Техническая информация
- %TEMP%\e1aA3k.exe (загружен из сети Интернет)
- ClassName: 'OLLYDBG' WindowName: ''
- %TEMP%\e1aA3k.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\update1.firstscannerm[1].exe&ttl=1195c28612d
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\65.98.83[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\update1.firstscannerm[1].exe&ttl=1195c28612d
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\65.98.83[1]
- 'up#####.firstscannerm.com':80
- '98.##2.243.64':80
- 'localhost':1037
- '20#.#12.147.141':80
- '65.##.83.115':80
- up#####.firstscannerm.com/?ab###################################################################################
- 65.##.83.115/?8x#########################################################################################################################
- DNS ASK up#####.firstscannerm.com
- '<IP-адрес в локальной сети>':1038