Техническая информация
- %TEMP%\is-k8qhm.tmp\is-jgga6.tmp
- %TEMP%\is-mpnae.tmp\_isetup\_setup64.tmp
- %TEMP%\is-mpnae.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-mpnae.tmp\_iscrypt.dll
- %ProgramFiles(x86)%\printfolders\is-1hfts.tmp
- %ProgramFiles(x86)%\printfolders\is-ndkeb.tmp
- %ProgramFiles(x86)%\printfolders\is-ic2cv.tmp
- %ProgramFiles(x86)%\printfolders\is-4h539.tmp
- %ProgramFiles(x86)%\printfolders\is-6gb55.tmp
- %ProgramFiles(x86)%\printfolders\is-33c9n.tmp
- %ProgramFiles(x86)%\printfolders\unins000.dat
- %ProgramFiles(x86)%\printfolders\printfolders.exe
- %APPDATA%\{846ee340-7039-11de-9d20-806e6f6e6963}\wzxlanui.exe
- %ProgramFiles(x86)%\printfolders\is-1hfts.tmp в %ProgramFiles(x86)%\printfolders\unins000.exe
- %ProgramFiles(x86)%\printfolders\is-ndkeb.tmp в %ProgramFiles(x86)%\printfolders\guide.chm
- %ProgramFiles(x86)%\printfolders\is-ic2cv.tmp в %ProgramFiles(x86)%\printfolders\history.txt
- %ProgramFiles(x86)%\printfolders\is-4h539.tmp в %ProgramFiles(x86)%\printfolders\license.txt
- %ProgramFiles(x86)%\printfolders\is-6gb55.tmp в %ProgramFiles(x86)%\printfolders\russian.dll
- %ProgramFiles(x86)%\printfolders\is-33c9n.tmp в %ProgramFiles(x86)%\printfolders\printfolders.exe
- '45.##9.105.171':80
- http://45.##9.105.171/itsnotmalware/count.php?su#######################################
- ClassName: '{183D7C7A-78F2-476F-86FF-19B25EA04908}' WindowName: ''
- '%TEMP%\is-k8qhm.tmp\is-jgga6.tmp' /SL4 $B0234 "<Полный путь к файлу>" 1915649 51712
- '%ProgramFiles(x86)%\printfolders\printfolders.exe'
- '%APPDATA%\{846ee340-7039-11de-9d20-806e6f6e6963}\wzxlanui.exe'