Техническая информация
- C:\ґу·Й·А·З·Ё°ж-07.exe
- <SYSTEM32>\wscript.exe "C:\27dj.vbs"
- %TEMP%\17e83.tmp
- %ALLUSERSPROFILE%\Application Data\Microsoft\Crypto\RSA\MachineKeys\fc1e3851f429ea606d6ff1e01a5229f1_23ef5514-3059-436f-a4a7-4cefaab20eb1
- %WINDIR%\cfdy.ini
- %TEMP%\1753b.tmp
- C:\ґу·Й·А·З·Ё°ж-07.exe
- C:\27dj.vbs
- %TEMP%\16d6a.tmp
- %TEMP%\17e83.tmp
- %TEMP%\1753b.tmp
- %TEMP%\16d6a.tmp
- 'localhost':80
- '02##j.com':80
- 'localhost':1036
- localhost/
- 02##j.com/Win7.htm
- 02##j.com/
- DNS ASK 33##u.com
- DNS ASK 02##j.com
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''