Техническая информация
- %TEMP%\is-j3984.tmp\<Имя файла>.tmp
- %TEMP%\is-683g5.tmp\_isetup\_setup64.tmp
- %TEMP%\is-683g5.tmp\youtube_downloader_fsetup.exe
- %TEMP%\is-2g5fj.tmp\youtube_downloader_fsetup.tmp
- %TEMP%\is-b573r.tmp\_isetup\_setup64.tmp
- %TEMP%\is-b573r.tmp\itdownload.dll
- %TEMP%\is-b573r.tmp\gcountry.dll
- %TEMP%\is-b573r.tmp\config.rar
- %TEMP%\is-b573r.tmp\unrar.exe
- %TEMP%\is-b573r.tmp\393.ini
- %TEMP%\is-b573r.tmp\393.txt
- %TEMP%\is-b573r.tmp\config.ini
- %TEMP%\is-b573r.tmp\8.ini
- %TEMP%\is-b573r.tmp\8.rtf
- %TEMP%\is-b573r.tmp\stub4_install.exe
- %TEMP%\is-b573r.tmp\stub_tmp.rar
- %TEMP%\is-j3984.tmp\<Имя файла>.tmp
- %TEMP%\is-b573r.tmp\stub4_install.exe
- %TEMP%\is-b573r.tmp\stub_tmp.rar
- %TEMP%\is-b573r.tmp\stub4_install.exe
- http://cd#.###ningsunsoft.com/offersCME_2D.rar
- http://do##.###efullversion.org/stub4_install.rar
- http://vt###smit.com/getip.php
- DNS ASK cd#.###ningsunsoft.com
- DNS ASK do##.###efullversion.org
- DNS ASK vt###smit.com
- '%TEMP%\is-j3984.tmp\<Имя файла>.tmp' /SL5="$8021A,2615531,121344,<Полный путь к файлу>"
- '%TEMP%\is-683g5.tmp\youtube_downloader_fsetup.exe'
- '%TEMP%\is-2g5fj.tmp\youtube_downloader_fsetup.tmp' /SL5="$6021E,2121100,121344,%TEMP%\is-683G5.tmp\YouTube_Downloader_FSetup.exe"
- '%TEMP%\is-b573r.tmp\unrar.exe' e -y config.rar
- '%TEMP%\is-b573r.tmp\unrar.exe' e -p123456 -y stub_tmp.rar
- '%TEMP%\is-b573r.tmp\unrar.exe' e -y config.rar' (со скрытым окном)
- '%TEMP%\is-b573r.tmp\unrar.exe' e -p123456 -y stub_tmp.rar' (со скрытым окном)