Техническая информация
- '%TEMP%\eicabfifcea.exe' 1-8-3-4-6-3-9-9-3-5-1 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
- '%TEMP%\File.exe'
- '<SYSTEM32>\Wbem\wmic.exe' /output:%TEMP%\81428683886.txt bios get version
- '<SYSTEM32>\Wbem\wmic.exe' /output:%TEMP%\81428683886.txt bios get serialnumber
- %TEMP%\nsx44EC.tmp\nsisunz.dll
- %TEMP%\1428447711.exe
- %TEMP%\81428683886.txt
- %TEMP%\eicabfifcea.zip
- %TEMP%\ywvrwsjw.nlq
- %TEMP%\1428447711.eicabfifcea
- %TEMP%\nsx44EC.tmp\lsthd.dll
- %TEMP%\81428683886.txt
- %TEMP%\1428447711.exe в %TEMP%\eicabfifcea.exe
- %TEMP%\ywvrwsjw.nlq в %TEMP%\File.exe
- DNS ASK tl.##mcb.com
- DNS ASK tl.##mcd.com
- DNS ASK crl.microsoft.com
- DNS ASK sr#.###k-top-app.info
- DNS ASK t2.##mcb.com
- DNS ASK ct###.#indowsupdate.com
- DNS ASK t1.##mcb.com
- DNS ASK dn#.##ftncsi.com
- ClassName: 'Shell_TrayWnd' WindowName: ''