Техническая информация
- '<SYSTEM32>\DllHost.exe' /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
- '<SYSTEM32>\WScript.exe' "%PROGRAM_FILES%\YaHun\Poaaa\alkoid.vbs"
- '<SYSTEM32>\cmd.exe' /c ""%PROGRAM_FILES%\YaHun\Poaaa\mirniatom.bat" "
- %PROGRAM_FILES%\YaHun\Poaaa\Uninstall.exe
- %PROGRAM_FILES%\YaHun\Poaaa\iosdbfvadj.jka
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\691[1]
- %PROGRAM_FILES%\YaHun\Poaaa\Uninstall.ini
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %PROGRAM_FILES%\YaHun\Poaaa\mirniatom.bat
- %PROGRAM_FILES%\YaHun\Poaaa\alkoid.vbs
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- '23.##2.124.137':80
- 'localhost':61344
- 23.##2.124.137/podosralki/govnoed/691