Техническая информация
- xxx1.exe
- firefox.exe
- iexplore.exe
- [HKCU\Software\Yahoo\pager]
- [HKCU\Software\IMVU\username]
- [HKCU\Software\IMVU\password]
- [HKCU\Software\Paltalk]
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FTP Commander\]
- ClassName: '', WindowName: 'Yahoo! Messenger'
- %TEMP%\keygen.exe
- %TEMP%\xxx1.exe
- 'ra###gens.info':80
- 'ra###gens.info':443
- http://www.ra###gens.info/poe/index.php?ac##############################################################################################################
- 'ra###gens.info':443
- DNS ASK ra###gens.info
- '%TEMP%\keygen.exe'
- '%TEMP%\xxx1.exe'