Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Fontview32.exe
- <SYSTEM32>\msiexec.exe /i "%TEMP%\FlvToMp3.msi"
- <SYSTEM32>\msiexec.exe /V
- <SYSTEM32>\msiexec.exe -Embedding 0524B1995CF1DD81D0DCCEB63133850E C
- <SYSTEM32>\taskkill.exe /f /im iexplor*
- <SYSTEM32>\taskkill.exe /f /im chr*
- <SYSTEM32>\taskkill.exe /f /im fire*
- <SYSTEM32>\taskkill.exe /f /im oper*
- iexplore.exe
- chrome.exe
- firefox.exe
- opera.exe
- %TEMP%\MSI1.tmp
- %TEMP%\CFG2.tmp
- %TEMP%\MSI3.tmp
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\prefs.js
- %TEMP%\FlvToMp3.msi
- %TEMP%\2e11f.msi
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\20112012[1].txt
- %TEMP%\MSI3.tmp
- %TEMP%\MSI1.tmp
- 'es###rji.org':80
- es###rji.org/y/20112012.txt
- DNS ASK es###rji.org
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''