Техническая информация
- %TEMP%\WindowsUpdater.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\nssutil3[1].dll
- <SYSTEM32>\nssutil3.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\nspr4[1].dll
- <SYSTEM32>\nspr4.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\a1v4t7[1].exe
- %TEMP%\WindowsUpdater.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\plc4[1].dll
- <SYSTEM32>\plc4.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mozcrt19[1].dll
- <SYSTEM32>\mozcrt19.dll
- %TEMP%\aut1.tmp
- %TEMP%\Nos2.png
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\mozutils[1].dll
- <SYSTEM32>\mozutils.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mozsqlite3[1].dll
- <SYSTEM32>\mozsqlite3.dll
- %TEMP%\WindowsUpdater.exe
- %TEMP%\aut1.tmp
- 'vv####.vv.ohost.de':80
- vv####.vv.ohost.de/nssutil3.dll
- vv####.vv.ohost.de/plc4.dll
- vv####.vv.ohost.de/a1v4t7.exe
- vv####.vv.ohost.de/nspr4.dll
- vv####.vv.ohost.de/mozcrt19.dll
- vv####.vv.ohost.de/mozsqlite3.dll
- vv####.vv.ohost.de/mozutils.dll
- DNS ASK vv####.vv.ohost.de
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''