Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\gbb[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\regaionet[1].jpg
- %WINDIR%\dll.dat
- <Полный путь к вирусу>
- 'localhost':1038
- 'www.se######rigatoriosql.com':80
- www.se######rigatoriosql.com/trampo/gbb.jpg
- www.se######rigatoriosql.com/trampo/regaionet.jpg
- www.se######rigatoriosql.com/infet.php
- DNS ASK www.se######rigatoriosql.com