Техническая информация
- 'C:\201006006.exe'
- '%CommonProgramFiles%\006.exe'
- 'C:\201006006.exe' (загружен из сети Интернет)
- %CommonProgramFiles%\AntiAdwa.dll
- %CommonProgramFiles%\vmapplib.dll
- C:\201006006.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\201006006[1].rar
- %CommonProgramFiles%\006.exe
- %TEMP%\$inst\4.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\5.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\15.tmp
- %TEMP%\$inst\5.tmp
- %TEMP%\$inst\15.tmp
- %TEMP%\~DF59E5.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\4.tmp
- C:\201006006.ini в C:\201006006.exe
- 'do##.5mqxmq.com':80
- 'localhost':1036
- do##.5mqxmq.com/6diq/down/201006006.rar
- DNS ASK do##.5mqxmq.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'