Техническая информация
- %WINDIR%\Temp\uninst.exe <Полный путь к вирусу>
- %WINDIR%\Temp\crisslms.exe
- %WINDIR%\Temp\homepg.exe
- %WINDIR%\Temp\crisslms.exe
- %WINDIR%\Temp\uninst.exe
- %WINDIR%\Temp\homepg.exe
- %WINDIR%\Temp\Perflib_Perfdata_8pq.dat
- %WINDIR%\Temp\crisslms.exe
- %WINDIR%\Temp\uninst.exe
- %WINDIR%\Temp\homepg.exe
- %WINDIR%\Temp\Perflib_Perfdata_8pq.dat
- 'co###.dy55.com':80
- co###.dy55.com/tongji.asp?id#########################################################
- DNS ASK co###.dy55.com