Техническая информация
- '%ALLUSERSPROFILE%\DRM\XXX\.exe'
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\svchost.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154841.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154836.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154831.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154856.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154851.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154846.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154811.jpg
- %ALLUSERSPROFILE%\DRM\XXX\cacybbzcwpxbbxg
- %ALLUSERSPROFILE%\DRM\XXX\.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154826.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154821.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20131026154816.jpg
- 'localhost':12345
- 'localhost':12345