Техническая информация
- %TEMP%\is-EJIQ0.tmp\rkverify.exe
- %TEMP%\is-EJIQ0.tmp\InternetChecker.exe
- %TEMP%\is-3JE60.tmp\<Имя вируса>.tmp /SL5="$40036,2173635,53248,<Полный путь к вирусу>"
- %TEMP%\is-EJIQ0.tmp\EULA.rtf
- %TEMP%\is-EJIQ0.tmp\rk.bmp
- %TEMP%\CSM1.tmp
- %TEMP%\is-EJIQ0.tmp\SIOSEULA.rtf
- %TEMP%\is-EJIQ0.tmp\SIOSEULAMain.rtf
- %TEMP%\is-EJIQ0.tmp\banner.bmp
- %TEMP%\is-EJIQ0.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-EJIQ0.tmp\_isetup\_RegDLL.tmp
- %TEMP%\is-3JE60.tmp\<Имя вируса>.tmp
- %TEMP%\is-EJIQ0.tmp\rkverify.exe
- %WINDIR%\Connection.ini
- %TEMP%\is-EJIQ0.tmp\InternetChecker.exe
- %WINDIR%\Connection.ini
- '74.##5.232.51':80
- DNS ASK www.google.com
- ClassName: 'Shell_TrayWnd' WindowName: ''