Техническая информация
- <SYSTEM32>\cmd.exe /c 1.bat
- %TEMP%\7515007\images\icons\minus.gif
- %TEMP%\7515007\images\icons\set.gif
- %TEMP%\7515007\js\bramus\jsProgressBarHandler.js
- %TEMP%\7515007\images\icons\empty.gif
- %TEMP%\7515007\images\icons\fill.gif
- %TEMP%\7515007\images\icons\get.gif
- %TEMP%\7515007\js\def.js
- %TEMP%\7515007\page4.html
- %TEMP%\7515007\page5.html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\open[1].php
- %TEMP%\7515007\js\prototype\prototype.js
- %TEMP%\7515007\page.html
- %TEMP%\7515007\page3.html
- %TEMP%\arc.dat
- %TEMP%\7515007\A7515007.exe
- %TEMP%\7za.dll
- %TEMP%\1.bat
- %TEMP%\cm.exe
- %TEMP%\cs.exe
- %TEMP%\7515007htmlcover.7z
- %TEMP%\7515007\images\bramus\percentImage.png
- %TEMP%\7515007\images\bramus\percentImage_back.png
- %TEMP%\7515007\images\icons\add.gif
- %TEMP%\7515007\images\bg-1.jpg
- %TEMP%\7515007\images\bg-2.jpg
- %TEMP%\7515007\images\bramus\percentImage.gif
- %TEMP%\7515007htmlcover.7z
- 'localhost':1037
- 'ca###agnat.com':80
- ca###agnat.com/client_api/open.php?id########
- ca###agnat.com/api/open.php?ai#############
- DNS ASK ca###agnat.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''