Техническая информация
- %PROGRAM_FILES%\JSBGO\smss.exe z0800.tx
- %PROGRAM_FILES%\JSBGO\smss.exe Йѕ<Полный путь к вирусу>
- %PROGRAM_FILES%\JSBGO\smss0.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ip[1].txt
- %PROGRAM_FILES%\JSBGO\ipc
- %WINDIR%\win32.btl
- %PROGRAM_FILES%\JSBGO\smss.chm
- %PROGRAM_FILES%\JSBGO\smss.exe
- %PROGRAM_FILES%\JSBGO\ipc
- 'yo##6.com':80
- 'localhost':1036
- yo##6.com/kfkfkf36/ididid36/90010/ip.txt
- DNS ASK yo##6.com
- ClassName: 'TForm1' WindowName: 'netgodc'
- ClassName: 'MS_WINHELP' WindowName: ''