Техническая информация
- '%TEMP%\local.exe'
- '%TEMP%\RarSFX0\wfc4setup.exe'
- %TEMP%\nsi2.tmp\conf
- %TEMP%\nsi2.tmp\setup.dll
- %TEMP%\RarSFX0\wfc4setup.exe
- %TEMP%\nsi2.tmp\NSISdl.dll
- <SYSTEM32>\d3d9caps.dat
- <SYSTEM32>\d3d9caps.tmp в <SYSTEM32>\d3d9caps.dat
- %TEMP%\nsi2.tmp\setup.dll в %TEMP%\local.exe
- 'pe###ne.club':80
- pe###ne.club/launch_reb.php?p=######################################
- DNS ASK pe###ne.club
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''