Техническая информация
- '<SYSTEM32>\ntvdm.exe' -f -i1 -w -a <SYSTEM32>\krnl386.exe
- %TEMP%\nsf2.tmp\blowfish.dll
- %TEMP%\lnk.txt
- %WINDIR%\Temp\scs4.tmp
- %WINDIR%\Temp\scs3.tmp
- %WINDIR%\bfcs2.dll
- <Текущая директория>\setupb.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\rny2[1].txt
- %TEMP%\nsf2.tmp\inetc.dll
- %WINDIR%\bfcs2.dll
- <Текущая директория>\setupb.exe
- 'www.xt##rs.info':80
- www.xt##rs.info/lnks/rny2.txt
- DNS ASK www.xt##rs.info
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'