Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'HDRenderer' = '"%APPDATA%\HDRenderer\RendHD.exe" '
- %APPDATA%\HDRenderer\HDRenderer32.exe -a 5 -o http://pr#####-bit.net:8332 -u uzamo.super -p 7571
- %APPDATA%\HDRenderer\RendHD.exe
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %TEMP%\nsa3.tmp\mahaoranos.harm.weiv
- %APPDATA%\HDRenderer\maooowaln.harm
- %APPDATA%\HDRenderer\mahaoranos.harm
- %ALLUSERSPROFILE%\Application Data\TEMP:44504F07
- %TEMP%\nsa3.tmp\System.dll
- %TEMP%\nsa3.tmp\Patc.dll
- %TEMP%\nsa3.tmp\Processes.dll
- %TEMP%\nsv2.tmp
- %APPDATA%\HDRenderer\mahaoranos
- %TEMP%\nsa3.tmp\maooowaln.harm.weiv
- %APPDATA%\HDRenderer\maooowaln
- %TEMP%\nsa3.tmp\Patc.dll
- %TEMP%\nsa3.tmp\Processes.dll
- %TEMP%\nsa3.tmp\System.dll
- %TEMP%\nsa3.tmp\mahaoranos.harm.weiv
- %APPDATA%\HDRenderer\maooowaln
- %TEMP%\nsa3.tmp\maooowaln.harm.weiv
- %APPDATA%\HDRenderer\mahaoranos