Техническая информация
- '' (загружен из сети Интернет)
- '%APPDATA%\vbc.exe'
- %WINDIR%\explorer.exe
- Процесс firefox.exe, модуль nss3.dll
- %APPDATA%\vbc.exe
- %TEMP%\nsbc74a.tmp
- %APPDATA%\microsoft\portlets\localstart\80.opends60.dll
- %TEMP%\references\wolthuis\5\installutil.exe
- %TEMP%\references\wolthuis\5\81.opends60.dll
- %TEMP%\references\wolthuis\5\model51.xml
- %TEMP%\references\wolthuis\5\cmtnpttcpacceptna.dll
- %TEMP%\cenotaph
- %TEMP%\croupeattenuator.dll
- %TEMP%\nsjffff.tmp\nsexec.dll
- %TEMP%\nsjffff.tmp\nsexec.dll
- http://ra##modu.ga/~zadmin/doc/ap.exe
- DNS ASK ra##modu.ga
- DNS ASK bo###ideos.net
- DNS ASK ya###oudan.com
- DNS ASK si##uyo.com
- DNS ASK xm##88.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\rundll32.exe' CroupeAttenuator,Pretor
- '%WINDIR%\syswow64\cmd.exe'
- '%WINDIR%\syswow64\colorcpl.exe'
- '%WINDIR%\syswow64\cmd.exe' del "%WINDIR%\SysWOW64\cmd.exe"
- '%ProgramFiles(x86)%\mozilla firefox\firefox.exe'