Техническая информация
- %APPDATA%\HomePage.exe
- %PROGRAM_FILES%\µTorrent\uTorrent.exe /noinstall /norun
- %TEMP%\_ir_sf_temp_0\irsetup.exe __IRAOFF:1836402 "__IRAFN:<Полный путь к вирусу>" "__IRCT:3" "__IRTSS:0" "__IRSID:S-1-5-21-2052111302-484763869-725345543-1003"
- firefox.exe
- opera.exe
- chrome.exe
- iexplore.exe
- %PROGRAM_FILES%\µTorrent\utorrent.ico
- %PROGRAM_FILES%\µTorrent\uTorrent.exe
- %PROGRAM_FILES%\µTorrent\Uninstall\uninstall.xml
- %APPDATA%\HomePage.exe
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %HOMEPATH%\Start Menu\µTorrent.lnk
- %HOMEPATH%\Desktop\µTorrent.lnk
- %PROGRAM_FILES%\µTorrent\lua5.1.dll
- %TEMP%\_ir_sf_temp_0\irsetup.dat
- %TEMP%\_ir_sf_temp_0\lua5.1.dll
- %TEMP%\_ir_sf_temp_0\irsetup.exe
- %TEMP%\_ir_sf_temp_0\utorrent.ico
- %PROGRAM_FILES%\µTorrent\uninstall.exe
- %PROGRAM_FILES%\µTorrent\Uninstall\uninstall.dat
- %PROGRAM_FILES%\µTorrent\Uninstall\uni1.tmp
- %TEMP%\_ir_sf_temp_0\irsetup.exe
- %TEMP%\_ir_sf_temp_0\lua5.1.dll
- %TEMP%\_ir_sf_temp_0\utorrent.ico
- %TEMP%\_ir_sf_temp_0\irsetup.dat
- %PROGRAM_FILES%\µTorrent\Uninstall\uni1.tmp
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''