Техническая информация
- '%TEMP%\291013.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\<Имя вируса>.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\29102013[1]
- %TEMP%\_.db
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\29102013[1]
- %TEMP%\FXSAPIDebugLog.DLL
- %TEMP%\291013.exe
- %TEMP%\<Имя вируса>.bat
- %TEMP%\_thunbs2.db
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\29102013[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\29102013[1]
- %TEMP%\_.db
- 'si#######44788.provisorio.ws':80
- si#######44788.provisorio.ws/z2/29102013
- DNS ASK si#######44788.provisorio.ws