Техническая информация
- '%TEMP%\RarSFX0\starts.exe'
- <Текущая директория>\Credo_De_Furia-...navsegda.mp3
- %TEMP%\RarSFX0\starts.exe
- %ALLUSERSPROFILE%\Desktop\Download Credo_De_Furia...lnk
- 'do####ad-song.ru':80
- 'ou###i.neyd.ru':80
- 'do###oad-mp3.in':80
- do####ad-song.ru/audios/aHR0cDovL2NzNjE0MnY0LnZrLm1lL3U0NTcwNDM4MC9hdWRpb3MvODI0MTk0NGZiYzNiLm1wMz9leHRyYT1Cck1KMWNiUEc1d0VURW01ZnRMbnVQWWJXd2xxem1BaVRzVXZlYURsZnFLWkdBbDc4OVZxY3pxUkZJa3VaZ1p6Z0lObk5yX0JFa0pyZndZTDhDMkNkbGZsZUY3X05ySDM/Credo_De_Furia-...navsegda
- ou###i.neyd.ru/api/index
- do###oad-mp3.in/api/index
- DNS ASK do####ad-song.ru
- DNS ASK ou###i.neyd.ru
- DNS ASK do###oad-mp3.in
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'WMP9DeskBand' WindowName: 'WMP9DeskBand'
- ClassName: 'WMPlayerApp' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''