Техническая информация
- %PROGRAM_FILES%\HService\vlcas.exe
- %TEMP%\svchost.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\cluster[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\srvsynchro[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\srvsynchro[1].html
- %TEMP%\xcoca.ine
- %PROGRAM_FILES%\HService\sqlite3.dll
- %PROGRAM_FILES%\HService\vlcas.exe
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\places.sqlite.tmp
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\places.sqlite.tmp-shm
- %TEMP%\xcoca.ine в %TEMP%\svchost.exe
- 'localhost':1038
- 'www.fr##jad.com':80
- www.fr##jad.com/script/srvsynchro.html?a=######
- www.fr##jad.com/script/cluster.html?i=##########
- DNS ASK www.fr##jad.com
- ClassName: 'SysListView32' WindowName: ''
- ClassName: '#32770' WindowName: ''