Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Conefdde' = '{41158BA5-1920-4E75-9B75-0AD6D23FABD8}'
- <SYSTEM32>\vocelav.dll
- <SYSTEM32>\sndintcp.dll
- %TEMP%\_is126484.ini
- %TEMP%\_is125625.ini
- <SYSTEM32>\srvercan.dll
- %TEMP%\UUU2.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU3.tmp
- <SYSTEM32>\voxebras32.dll
- %TEMP%\_is125625.ini
- %TEMP%\_is126484.ini
- %TEMP%\UUU3.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU2.tmp