Техническая информация
- '<SYSTEM32>\svchost.exe'
- '%ALLUSERSPROFILE%\DRM\XXX\.exe'
- <SYSTEM32>\svchost.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124945.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124940.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124950.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219125000.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124955.jpg
- %ALLUSERSPROFILE%\DRM\XXX\cacybbzcwpxbbxg
- %ALLUSERSPROFILE%\DRM\XXX\.exe
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124925.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124935.jpg
- %ALLUSERSPROFILE%\DRM\XXX-SCREEN\%USERNAME%\20161219124930.jpg
- 'localhost':12345
- 'localhost':12345