Техническая информация
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyServer' = '127.0.0.1:9666'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyOverride' = 'local'
- [<HKLM>\SYSTEM\ControlSet001\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings] 'ProxyEnable' = '00000001'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1C00' = '{00,00,00,00}'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] 'CurrentLevel' = '{00,00,00,00}'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'ProxyEnable' = '00000001'
- %TEMP%\~lboqmqjsjjm3o6g
- %TEMP%\~jwdwswiypim2s0b
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- '12#.#27.116.218':443
- '21#.#5.34.227':443
- '21#.#67.224.18':443
- '21#.#68.72.158':443
- '65.#9.2.24':443
- '65.#9.2.23':443
- '65.#9.2.26':443
- '12#.#04.209.19':443
- '13#.#87.66.224':443
- '16#.#89.61.247':443
- '16#.#54.226.26':443
- '12#.#9.210.101':443
- '12#.#25.48.99':443
- '21#.#3.113.51':443
- '15#.#3.64.54':443
- DNS ASK www.pp###og.info
- DNS ASK www.ru##h9.info
- DNS ASK www.pp###re.info
- DNS ASK do##.google.com
- DNS ASK www.google.com
- DNS ASK www.rc###lt.info
- DNS ASK www.rn###ia.info
- DNS ASK www.mt###ce.info
- DNS ASK www.se###pp.info
- DNS ASK www.ps##ne.info
- DNS ASK www.ro##ia.info
- ClassName: 'Shell_TrayWnd' WindowName: ''