Техническая информация
- '%ALLUSERSPROFILE%\DRM\XXX\.exe'
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\svchost.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201216.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201211.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201206.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201231.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201226.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201221.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201146.jpg
- %ALLUSERSPROFILE%\DRM\XXX\cacybbzcwpxbbxg
- %ALLUSERSPROFILE%\DRM\XXX\.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201201.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201156.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131029201151.jpg
- 'localhost':12345
- 'localhost':12345