Техническая информация
- %TEMP%\7zS1.tmp\sideplus.exe
- <SYSTEM32>\pomensetup.exe
- <SYSTEM32>\regsvr32.exe "%PROGRAM_FILES%\pomender\pomender.dll" /S
- %TEMP%\7zS1.tmp\program\pomender.dll
- %PROGRAM_FILES%\pomender\pomender.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\execute[1].php
- %PROGRAM_FILES%\pomender\pomenderun.exe
- %TEMP%\7zS1.tmp\sideplus.exe
- %TEMP%\7zS1.tmp\program\bclubwidget.exe
- <SYSTEM32>\pomensetup.exe
- %TEMP%\7zS1.tmp\program\bclubwidgetun.exe
- %TEMP%\7zS1.tmp\program\pomenderun.exe
- %TEMP%\7zS1.tmp\program\bclubwidget.dll
- %TEMP%\7zS1.tmp\program\pomender.dll
- %TEMP%\7zS1.tmp\program\pomenderun.exe
- %TEMP%\7zS1.tmp\sideplus.exe
- %TEMP%\7zS1.tmp\program\bclubwidgetun.exe
- %TEMP%\~DF362E.tmp
- %TEMP%\7zS1.tmp\program\bclubwidget.dll
- %TEMP%\7zS1.tmp\program\bclubwidget.exe
- '21#.#45.31.156':80
- 'localhost':1036
- 21#.#45.31.156/~byc/execute.php?m_#################################################################################################
- ClassName: 'Shell_TrayWnd' WindowName: ''