Техническая информация
- '%TEMP%\1300.exe'
- '%TEMP%\4969.exe'
- '<SYSTEM32>\systeminfo.exe'
- %WINDIR%\Explorer.EXE
- %TEMP%\1300.exe
- %TEMP%\bm3.tmp
- %TEMP%\~059738.tmp
- %TEMP%\nsh2.tmp
- %TEMP%\4969.exe
- %TEMP%\1300.exe
- %TEMP%\4969.exe
- %TEMP%\~059738.tmp
- '20#.#6.232.49':80
- 20#.#6.232.49/report_v3_706497E91E9FCC01_43524E4A45554655_55524E58594D4156_006C5085_0_started_ext_ALRRR_N_OSBBB_32_OSNNN_Microsoft_Windows_XP_CNNN_CRNJEUFU_UNNN_URNXYMAV_EXXX_CCE36685B57C60D171880D24E3AFB7A0_459588_C__DOCUME_1_URNXYMAV_LOCALS_1_Temp_4969_exe
- ClassName: 'Shell_TrayWnd' WindowName: ''