Техническая информация
- %WINDIR%\system\services.exe /i <Полный путь к вирусу>?2828 (загружен из сети Интернет) /i
- C:\GetTran.exe
- <SYSTEM32>\zydxc2.dat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\360[1].DLL
- %WINDIR%\system\services.exe
- <SYSTEM32>\zydxc1.dat
- C:\GetTran.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\360Kv[1].dll
- %WINDIR%\Temp\360Kv.DLL
- <SYSTEM32>\zydxc2.dat
- <SYSTEM32>\zydxc1.dat
- %WINDIR%\Temp\360Kv.DLL
- 'www.dn###086.com':80
- 'localhost':1039
- www.dn###086.com/WService/360.DLL
- www.dn###086.com/WService/360Kv.dll
- DNS ASK www.dn###086.com