Техническая информация
- '%TEMP%\<Имя файла>.exe' (загружен из сети Интернет)
- '%TEMP%\<Имя файла>.exe' /GA_REG /LANG:1031 /CMDLINE:"/L1031"
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\German.001
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\German.lng
- %TEMP%\<Имя файла>.exe
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\setup.cfg
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\Binary.tmp
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\German.lng
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\setup.cfg
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\German.001
- %TEMP%\{1b5f8a78-6ee4-425f-B43F-4BCD25C002FE}\Binary.tmp
- 'we######ller.avanquest.com':80
- '20#.#6.232.182':80
- http://we######ller.avanquest.com/LiveUpdate/WebInstaller/InPixioPhotoClip7/Ausschneiden3.exe
- DNS ASK we######ller.avanquest.com
- DNS ASK www.microsoft.com
- ClassName: 'Dbs' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'TMonitor'
- ClassName: 'TMonitor' WindowName: ''