Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\test[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\test[1]
- из <Полный путь к вирусу> в %ALLUSERSPROFILE%\Application Data\pcdfdata\<Имя вируса>.exe
- 'en######.elmundonuevo.com':80
- 're####.cartes.cl':80
- 'ju###.#omebar.net.au':80
- 'co#####ppingguides.com':80
- 'an######dstoriesonline.com':80
- 'xf###.evitap.com':80
- en######.elmundonuevo.com/api/test
- re####.cartes.cl/api/test
- ju###.#omebar.net.au/api/test
- co#####ppingguides.com/api/test
- an######dstoriesonline.com/api/test
- xf###.evitap.com/api/test
- DNS ASK en######.elmundonuevo.com
- DNS ASK re####.cartes.cl
- DNS ASK ju###.#omebar.net.au
- DNS ASK co#####ppingguides.com
- DNS ASK an######dstoriesonline.com
- DNS ASK xf###.evitap.com