Техническая информация
- %WINDIR%\Tasks\conime.exe
- '%WINDIR%\Tasks\conime.exe'
- '%TEMP%\2.tmp\zz.exe'
- '%TEMP%\1.tmp\bt.exe'
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\2.tmp\setup.bat" "
- '<SYSTEM32>\ping.exe' -n 3 127.0.0.1
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\1.tmp\setup.bat" "
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\down[1].txt
- %TEMP%\2.tmp\zz.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\count[1].asp
- C:\boot
- %TEMP%\1.tmp\bt.exe
- %TEMP%\1.tmp\setup.bat
- %TEMP%\2.tmp\setup.bat
- %TEMP%\1.tmp\BTєРЧУЦЦЧУЛСЛчЙсЖчV3.3.4.exe
- C:\boot
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\count[1].asp
- %TEMP%\2.tmp\setup.bat
- %TEMP%\1.tmp\setup.bat
- 'tj.##haoche.com':80
- 'localhost':1036
- tj.##haoche.com/zz/count.asp?ma###############
- tj.##haoche.com/zz/down.txt
- DNS ASK tj.##haoche.com