Техническая информация
- '<SYSTEM32>\mshta.exe' c:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\start.hta
- 'C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\6E771AFE-39D4-4D0F-B167-2F0222A28662.exe' -y -pA1B35B39-8CA9-4680-93E6-AD4DAF20843E
- <SYSTEM32>\mshta.exe
- C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\loader.gif
- C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\Config.ini
- C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\start.hta
- C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\6E771AFE-39D4-4D0F-B167-2F0222A28662.exe
- C:\6b8e7f2a-4306-4e2f-801c-29c029ea5f22\InstallerHelper.dll
- 'se####e.srvmd9.com':80
- http://se####e.srvmd9.com/offers/getInstallerSettings.php?in##########################################
- DNS ASK se####e.srvmd9.com
- ClassName: 'Shell_TrayWnd' WindowName: ''