Техническая информация
- '%TEMP%\35f38.tmp'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\StakePsList[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\StakePsList[1].asp
- %TEMP%\377d1.exe
- %TEMP%\35f38.tmp
- <Полный путь к вирусу>
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\StakePsList[1].asp
- 'ko###server.kr':80
- 'localhost':1036
- ko###server.kr/Config/AdNw/StakePsList.asp?un###
- DNS ASK ko###server.kr