Техническая информация
- '%WINDIR%\system\svchost.exe' -install
- '%WINDIR%\system\svchost.exe' (загружен из сети Интернет)
- '<SYSTEM32>\cmd.exe' /c ""%WINDIR%\temp\temp0.bat" "
- %WINDIR%\system\svchost.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\svchost[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\zlib1[1].dll
- %WINDIR%\Temp\temp0.bat
- %WINDIR%\system\zlib1.dll
- %WINDIR%\system\pthreadGC2.dll
- %WINDIR%\system\explorer.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\explorer[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\libcurl-4[1].dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\pthreadGC2[1].dll
- %WINDIR%\system\libcurl-4.dll
- '61.##0.180.35':80
- 61.##0.180.35/32/svchost.exe
- 61.##0.180.35/32/zlib1.dll
- 61.##0.180.35/32/pthreadGC2.dll
- 61.##0.180.35/32/explorer.exe
- 61.##0.180.35/32/libcurl-4.dll