Техническая информация
- '%TEMP%\BaiduAn.Setup.1117.3.0.0.3974_1000037061.exe' /S
- '%TEMP%\Baidusd.Setup.3.0.0.4608.youqian_1000037061.exe' /S
- '%TEMP%\bdBrowserSetup-5955-ftn_1000037061.exe'
- '%TEMP%\bdbrowser_4.exe'
- '%TEMP%\bdbrowser_2.exe'
- '%TEMP%\bdbrowser_1.exe'
- '%TEMP%\bdbrowser_3.exe'
- '%TEMP%\bdBrowserSetup-5955-ftn_1000037061.exe' (загружен из сети Интернет)
- '%TEMP%\BaiduAn.Setup.1117.3.0.0.3974_1000037061.exe' (загружен из сети Интернет)
- '%TEMP%\Baidusd.Setup.3.0.0.4608.youqian_1000037061.exe' (загружен из сети Интернет)
- '<SYSTEM32>\wscript.exe' "%TEMP%\tem.vbs"
- %TEMP%\bdbrowser_4.exe
- %TEMP%\tem.vbs
- %TEMP%\bdbrowser_1.exe
- %TEMP%\bdbrowser_2.exe
- %TEMP%\bdbrowser_3.exe
- %TEMP%\bdbrowser_3.exe
- %TEMP%\bdbrowser_4.exe
- %TEMP%\bdbrowser_1.exe
- %TEMP%\bdbrowser_2.exe
- %TEMP%\bdllq.exe в %TEMP%\bdBrowserSetup-5955-ftn_1000037061.exe
- %TEMP%\Baidusd.Setup.3.0.0.4608.youqian_1000037061.exe в %TEMP%\Baidusd.Setup.3.0.0.4608.youqian_1000037061.exe
- %TEMP%\BaiduAn.Setup.1117.3.0.0.3974_1000037061.exe в %TEMP%\BaiduAn.Setup.1117.3.0.0.3974_1000037061.exe
- '6v####n9.cnfile.net':80
- '12#.#25.114.144':80
- 6v####n9.cnfile.net//Test/bdllq.exe
- 12#.#25.114.144/ditui/zujian/Baidusd.Setup.3.0.0.4608.youqian_1000037061.exe
- 12#.#25.114.144/ditui/zujian/BaiduAn.Setup.1117.3.0.0.3974_1000037061.exe
- DNS ASK 6v####n9.cnfile.net
- DNS ASK dl##.#r.baidu.com
- ClassName: 'Shell_TrayWnd' WindowName: ''