Техническая информация
- %TEMP%\a.exe
- C:\Documents and Settings\hut_my_show_sexy.jpg.exe
- %WINDIR%\Explorer.EXE
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\1c7ff794-c605-4986-912b-10cef6f455f3
- %APPDATA%\Microsoft\Crypto\RSA\S-1-5-21-2052111302-484763869-725345543-1003\ec702f375e1b12d218f67ab9ef19ca23_23ef5514-3059-436f-a4a7-4cefaab20eb1
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\Preferred
- C:\Documents and Settings\hut_my_show_sexy.jpg.exe
- C:\Documents and Settings\a.exe
- %TEMP%\a.exe
- %TEMP%\aut1.tmp
- %TEMP%\aut1.tmp
- 'za####.no-ip.info':81
- DNS ASK za####.no-ip.info
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''