\is-92GA1.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-92GA1.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-92GA1.tmp\UltraVNC.ico
- %TEMP%\is-92GA1.tmp\isxdl.dll
- %TEMP%\nsq2.tmp\NSISdl.dll
- %TEMP%\ultravnc-1.0.9.6.1.exe
- %TEMP%\ultravnc-1.0.9.6.1_tmp.exe
- %TEMP%\is-GOCJJ.tmp\ultravnc-1.0.9.6.1.tmp
- %TEMP%\nsq2.tmp\NSISdl.dll
- 'fr###pdate.in':80
- fr###pdate.in/firefox.php?ve#############################
- DNS ASK fr###pdate.in
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''