Техническая информация
- <Текущая директория>sjhitgnd_012.exe
- %TEMP%\is-M2C91.tmp\bf32d3b0sjhitgnd_012.tmp
- %TEMP%\is-BD9EF.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-BD9EF.tmp\_isetup\_shfoldr.dll
- %WINDIR%\Installer\MSI1.tmp
- %WINDIR%\Installer\MSI2.tmp
- %WINDIR%\Installer\MSI1.tmp
- %WINDIR%\Installer\MSI2.tmp
- %TEMP%\is-BD9EF.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-BD9EF.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-M2C91.tmp\bf32d3b0sjhitgnd_012.tmp
- 'wp#d':80
- 'up.##674t.club':80
- http://11#.#11.111.1/wpad.dat via wp#d
- http://up.##674t.club/m/uac.jpg
- http://up.##674t.club/m/sjhitgnd_012up.jpg
- DNS ASK wp#d
- DNS ASK up.##674t.club
- '<Текущая директория>sjhitgnd_012.exe'
- '%TEMP%\is-M2C91.tmp\bf32d3b0sjhitgnd_012.tmp' /SL5="$10118,54272,54272,<Текущая директория>sjhitgnd_012.exe"
- '<SYSTEM32>\msiexec.exe' /V