Техническая информация
- local.exe
- ClassName: 'FileMonClass', WindowName: ''
- ClassName: 'RegMonClass', WindowName: ''
- ClassName: 'PROCMON_WINDOW_CLASS', WindowName: ''
- %TEMP%\nst2.tmp\NSISdl.dll
- %TEMP%\nst2.tmp\conf
- %TEMP%\nst2.tmp\setup.dll
- %TEMP%\nst2.tmp\setup.dll в %TEMP%\local.exe
- 'fc###es.website':80
- http://fc###es.website/launch_reb.php?p=############################################################
- DNS ASK fc###es.website
- '%TEMP%\local.exe'