Техническая информация
- 'C:\temp\guardian.exe'
- 'C:\temp\guardian.exe' (загружен из сети Интернет)
- C:\temp\guardian.exe
- %TEMP%\nsb2.tmp\AccessControl.dll
- C:\temp\test.txt
- %TEMP%\nsb2.tmp\UAC.dll
- %TEMP%\nsb2.tmp\System.dll
- %TEMP%\nsb2.tmp\NSISdl.dll
- 'www.sh###dsoft.org':80
- 'www.up###e-srv.info':80
- www.sh###dsoft.org/report/install_50onred.php?us##################
- www.up###e-srv.info/get/.eJw1jEsKgCAURffyxg78QKWbEcOXSKKiQlC0915B03POvRe4Wm30YNSi9cxguL6DgZj7cClhAwb11ZIryeAsGb96kpILwf7ObsmFTieaGJGA9FFb8TRfWzk6NrL8fgBx4SKF.TI0rvtEs_Y77Bvec_dNrbnGBiWw/1401390473111
- DNS ASK www.sh###dsoft.org
- DNS ASK www.up###e-srv.info