Техническая информация
- %WINDIR%\win.ini
- %APPDATA%\microsoft\windows\start menu\programs\startup\bitfde6.tmp
- %WINDIR%\syswow64\cmd.exe
- %TEMP%\tutgrammarrecostring.jpg
- %APPDATA%\ghisler\bitf4ec.tmp
- %TEMP%\carelucerne.dll
- %TEMP%\guardhouses.exe
- %TEMP%\apostleship
- %TEMP%\libxcb-xv0amd64.symbols
- %TEMP%\sbsiehost.dll
- %TEMP%\storeadm.exe
- %TEMP%\sdbusdefaultuser.3
- %TEMP%\co3416indexofcharintint.cs
- %TEMP%\radio-mixed-insensitive.png
- %TEMP%\rsobjectsui.dll
- %TEMP%\vehicle.vb
- %TEMP%\lcapply.png
- %TEMP%\x-raw-disk-image.xml
- %TEMP%\scriptbinding.cpython-35.pyc
- %TEMP%\fixrenames.cpython-35.pyc
- %TEMP%\org.gnome.evolution.defaultsources.gschema.xml
- %TEMP%\24e90984.lnk
- %APPDATA%\rmc\logs.dat
- %APPDATA%\ghisler\bitf4ec.tmp
- %APPDATA%\microsoft\windows\start menu\programs\startup\bitfde6.tmp
- %APPDATA%\rmc\logs.dat
- %APPDATA%\ghisler\bitf4ec.tmp в %APPDATA%\ghisler\certutil.exe
- 're####t.tortbro.men':2453
- DNS ASK re####t.tortbro.men
- '%TEMP%\guardhouses.exe'
- '%WINDIR%\syswow64\cmd.exe'