Техническая информация
- %APPDATA%\dll\Temp3.exe /stab %APPDATA%\dll\WebBrowser.txt
- %APPDATA%\dll\Temp2.exe /stab %APPDATA%\dll\mailpv.txt
- %APPDATA%\dll\Temp1.exe /stab %APPDATA%\dll\Bullets.txt
- [<HKCU>\Software\Yahoo\Pager]
- [<HKCU>\Software\Microsoft\IdentityCRL]
- [<HKCU>\Software\Microsoft\MessengerService]
- [<HKCU>\Software\Google\Google Talk\Accounts]
- [<HKCU>\Software\Microsoft\MSNMessenger]
- C:\Documents
- %TEMP%\dw.log
- %TEMP%\215D0.dmp
- %APPDATA%\dll\Temp1.exe
- %APPDATA%\dll\Temp2.exe
- %APPDATA%\dll\Temp3.exe
- %APPDATA%\dll\Temp3.exe
- %APPDATA%\dll\Temp2.exe
- %APPDATA%\dll\Temp1.exe
- 'ch####p.dyndns.org':80
- ch####p.dyndns.org/
- DNS ASK ch####p.dyndns.org
- ClassName: 'Shell_TrayWnd' WindowName: ''