Техническая информация
- %WINDIR%\Downloaded Program Files\svchost.exe 10.0.0.2 http://b.##d6.com/ww.exe
- %WINDIR%\Downloaded Program Files\svchost.exe 10.0.0.3 http://b.##d6.com/ww.exe
- %WINDIR%\Fonts\svchost.exe
- %WINDIR%\Downloaded Program Files\svchost.exe 10.0.0.1 http://b.##d6.com/ww.exe
- \Device\LanmanRedirector\10.0.0.2\pipe\browser
- \Device\LanmanRedirector\10.0.0.3\pipe\browser
- \Device\LanmanRedirector\10.0.0.1\pipe\browser
- %WINDIR%\Fonts\svchost.exe
- %WINDIR%\Downloaded Program Files\svchost.exe
- '<IP-адрес в локальной сети>':139
- '<IP-адрес в локальной сети>':445