Техническая информация
- %WINDIR%\amigos.exe
- %WINDIR%\amigo.exe
- %WINDIR%\wimdows.exe
- %WINDIR%\amigo.exe (загружен из сети Интернет)
- %WINDIR%\wimdows.exe (загружен из сети Интернет)
- %WINDIR%\amigos.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\plug[1].bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\plugg[1].exe
- %WINDIR%\amigo.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\amigo[1].exe
- %WINDIR%\wimdows.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\wimdows[1].exe
- %WINDIR%\amigos.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\amigos[1].exe
- 'www.pl####ontheweb.com':80
- 'hb#.#d.gov.cn':80
- 'localhost':1035
- www.pl####ontheweb.com/01/img/plug.bat
- www.pl####ontheweb.com/01/img/amigo.exe
- www.pl####ontheweb.com/01/img/plugg.exe
- hb#.#d.gov.cn/wimdows.exe
- hb#.#d.gov.cn/amigos.exe
- DNS ASK www.pl####ontheweb.com
- DNS ASK hb#.#d.gov.cn