Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Microsoft Update' = '%TEMP%\skyp\Microsoft Update.lnk'
- %TEMP%\aut1.tmp
- %TEMP%\jhktrzs
- %TEMP%\aut2.tmp
- %TEMP%\XXMGUF.exe
- %TEMP%\Skyp\Server.exe
- %TEMP%\Skyp\Microsoft Update.lnk
- %TEMP%\dw.log
- %TEMP%\29BB9.dmp
- %TEMP%\aut1.tmp
- %TEMP%\jhktrzs
- %TEMP%\aut2.tmp
- 'localhost':80
- 'ip###ore.com':80
- http://ip###ore.com/checkip/
- DNS ASK ip###ore.com
- '%TEMP%\XXMGUF.exe'
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 412