Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\SystemUpdate.exe
- %HOMEPATH%\Start Menu\Programs\Startup\<Имя вируса>.exe
- '%TEMP%\SystemUpdate.exe'
- firefox.exe
- %TEMP%\ssleay32.dll
- %TEMP%\zlib1.dll
- %TEMP%\Screen.jpg
- %TEMP%\phatk121016.cl
- %TEMP%\poclbm130302.cl
- %TEMP%\scrypt130302.cl
- %TEMP%\tmp2.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\file.txt
- %TEMP%\Screen2.jpg
- %TEMP%\Screen3.jpg
- %TEMP%\tmp1.tmp
- %TEMP%\libusb-1.0.dll
- %TEMP%\api-example.c
- %TEMP%\cgminer.exe
- %TEMP%\diablo130302.cl
- %TEMP%\SystemUpdate.exe
- %TEMP%\API.class
- %TEMP%\API.java
- %TEMP%\libidn-11.dll
- %TEMP%\librtmp.dll
- %TEMP%\libssh2.dll
- %TEMP%\diakgcn121016.cl
- %TEMP%\libcurl.dll
- %TEMP%\libeay32.dll
- %TEMP%\Screen3.jpg
- %TEMP%\Screen2.jpg
- %TEMP%\Screen.jpg
- 'sm##.#ooglemail.com':465
- 'pa###bin.com':80
- 'localhost':1037
- pa###bin.com/mpuHTgsh
- DNS ASK sm##.#ooglemail.com
- DNS ASK pa###bin.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'BUTTON' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''