Техническая информация
- '<SYSTEM32>\ping.exe' -n 3 localhost
- <SYSTEM32>\svchost.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hl[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\hl.exe[1].md5
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\hl[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\hl.exe[1].md5
- <Текущая директория>\hl_new.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hl.exe[1].md5
- <Текущая директория>\log.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\hl[1].exe
- <Текущая директория>\hl.exe.md5
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hl[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\hl.exe[1].md5
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\hl[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\hl.exe[1].md5
- <Текущая директория>\hl.exe.md5
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hl.exe[1].md5
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\hl[1].exe
- <Текущая директория>\hl_new.exe в <Текущая директория>\hl.exe
- 'up####.#ounter-strike.name':80
- up####.#ounter-strike.name/hl.exe
- up####.#ounter-strike.name/hl.exe.md5
- up####.#ounter-strike.name/ip.php?id#################################
- DNS ASK up####.#ounter-strike.name