Техническая информация
- 'C:\ProgramData\adobler\mmws.exe'
- 'C:\ProgramData\adobler\mmws.exe' (загружен из сети Интернет)
- '<SYSTEM32>\rundll32.exe' dfdts.dll,DfdGetDefaultPolicyAndSMART
- ClassName: 'FilemonClass' WindowName: '(null)'
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: '(null)'
- ClassName: 'RegmonClass' WindowName: '(null)'
- ClassName: 'OLLYDBG' WindowName: '(null)'
- ClassName: 'GBDYLLO' WindowName: '(null)'
- ClassName: 'pediy06' WindowName: '(null)'
- C:\ProgramData\adobler\8BAEF2367A.hlp
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\BOWDBRP7\TuckMS[1].hlp
- C:\ProgramData\adobler\mmws.exe
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\SOXZEUJX\iStarTrek[1].hlp
- C:\ProgramData\adobler\FA3E6287A9.hlp
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\ByScreen[1].hlp
- C:\ProgramData\adobler\476A8ED314.hlp
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\YF7T7AK2\Catch[1].hlp
- 'ms##.#echire.com':80
- ms##.#echire.com/TuckMS.hlp
- ms##.#echire.com/iStarTrek.hlp
- ms##.#echire.com/ByScreen.hlp
- ms##.#echire.com/Catch.hlp
- DNS ASK ms##.#echire.com
- ClassName: '(null)' WindowName: 'Registry Monitor - Sysinternals: www.sysinternals.com'
- ClassName: '18467-41' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'File Monitor - Sysinternals: www.sysinternals.com'
- ClassName: '(null)' WindowName: 'Process Monitor - Sysinternals: www.sysinternals.com'