Техническая информация
- <LS_APPDATA>\{CME1ETJ3-9CRF-Q6M9-FH5E-CGD3UHR98JI9}\3fhm986ueu60.exe
- <LS_APPDATA>\{CME1ETJ3-9CRF-Q6M9-FH5E-CGD3UHR98JI9}\3fhm986ueu60.exe (загружен из сети Интернет)
- <LS_APPDATA>\{CME1ETJ3-9CRF-Q6M9-FH5E-CGD3UHR98JI9}\3fhm986ueu60.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\KylonfgM[1].hlp
- 'www.at########arecida.voudeargohost.net':80
- www.at########arecida.voudeargohost.net/KylonfgM.hlp
- www.at########arecida.voudeargohost.net/Chyltrol.hlp
- DNS ASK www.at########arecida.voudeargohost.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'TMyUpForm' WindowName: ''