Техническая информация
- '' (загружен из сети Интернет)
- %APPDATA%\Flash\sgminer.exe
- %APPDATA%\Flash\firstsg.vbs
- %APPDATA%\Flash\updatesg.vbs
- %APPDATA%\Flash\flashsec.exe
- %APPDATA%\Flash\startsec.vbs
- %APPDATA%\Flash\updatesec.vbs
- %APPDATA%\Flash\info.txt
- %APPDATA%\Flashvlc.exe
- %APPDATA%\Flashdefaultpack.exe
- %APPDATA%\Flash\report.log
- 'localhost':1037
- '5.###.248.85':80
- 'sd####54hhdf.com':80
- http://5.###.248.85/sgminer.exe
- http://5.###.248.85/firstsg.vbs
- http://5.###.248.85/updatesg.vbs
- http://5.###.248.85/flashsec.exe
- http://5.###.248.85/startsec.vbs
- http://5.###.248.85/updatesec.vbs
- http://5.###.248.85/info.txt
- http://5.###.248.85/vlc.exe
- http://5.###.248.85/defaultpack.exe
- http://sd####54hhdf.com/report.log
- DNS ASK sd####54hhdf.com
- ClassName: 'MS_WINHELP' WindowName: ''
- '%APPDATA%\Flash\sgminer.exe' -s
- '%APPDATA%\Flashdefaultpack.exe'
- '%APPDATA%\Flashvlc.exe'
- '<SYSTEM32>\wscript.exe' "%APPDATA%/Flash/updatesec.vbs"
- '<SYSTEM32>\wscript.exe' "%APPDATA%/Flash/startsec.vbs"
- '<SYSTEM32>\wscript.exe' "%APPDATA%/Flash/firstsg.vbs"
- '<SYSTEM32>\wscript.exe' "%APPDATA%/Flash/updatesg.vbs"