Техническая информация
- %WINDIR%\Tasks\conime.exe
- '%WINDIR%\Tasks\conime.exe'
- '%TEMP%\1.tmp\a.exe'
- '<SYSTEM32>\ping.exe' -n 3 127.0.0.1
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\ss.bat" "
- C:\boot
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\count[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\down[1].txt
- %TEMP%\1.tmp\ss.bat
- %TEMP%\1.tmp\a.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\count[1].asp
- C:\boot
- %TEMP%\1.tmp\ss.bat
- 'tj.##haoche.com':80
- 'localhost':1036
- tj.##haoche.com/count.asp?ma###############
- tj.##haoche.com/down.txt
- DNS ASK tj.##haoche.com