Техническая информация
- <SYSTEM32>\cmd.exe /c """%TEMP%\_uninsep.bat"" "
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\cvtres.exe /NOLOGO /READONLY /MACHINE:IX86 "/OUT:"%TEMP%\RES2.tmp"" ""%TEMP%\vbc1.tmp""
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe /noconfig @"%TEMP%\jzj1zh6n.cmdline"
- %WINDIR%\Explorer.EXE
- %TEMP%\SDM143\Free Ride Games.exe
- %TEMP%\SDM143\ExentCtlInstaller.dll
- %TEMP%\SDM143\00021F55
- %TEMP%\SDM143\SDM_DB_143.xml
- %TEMP%\_uninsep.bat
- %TEMP%\SDM143\resourceDll.dll
- %TEMP%\FARM-FRENZY.EXE
- %TEMP%\jzj1zh6n.out
- %TEMP%\jzj1zh6n.cmdline
- %TEMP%\jzj1zh6n.0.vb
- %TEMP%\jzj1zh6n.dll
- %TEMP%\RES2.tmp
- %TEMP%\vbc1.tmp
- %TEMP%\jzj1zh6n.0.vb
- %TEMP%\jzj1zh6n.dll
- %TEMP%\FARM-FRENZY.EXE
- %TEMP%\SDM143\00021F55
- %TEMP%\vbc1.tmp
- %TEMP%\RES2.tmp
- %TEMP%\jzj1zh6n.cmdline
- %TEMP%\jzj1zh6n.out
- 'localhost':1047
- 'cd#.#xent.com':80
- 'da#####er.no-ip.info':33688
- 'www.fr####degames.com':80
- www.fr####degames.com/do/SDMGW?ac#######################################
- DNS ASK cd#.#xent.com
- DNS ASK www.fr####degames.com
- DNS ASK da#####er.no-ip.info
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'shell_traywnd' WindowName: ''
- ClassName: 'SDM_Singleton' WindowName: 'SDM_Singleton'