Техническая информация
- %WINDIR%\explorer.exe
- %HOMEPATH%\desktop\delete.avi
- %WINDIR%\syswow64\lz_scby.txt
- %WINDIR%\c71a72\3d19eb11bd73c58f6848347047770379
- %WINDIR%\c71a72\aw899hb.dll
- %WINDIR%\c71a72\o6tccx0.exe
- <LS_APPDATA>\me95e.dat
- C:\p2pv221541.log
- %WINDIR%\syswow64\lz_scby.txt
- <LS_APPDATA>\me95e.dat
- %WINDIR%\c71a72\o6tccx0.exe
- %WINDIR%\c71a72\3d19eb11bd73c58f6848347047770379
- %WINDIR%\c71a72\aw899hb.dll
- http://np##.#oomeng.com/bmy/?us######################################################
- http://np##.inibin.com/bmy/?us######################################################
- DNS ASK ba##u.com
- DNS ASK np##.#oomeng.com
- DNS ASK np##.inibin.com
- ClassName: 'Progman' WindowName: ''
- '%WINDIR%\c71a72\o6tccx0.exe' /runp2p:C:/Windows/c71a72/aW899Hb.dll
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "%WINDIR%\explorer.exe"