Техническая информация
- %TEMP%\a.exe (загружен из сети Интернет)
- %TEMP%\a.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\u[1].exe
- 'is###hniaz.com':80
- 'localhost':1035
- is###hniaz.com/img/u.exe
- DNS ASK is###hniaz.com
- '<IP-адрес в локальной сети>':1036
- ClassName: 'UninstallClassWnd' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'InstallShield_Win' WindowName: ''
- ClassName: 'AutorunClassWnd' WindowName: ''
- ClassName: 'FTWClassWnd' WindowName: ''