Техническая информация
- '<SYSTEM32>\icgypd.exe'
- '<SYSTEM32>\sfxub.exe' {EC48FD7E-4898-4953-A2E4-170E6979E151}|<SYSTEM32>\tpdcf.dll
- '<SYSTEM32>\bacgfip.exe' sfxub
- %TEMP%\nso6.tmp\System.dll
- %TEMP%\Backup.ini
- %TEMP%\nsr4.tmp\AccessControl.dll
- <SYSTEM32>\Log\Install.log
- %TEMP%\nsr4.tmp\System.dll
- %TEMP%\nso6.tmp\FindProcDLL.dll
- %TEMP%\nso6.tmp\ShellLink.dll
- %TEMP%\nsr4.tmp\KillProcDLL.dll
- %TEMP%\nso6.tmp\AccessControl.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\GetUrl[1].aspx
- <Текущая директория>\perffilt.ini
- <SYSTEM32>\Launcher.exe
- %TEMP%\nsa2.tmp\FindProcDLL.dll
- %TEMP%\nsa2.tmp\System.dll
- %TEMP%\nsa2.tmp\blowfish.dll
- %TEMP%\nsa2.tmp\AccessControl.dll
- <SYSTEM32>\Launch_IE.exe
- <SYSTEM32>\tsmfl.dll
- <SYSTEM32>\IEMon.exe
- <SYSTEM32>\tslablec.ini
- <SYSTEM32>\Log\Install.log
- <SYSTEM32>\sfxub.exe
- <SYSTEM32>\icgypd.exe
- <SYSTEM32>\tpdcf.dll
- <SYSTEM32>\bacgfip.exe
- <SYSTEM32>\tslablec.ini
- %TEMP%\nso6.tmp\FindProcDLL.dll
- %TEMP%\nso6.tmp\AccessControl.dll
- %TEMP%\nso6.tmp\System.dll
- %TEMP%\nso6.tmp\ShellLink.dll
- %TEMP%\nsa2.tmp\blowfish.dll
- %TEMP%\nsa2.tmp\AccessControl.dll
- %TEMP%\nsa2.tmp\System.dll
- %TEMP%\nsa2.tmp\FindProcDLL.dll
- <SYSTEM32>\tsmfl.dll в <SYSTEM32>\tpdcf.dll
- <SYSTEM32>\Launch_IE.exe в <SYSTEM32>\icgypd.exe
- <SYSTEM32>\Launcher.exe в <SYSTEM32>\sfxub.exe
- <SYSTEM32>\IEMon.exe в <SYSTEM32>\bacgfip.exe
- 'co####.netbarad.net':80
- co####.netbarad.net/GetUrl.aspx
- DNS ASK co####.netbarad.net