Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001] 'PackedCatalogItem' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002] 'PackedCatalogItem' = ''
- <SYSTEM32>\attrib.exe +r +h +s <Текущая директория>\Vongola.dll
- <Текущая директория>\Vongola.dll
- <SYSTEM32>\ESPI11.dll
- %TEMP%\ESPI.dll
- <Текущая директория>\Vongola.dll
- 'www.vo###lafin.tk':80
- www.vo###lafin.tk/banben.txt
- DNS ASK www.vo###lafin.tk
- ClassName: 'Shell_TrayWnd' WindowName: ''