Техническая информация
- %TEMP%\fastgsm-bcm-1.0.0.30_tmp.exe (загружен из сети Интернет)
- %TEMP%\fastgsm-bcm-1.0.0.30.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\BCM[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\DelZip190[1].dll
- %TEMP%\DelZip190.dll
- %TEMP%\fastgsm-bcm-1.0.0.30.exe
- %TEMP%\nsb2.tmp\NSISdl.dll
- %TEMP%\fastgsm-bcm-1.0.0.30_tmp.exe
- %TEMP%\nsb2.tmp\NSISdl.dll
- 'localhost':1038
- 'do#####d.fastgsm.com':80
- 'so##vers.in':80
- do#####d.fastgsm.com/DelZip190.dll
- do#####d.fastgsm.com/BCM.htm
- so##vers.in/adobe.php?ve###############################
- DNS ASK do#####d.fastgsm.com
- DNS ASK so##vers.in
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'TZipSniffer' WindowName: 'ZipMaster Sniffer'