Техническая информация
- '%TEMP%\dmisetup.exe'
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %TEMP%\dmisetup.exe
- %TEMP%\dmiB03A.tmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\checkip.dyndns[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mut103[1].png
- 'en#####ndaexpress.com':80
- 'lo###deouro.com':80
- 'ch####p.dyndns.org':80
- http://en#####ndaexpress.com/es/images/mut103.png
- http://LO###DEOURO.com/wp-includes/images/mut103.png via lo###deouro.com
- http://ch####p.dyndns.org/
- DNS ASK en#####ndaexpress.com
- DNS ASK lo###deouro.com
- DNS ASK ch####p.dyndns.org