Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Canubreg' = '{E54A3732-2BB7-4ED0-A14B-0BB5EC9DFCB0}'
- <SYSTEM32>\dlgemtbl.dll
- <SYSTEM32>\madiccan.dll
- <SYSTEM32>\movixweb\w32albmp\ctlismax.dll
- %TEMP%\_is109875.ini
- <SYSTEM32>\sqlipmov.dll
- %TEMP%\UUU2.tmp
- %TEMP%\UUU1.tmp
- <SYSTEM32>\wowovcpy32.dll
- <SYSTEM32>\secofavi.dll
- %TEMP%\UUU3.tmp
- %TEMP%\UUU3.tmp
- %TEMP%\_is109875.ini
- %TEMP%\UUU1.tmp
- %TEMP%\UUU2.tmp