Техническая информация
- %APPDATA%\microsoft\windows\start menu\programs\startup\yagggo.exe
- %LOCALAPPDATA%\tempserver.exe
- %LOCALAPPDATA%\temputorrent_26740.exe
- %APPDATA%\microsoft\crypto\rsa\s-1-5-21-3150914307-1777937420-491476919-1000\1f91d2d17ea675d4c2c3192e241743f9_d99ef00b-ccd3-4f1d-9980-90ac453b0b47
- %TEMP%\aut72bf.tmp
- %APPDATA%\utorrent\settings.dat.new
- %TEMP%\utt891c.tmp.new
- %TEMP%\aut72bf.tmp
- %APPDATA%\utorrent\settings.dat.new в %APPDATA%\utorrent\settings.dat
- %TEMP%\utt891c.tmp.new в %TEMP%\utt891c.tmp
- 'up####.utorrent.com':80
- http://up####.utorrent.com/installoffer.php?h=############################################################################################
- http://up####.utorrent.com/installstats.php?v=##########################################################################################
- DNS ASK up####.utorrent.com
- ClassName: 'ВµTorrent4823DF041B09' WindowName: ''
- '%LOCALAPPDATA%\tempserver.exe'
- '%LOCALAPPDATA%\temputorrent_26740.exe'