Техническая информация
- %TEMP%\754e0b6b\preloader.exe
- %TEMP%\754e0b6b\installer\new-screen.dat
- %TEMP%\754e0b6b\installer\sandbox-boot.dat
- %TEMP%\754e0b6b\installer\installer-config.dat
- %TEMP%\754e0b6b\installer\installer.dat
- %TEMP%\754e0b6b\installer\boot.dat
- %TEMP%\754e0b6b\images\progressbar.gif
- %TEMP%\754e0b6b\images\loader.gif
- %TEMP%\754e0b6b\installer\step0.ini
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\content.ie5\bzjx5bke\screen0[1]
- %TEMP%\754e0b6b\preloader.exe
- %TEMP%\754e0b6b\installer\new-screen.dat
- %TEMP%\754e0b6b\installer\sandbox-boot.dat
- %TEMP%\754e0b6b\installer\installer-config.dat
- %TEMP%\754e0b6b\installer\installer.dat
- %TEMP%\754e0b6b\installer\boot.dat
- %TEMP%\754e0b6b\images\progressbar.gif
- %TEMP%\754e0b6b\images\loader.gif
- %TEMP%\754e0b6b\installer\step0.ini в %TEMP%\754e0b6b\installer\step0.ini.old
- %TEMP%\754e0b6b\installer\step0.ini
- %TEMP%\754e0b6b\installer\step0.ini.old
- 'r1.#####plicationmy.info':80
- 'su####-smiles.com':80
- 'r2.#####plicationmy.info':80
- http://r1.#####plicationmy.info/
- http://su####-smiles.com
- http://r2.#####plicationmy.info/
- DNS ASK r1.#####plicationmy.info
- DNS ASK su####-smiles.com
- DNS ASK r2.#####plicationmy.info
- DNS ASK c1.####lloaddatamy.info
- DNS ASK c2.####lloaddatamy.info
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%TEMP%\754e0b6b\preloader.exe' ProfileFileName=step0.ini