Техническая информация
- '<SYSTEM32>\ntvdm.exe' -f -i1
- firefox.exe
- %TEMP%\nsf2.tmp\setfin.exe
- %TEMP%\nsf2.tmp\ZipDLL.dll
- %TEMP%\nsf2.tmp\masterzoom_1.1.crx
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs3.tmp
- %TEMP%\nsf2.tmp\System.dll
- %TEMP%\nsf2.tmp\nsProcess.dll
- %TEMP%\nsf2.tmp\inetc.dll
- %TEMP%\nsf2.tmp\fall\fextend.xpi
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\addon[1]
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs3.tmp
- 'ut###.#imilargroup.com':80
- ut###.#imilargroup.com/addon?s=#########
- DNS ASK ut###.#imilargroup.com
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b24.b28.380001'
- ClassName: '#32770' WindowName: '(null)'