Техническая информация
- '<SYSTEM32>\svchost.exe'
- '%ALLUSERSPROFILE%\DRM\XXX\.exe'
- <SYSTEM32>\svchost.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124350.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124345.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124400.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124355.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124340.jpg
- %ALLUSERSPROFILE%\DRM\XXX\cacybbzcwpxbbxg
- %ALLUSERSPROFILE%\DRM\XXX\.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124335.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124330.jpg
- 'localhost':12345
- 'localhost':12345