Техническая информация
- '%TEMP%\f.exe' /PID=7606 /SUBPID=0 /NETWORKID=1 /DISTID=10363 /CID=0 /PRODUCT_ID=9806 /SERVER_URL=http://in######r.apps-track.com /CLICKID=gyaEYiQh4MIYSem0qAaTwaR12Vn4ak%20Y3W/jAw4bUlvdTK9w3kybUerOx4dA1aTADD3zBiEBSwI7faYUkRbddEfqvu7mCEpyaz/sqZUr2AGTqUZW1JQJHjY0jyDMfL/1VuM3s5BQDPQ3eAgjG08ITeVVzYl/4jOob17m2XrJ9ALfEkmuC6KHM0czmShwTv1Vh4WdbQMeElmVId/b9HkhA1CtVAGW4V4WqG8lZPa6kZlo1Cy%20ihEbadgoPS5Zi%20vhX/%20J2I8WZhlihk7NB2FnITzsueJ3oNGaemdwT35kE1%200/v8nhk7GZAvUn4eDOPVLKL4m1d7lB%20jXIXwYtAxiWYIElVX07lVW7DPj1GoZdLMGSTJKPKdnYWXe/1w0mcD7 /D1=-1 /D2=-1 /D3=-1 /D4=-1 /D5=-1 /PRODUCT_PRIVACY= /PRODUCT_EULA= /PRODUCT_NAME= /EXE_URL= /EXE_CMDLINE= /HOST_BROWSER=3 /THANKYOU_URL= /TIME=1404380136 /VM=2 /DS1= /IS_RUNTIME=true /RETURNING_USER_DAYS=2 /IS_DYNAMIC_ENCRYPTED=false
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\ob1hhelper.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\ob1hhelper.txt bios get serialnumber
- %TEMP%\tmp5.tmp
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\ob1hhelper.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp4.tmp
- %TEMP%\nsm2.tmp\Convert.dll
- %TEMP%\instructionsBv3.dat
- %TEMP%\tmp3.tmp
- %TEMP%\f.exe
- %TEMP%\tmp5.tmp
- %TEMP%\ob1hhelper.txt
- %TEMP%\tmp4.tmp
- %TEMP%\instructionsBv3.dat
- %TEMP%\tmp3.tmp
- 'in######r.apps-track.com':80
- DNS ASK in######r.apps-track.com