Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\3.exe
- '%TEMP%\ApnStub.exe' /tb=OVO2
- '%TEMP%\ooVooSetup.exe'
- '%TEMP%\3.exe'
- '%TEMP%\ApnStub.exe' (загружен из сети Интернет)
- '%WINDIR%\Microsoft.NET\Framework\v4.0.30319\cvtres.exe' /NOLOGO /READONLY /MACHINE:IX86 "/OUT:%TEMP%\RES5.tmp" "%TEMP%\CSC4.tmp"
- '%WINDIR%\Microsoft.NET\Framework\v4.0.30319\csc.exe' /noconfig /fullpaths @"%TEMP%\0rf0etv1.cmdline"
- %TEMP%\0rf0etv1.out
- %TEMP%\0rf0etv1.cmdline
- %TEMP%\0rf0etv1.0.cs
- %TEMP%\0rf0etv1.dll
- %TEMP%\RES5.tmp
- %TEMP%\CSC4.tmp
- %TEMP%\aut2.tmp
- %TEMP%\3.exe
- %TEMP%\aut1.tmp
- %TEMP%\ApnStub.exe
- %TEMP%\3.tmp
- %TEMP%\ooVooSetup.exe
- %TEMP%\0rf0etv1.out
- %TEMP%\0rf0etv1.0.cs
- %TEMP%\0rf0etv1.dll
- %TEMP%\0rf0etv1.cmdline
- %TEMP%\aut2.tmp
- %TEMP%\aut1.tmp
- %TEMP%\CSC4.tmp
- %TEMP%\RES5.tmp
- 'cd###.oovoo.com':80
- 'sa######vice.red-gate.com':80
- 'localhost':1038
- 'ww##.oovoo.com':80
- cd###.oovoo.com/download/apnstub.exe
- sa######vice.red-gate.com/UploadReportLogin.asmx
- ww##.oovoo.com/DM/DownloadDispatcher.ashx
- ww##.oovoo.com/DM/downloadmanager.ashx
- DNS ASK sa######vice.red-gate.com
- DNS ASK cd###.oovoo.com
- DNS ASK ww##.oovoo.com
- ClassName: 'Shell_TrayWnd' WindowName: ''