Техническая информация
- %WINDIR%\ceshi\svehe.exe -self
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\`.bat" -in"
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\1.bat" "
- %WINDIR%\Temp\tmp\Ивј¦.004.tmp
- %WINDIR%\Temp\tmp\Ивј¦.003.tmp
- %WINDIR%\2.ini
- %WINDIR%\Temp\Ивј¦cent
- %WINDIR%\Temp\desktop.dat
- %WINDIR%\Temp\tmp\Ивј¦.002.tmp
- %WINDIR%\`.bat
- %WINDIR%\1.bat
- %WINDIR%\ceshi\svehe.exe
- %WINDIR%\Temp\tmp\Ивј¦.001.tmp
- %WINDIR%\Temp\tmp\Ивј¦.000.tmp
- %WINDIR%\2.ini
- 'qs####u2.3322.org':801
- 'mi###.3322.org':8080
- DNS ASK QS####U2.3322.ORG
- DNS ASK mi###.3322.org
- ClassName: 'Shell_TrayWnd' WindowName: ''