Техническая информация
- <SYSTEM32>\rundll32.exe %TEMP%\nsn3.tmp\y491szc.uav,DllRegisterServer
- <SYSTEM32>\rundll32.exe %TEMP%\nsn3.tmp\zzymhb6.tlm,DllRegisterServer
- <SYSTEM32>\rundll32.exe %TEMP%\nsn3.tmp\y491szc.uav,DllUnregisterServer
- chrome.exe
- %TEMP%\nsn3.tmp\t76gxgu.zqg
- %TEMP%\nsn3.tmp\y491szc.uav
- %TEMP%\nsn3.tmp\zzymhb6.tlm
- %TEMP%\nsi2.tmp
- %TEMP%\nsn3.tmp\nrrjoqp.ghp
- %TEMP%\nsn3.tmp\wdgx5yv.abc
- 'www.ad##e.com':80
- 'localhost':1035
- www.ad##e.com/go/full_flashplayer_win_msi
- DNS ASK www.ad##e.com
- '<IP-адрес в локальной сети>':1036