Техническая информация
- <SYSTEM32>\q.exe
- C:\Server.exe
- C:\gtatrainer.exe
- <SYSTEM32>\q.exe (загружен из сети Интернет)
- <SYSTEM32>\MSWINSCK.ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mswinsck[1].ocx
- <SYSTEM32>\uolsn.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\uolsn[1].dll
- <SYSTEM32>\q.exe
- C:\Server.exe
- C:\gtatrainer.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\q[1].exe
- %TEMP%\~DFCAC.tmp
- 'pd###.egloos.com':80
- 'localhost':1036
- pd###.egloos.com/pds/201206/21/40/uolsn.dll
- pd###.egloos.com/pds/201206/21/40/mswinsck.ocx
- pd###.egloos.com/pds/201207/27/40/q.exe
- DNS ASK pd###.egloos.com
- ClassName: 'Grand theft auto San Andreas' WindowName: 'GTA: San Andreas'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'TRAINER SPY'