Техническая информация
- "%TEMP%\prevx-free-malware-scanner-3.0.5.205_tmp.exe" (загружен из сети Интернет)
- %TEMP%\prevx-free-malware-scanner-3.0.5.205_tmp.exe
- %WINDIR%\wininit.ini
- %ALLUSERSPROFILE%\Application Data\PrevxCSI\csidb.csi
- %TEMP%\prevx-free-malware-scanner-3.0.5.205.exe
- %TEMP%\nso2.tmp\NSISdl.dll
- %TEMP%\pvxinst531.exe
- %TEMP%\nso2.tmp\NSISdl.dll
- 'dl###rsin.us':80
- dl###rsin.us/uver/uver.php?sf#################################################
- DNS ASK dl###rsin.us
- ClassName: 'Shell_TrayWnd' WindowName: ''