Техническая информация
- %TEMP%\aimmunity\aimmunity.exe
- %TEMP%\aimmunity\msvcr71.dll
- %TEMP%\aimmunity\avl9001.dat
- %TEMP%\aimmunity\araymorfilehash.dll
- %TEMP%\aimmunity\md
- %TEMP%\aimmunity\aimmunity.exe.ini
- %TEMP%\aimmunity\md
- %TEMP%\aimmunity\aimmunity.exe.ini
- %TEMP%\aimmunity\aimmunity.exe.ini
- 'an##y.com':80
- 'an##y.com':443
- http://www.an##y.com/download/AntiyVersion.txt
- 'an##y.com':443
- DNS ASK an##y.com
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\aimmunity\aimmunity.exe'
- '%WINDIR%\syswow64\regini.exe' %TEMP%\AImmunity\AImmunity.exe.ini' (со скрытым окном)
- '%WINDIR%\syswow64\regini.exe' %TEMP%\AImmunity\AImmunity.exe.ini