Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'SONYGAMES' = '%APPDATA%\sonyman.exe'
- %TEMP%\4.tmp
- %TEMP%\2.tmp
- %TEMP%\4.tmp
- %ALLUSERSPROFILE%\Application Data\qmgr03.dat
- %APPDATA%\sonyman.exe
- %TEMP%\5.tmp
- %TEMP%\qmgr30321
- %TEMP%\1.tmp
- %TEMP%\3.tmp
- %TEMP%\2.tmp
- %APPDATA%\sonyman.exe
- %ALLUSERSPROFILE%\Application Data\qmgr03.dat
- %TEMP%\5.tmp
- %TEMP%\4.tmp
- %TEMP%\qmgr30321
- %TEMP%\1.tmp
- %TEMP%\3.tmp
- '21#.#42.152.91':443
- '12#.#10.139.123':80
- '12#.#10.139.123':443
- '22#.#35.137.200':80
- '22#.#35.137.200':443
- '21#.#42.152.91':80
- 12#.#10.139.123/0000/a250984.asp
- 21#.#42.152.91/0000/a247250.asp
- 22#.#35.137.200/0000/a229906.asp
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'WordPadClass' WindowName: ''