Техническая информация
- '<SYSTEM32>\a8kmypbwd.exe'
- '<SYSTEM32>\a8kmypbwd.exe' (загружен из сети Интернет)
- %TEMP%\nsx3.tmp\NSISdl.dll
- %TEMP%\a2fb5eh0k
- %TEMP%\nsx3.tmp\time.dll
- %TEMP%\nsx3.tmp\md5dll.dll
- %TEMP%\nsg2.tmp
- %TEMP%\nsx3.tmp\modern-header.bmp
- %TEMP%\nsx3.tmp\NSISArray.dll
- %TEMP%\nsx3.tmp\NSISdl.dll
- %TEMP%\nsx3.tmp\time.dll
- %TEMP%\nsx3.tmp\NSISArray.dll
- %TEMP%\nsx3.tmp\md5dll.dll
- %TEMP%\nsx3.tmp\modern-header.bmp
- %TEMP%\a2fb5eh0k в <SYSTEM32>\a8kmypbwd.exe
- 'www.pc###guard.com':80
- www.pc###guard.com/a2fb5eh0kaauim2vhq.phtml?ge##################################
- DNS ASK www.pc###guard.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'