Техническая информация
- %APPDATA%\rcpsetup.exe -server -silent -hideicon -user koolzerro -pass dactilograf
- %APPDATA%\rcpsetup.exe (загружен из сети Интернет)
- [<HKCU>\Software\Yahoo\pager]
- %APPDATA%\rcpsetup.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\asd[1].zip
- 'sm##.gmail.com':465
- 'dl###.herosh.com':80
- dl###.herosh.com/f5d192c2a294c23e4f5d41baf6010069/asd.zip
- DNS ASK sm##.gmail.com
- DNS ASK dl###.herosh.com
- ClassName: 'Shell_TrayWnd' WindowName: ''