Техническая информация
- '%TEMP%\1.tmp.exe' /u http://www.la####download.com/index.php /ta /ci 13747 /i CrossBrowser
- '%TEMP%\1.tmp.exe' /s /t /i CrossBrowser /u http://www.la####download.com/index.php /ci 13747
- '%TEMP%\1.tmp.exe' /u http://www.la####download.com/index.php /ta /ci 10235 /i NationZoom
- '%TEMP%\WindowsUpdateKB12695__7428_il108635.exe'
- '%TEMP%\1.tmp.exe' /u http://www.la####download.com/index.php /ta /ci 11947 /i CPUminer
- '%TEMP%\1.tmp.exe' /s /t /i CPUminer /u http://www.la####download.com/index.php /ci 11947
- '%TEMP%\1.tmp.exe' /u http://www.la####download.com/index.php /ta /ci 14991 /i OperaWW
- '%TEMP%\1.tmp.exe' /s /t /i OperaWW /u http://www.la####download.com/index.php /ci 14991
- '%TEMP%\1.tmp.exe' /s /t /i PlusHDrow /u http://www.la####download.com/index.php /ci 14468
- '%TEMP%\1.tmp.exe' /s /t /i NationZoom /u http://www.la####download.com/index.php /ci 10235
- '%TEMP%\1.tmp.exe' /u http://www.la####download.com/index.php /ta /ci 14468 /i PlusHDrow
- '%TEMP%\WindowsUpdateKB12695__7428_il108635.exe' (загружен из сети Интернет)
- '%TEMP%\1.tmp.exe' (загружен из сети Интернет)
- %TEMP%\WindowsUpdateKB12695__7428_il108635.exe
- %TEMP%\1.tmp.exe
- 'os##oft.com':80
- '54.##4.246.97':80
- 'ip##pi.com':80
- 'localhost':1039
- http://os##oft.com/download/bundles.xml?a2##################################
- http://www.os##oft.com/download/WindowsUpdateKB12695__7428_il108635.exe via os##oft.com
- http://ip##pi.com/xml
- http://os##oft.com/download2/Bundle.exe
- http://54.##4.246.97/log/SilentUpdater4/install
- DNS ASK www.os##oft.com
- DNS ASK os##oft.com
- DNS ASK ip##pi.com