Техническая информация
- '<SYSTEM32>\taskkill.exe' /F /IM 2760
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\Streamer.bat" "
- %TEMP%\Streamer.bat
- <Текущая директория>\cStreamer(MZђ).exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\cStreamer[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\cStreamer[1].exe
- 'localhost':1038
- 'www.rb#####.altervista.org':80
- www.rb#####.altervista.org/Streamer/cClient/cStreamer.exe
- www.rb#####.altervista.org/SManger/version.php
- www.rb#####.altervista.org/SManger/checking.php?m=########################################################################
- DNS ASK www.rb#####.altervista.org
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''