Техническая информация
- 'C:\temp\sp-downloader.exe' -carrier_type=ctid -carrier_id=CT3324863 -platform=all -startpage=true -defaultsearch=true -locale=en-us
- 'C:\temp\sp-downloader.exe' (загружен из сети Интернет)
- '<SYSTEM32>\taskkill.exe' /F /IM white.exe
- C:\temp\sp-downloader.exe
- %TEMP%\nsq2.tmp\AccessControl.dll
- %TEMP%\nsq2.tmp\NSISdl.dll
- %TEMP%\nsq2.tmp\UAC.dll
- %TEMP%\nsq2.tmp\System.dll
- 'sp#####age.spccint.com':80
- sp#####age.spccint.com/sp-downloader.exe
- DNS ASK www.sh###dsoft.com
- DNS ASK sp#####age.spccint.com
- ClassName: '(null)' WindowName: '(null)'