Техническая информация
- %WINDIR%\explorer.exe
- %WINDIR%\syswow64\lz_scby.txt
- %WINDIR%\f4e49a\a9ac2f1217299d05e371e7c96be9acd0
- %WINDIR%\f4e49a\rnlyay0.dll
- %WINDIR%\f4e49a\fp6tt4j.exe
- %LOCALAPPDATA%\cudtu.dat
- C:\p2pv221541.log
- %WINDIR%\syswow64\lz_scby.txt
- %LOCALAPPDATA%\cudtu.dat
- %WINDIR%\f4e49a\fp6tt4j.exe
- %WINDIR%\f4e49a\a9ac2f1217299d05e371e7c96be9acd0
- %WINDIR%\f4e49a\rnlyay0.dll
- DNS ASK ba##u.com
- DNS ASK do##.5212345.cn
- ClassName: 'Progman' WindowName: ''
- '%WINDIR%\f4e49a\fp6tt4j.exe' /runp2p:C:/Windows/f4e49a/rnLYAy0.dll
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\FirewallControlPanel.dll,ShowNotificationDialog /configure /ETOnly 0 /OnProfiles 6 /OtherAllowed 0 /OtherBlocked 0 /OtherEdgeAllowed 0 /NewBlocked 4 "%WINDIR%\explorer.exe"