Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\DLSProvider] 'Start' = '00000002'
- %TEMP%\Setup09b.exe
- <SYSTEM32>\dls.exe
- %APPDATA%\uTorrent\settings.dat.new
- %APPDATA%\Microsoft\Crypto\RSA\S-1-5-21-2052111302-484763869-725345543-1003\ec702f375e1b12d218f67ab9ef19ca23_23ef5514-3059-436f-a4a7-4cefaab20eb1
- %TEMP%\utt1.tmp.new
- %HOMEPATH%\Cookies\%USERNAME%@localhost[1].txt
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\Preferred
- %TEMP%\Setup09b.exe
- <SYSTEM32>\dls.exe
- %APPDATA%\Microsoft\Protect\S-1-5-21-2052111302-484763869-725345543-1003\125e8fe9-b50e-4397-9a96-5271d4f5005b
- 'll.#####oad3.utorrent.com':80
- 'up####.utorrent.com':80
- 'localhost':1036
- ll.#####oad3.utorrent.com/offers/ut_conduit-20110119.bmp
- up####.utorrent.com/installstats.php?v=######################################################################
- up####.utorrent.com/installoffer.php?h=#####################################################################################
- DNS ASK ll.#####oad3.utorrent.com
- DNS ASK up####.utorrent.com
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '?Torrent4823DF041B09' WindowName: ''