Техническая информация
- %WINDIR%\ads.exe
- %WINDIR%\FunshionInstall_C43423.exe /S
- %WINDIR%\34.exe
- %WINDIR%\FunshionInstall_C43423.exe (загружен из сети Интернет)
- %WINDIR%\34.exe (загружен из сети Интернет)
- %WINDIR%\ads.exe (загружен из сети Интернет)
- %WINDIR%\ads.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\download[1].php
- %WINDIR%\FunshionInstall_C43423.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\34[1].exe
- %WINDIR%\34.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\ads[1].exe
- 'www.tu##an.net':80
- 'ne#####.funshion.com':80
- 'localhost':1036
- 'hh.###d-mm520.com':80
- ne#####.funshion.com/software/download.php?id######
- www.tu##an.net/down/ads.exe
- hh.###d-mm520.com/web/34.exe
- DNS ASK ne#####.funshion.com
- DNS ASK www.tu##an.net
- DNS ASK hh.###d-mm520.com