Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'iexplorers.exe' = '<LS_APPDATA>\iexplorers.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'LocalResource.exe' = '%PROGRAM_FILES%\WindowsUpdate\LocalResource.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Sql.exe' = '%APPDATA%\sqlite.exe'
- '%PROGRAM_FILES%\WindowsUpdate\LocalResource.exe'
- '<LS_APPDATA>\iexplorers.exe'
- '%HOMEPATH%\Desktop\MusicLib.exe'
- '%APPDATA%\sqlite.exe'
- <LS_APPDATA>\System.Data.SQLite.dll
- %APPDATA%\Extens\C\Program Files (x86)\Mozilla Firefox\mozzila firefox.exe
- <LS_APPDATA>\sqlite.exe
- %TEMP%\343D0.dmp
- %TEMP%\dw.log
- %APPDATA%\Local\Google\Chrome\User Data\Default\google chrome.exe
- %HOMEPATH%\Desktop\MusicLib.exe
- %APPDATA%\System.Data.SQLite.dll
- %APPDATA%\sqlite.exe
- <LS_APPDATA>\iexplorers.exe
- %PROGRAM_FILES%\WindowsUpdate\LocalResource.exe
- 'm.###class.com':80
- 'wp#d':80
- m.###class.com/reg_music_library.php?un######################
- wp#d/wpad.dat
- DNS ASK m.###class.com
- DNS ASK wp#d
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'