Техническая информация
- '%TEMP%\RarSFX0\starts.exe'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Monster_Haj_13_zhelanij-na_russkom[1]
- %ALLUSERSPROFILE%\Desktop\Download Monster_Haj_13...lnk
- %TEMP%\RarSFX0\starts.exe
- 'localhost':1039
- 'su###usic.net':80
- 'do###oad-mp3.in':80
- 'lf######vp76hph.flevno.ru':80
- su###usic.net/audios/aHR0cDovL2NzMS00NnY0LnZrLm1lL3AxOC8zYzQ2N2I4NWU4ZWQ3Ni5tcDM_ZXh0cmE9Z1VINEhfOTZLSE02TmFLSnlpaWN0Wldwdk5tbk1tQWl5RE1FeFdOYXhBNGN6TDB1M0RFRlhCM0QzX2hES3V3eVpGeEJBVWtGN05PQlRFWVhZN05pcE16NDdkdHRoNmMtd1E/Monster_Haj_13_zhelanij-na_russkom
- lf######vp76hph.flevno.ru/api/index
- do###oad-mp3.in/api/index
- DNS ASK su###usic.net
- DNS ASK lf######vp76hph.flevno.ru
- DNS ASK do###oad-mp3.in
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'