Техническая информация
- '<SYSTEM32>\DllHost.exe' /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
- '<SYSTEM32>\WScript.exe' "%PROGRAM_FILES%\Inst\Kak\buhlo.vbs"
- '<SYSTEM32>\cmd.exe' /c ""%PROGRAM_FILES%\Inst\Kak\cheburek.bat" "
- %PROGRAM_FILES%\Inst\Kak\Uninstall.exe
- %PROGRAM_FILES%\Inst\Kak\Uninstall.ini
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\141[1]
- %PROGRAM_FILES%\Inst\Kak\cheburek.bat
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %PROGRAM_FILES%\Inst\Kak\buhlo.vbs
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- '19#.#75.125.195':80
- 'localhost':51541
- 19#.#75.125.195/zayats/podoxdfdf/141