Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\ialdnwxf] 'ImagePath' = '<Текущая директория>\superec.ProcessMemory.sys'
- 'ialdnwxf' <Текущая директория>\superec.ProcessMemory.sys
- <Текущая директория>\superec.processmemory.sys
- %WINDIR%\temp\uddfdde.tmp
- %WINDIR%\temp\uddfdde.tmp
- <Текущая директория>\superec.processmemory.sys
- '52##g.com':80
- 'fc##.info':80
- 'gg##.com':80
- 'd1#######stzrp.cloudfront.net':80
- 'c.####ingcrew.net':80
- 'br###-jar.com':443
- http://www.52##g.com/soft/list.asp?cl#######
- http://www.52##g.com/soft/show.asp?id####
- http://www.fc##.info/123.txt
- http://d1#######stzrp.cloudfront.net/themes/saledefault.css
- http://d1#######stzrp.cloudfront.net/themes/assets/style.css
- http://c.####ingcrew.net/scripts/sale_form.js
- http://d1#######stzrp.cloudfront.net/themes/assets/zeropark.css
- 'br###-jar.com':443
- DNS ASK 52##g.com
- DNS ASK gg##.com
- DNS ASK fc##.info
- DNS ASK d1#######stzrp.cloudfront.net
- DNS ASK c.####ingcrew.net
- DNS ASK br###-jar.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''