Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\csrss.exe
- %HOMEPATH%\Start Menu\Programs\Startup\csrss.exe exec%APPDATA%\BlueFlare Antivirus\csrss.exe
- %APPDATA%\BlueFlare Antivirus\csrss.exe exec%HOMEPATH%\Start Menu\Programs\Startup\csrss.exe
- %APPDATA%\BlueFlare Antivirus\BlueFlare Antivirus.exe
- %HOMEPATH%\Start Menu\Programs\BlueFlare Antivirus\BlueFlare Antivirus.lnk
- %HOMEPATH%\Desktop\BlueFlare Antivirus.lnk
- %TEMP%\1.tmp
- %APPDATA%\BlueFlare Antivirus\BlueFlare Antivirus.ico
- %APPDATA%\BlueFlare Antivirus\BlueFlare Antivirus.exe
- %APPDATA%\BlueFlare Antivirus\ms.conf
- %APPDATA%\BlueFlare Antivirus\csrss.exe
- 'sy####-reports.com':80
- 'cc####rgeonline.com':80
- '74.##5.232.51':80
- 'co######.system-reports.com':80
- sy####-reports.com/
- cc####rgeonline.com/
- 74.##5.232.51/
- co######.system-reports.com/stat/action.php?p=##############################################################
- DNS ASK sy####-reports.com
- DNS ASK cc####rgeonline.com
- DNS ASK google.com
- DNS ASK co######.system-reports.com
- ClassName: 'Shell_TrayWnd' WindowName: ''