Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Servercam' = '{B048E680-C7F7-4459-A3A4-AA82FA532F10}'
- <SYSTEM32>\xmlbios.dll
- <SYSTEM32>\bindll.dll
- %TEMP%\_is201671.ini
- %TEMP%\_is201312.ini
- <SYSTEM32>\nicv2.dll
- %TEMP%\UUU2.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU3.tmp
- <SYSTEM32>\confdos32.dll
- %TEMP%\_is201312.ini
- %TEMP%\_is201671.ini
- %TEMP%\UUU3.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU2.tmp