Техническая информация
- <SYSTEM32>\dsound.dll файлом <SYSTEM32>\dsound.dll.dat
- <SYSTEM32>\cmd.exe /c """%TEMP%\tempVidio.bat"" "
- %TEMP%\tempVidio.bat
- <SYSTEM32>\dsound.dll.dat
- <Текущая директория>\JK14_testVC2008.log
- %TEMP%\Temp\JK14_testVC2008.exe
- %TEMP%\Temp\server.exe
- %TEMP%\Temp\CSOLјтµҐНёКУЧФГй.exe
- %CommonProgramFiles%\System\kb150195.dla
- %TEMP%\kb150195.sve
- %CommonProgramFiles%\System\kb150195.dla
- %TEMP%\Temp\JK14_testVC2008.exe
- %TEMP%\Temp\server.exe
- <SYSTEM32>\dsound.dll в <SYSTEM32>\dsound.dll.MSVK
- 'cs#.#lopo168.us':80
- 'www.b2###aces.net':80
- 'localhost':1035
- cs#.#lopo168.us/xx.php?ap#####
- cs#.#lopo168.us/cso/value2.php
- www.b2###aces.net/jacky14/index_v58.php?ap#####
- www.b2###aces.net/jacky14/xx.php?ap#####
- DNS ASK cs#.#lopo168.us
- DNS ASK www.b2###aces.net
- ClassName: 'Valve001' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''