Техническая информация
- '<SYSTEM32>\cmd.exe' /c <Текущая директория>\<Имя вируса>.bat
- <SYSTEM32>\dllcache\taskman.exe.new
- <SYSTEM32>\dllcache\twunk_16.exe.new
- <SYSTEM32>\dllcache\twunk_32.exe.new
- <SYSTEM32>\dllcache\hh.exe.new
- <SYSTEM32>\dllcache\notepad.exe.new
- <SYSTEM32>\dllcache\regedit.exe.new
- <SYSTEM32>\dllcache\twain_32.dll.new
- <SYSTEM32>\dllcache\vmmreg32.dll.new
- <SYSTEM32>\dllcache\iexplore.exe.new
- <SYSTEM32>\dllcache\winhelp.exe.new
- <SYSTEM32>\dllcache\winhlp32.exe.new
- <SYSTEM32>\dllcache\twain.dll.new
- %ProgramFiles%\Internet Explorer\iexplore.exe.new
- %WINDIR%\regedit.exe.new
- %WINDIR%\taskman.exe.new
- %WINDIR%\twunk_16.exe.new
- <Текущая директория>\<Имя вируса>.bat
- %WINDIR%\hh.exe.new
- %WINDIR%\notepad.exe.new
- %WINDIR%\twain.dll.new
- %WINDIR%\twain_32.dll.new
- %WINDIR%\vmmreg32.dll.new
- %WINDIR%\twunk_32.exe.new
- %WINDIR%\winhelp.exe.new
- %WINDIR%\winhlp32.exe.new
- %WINDIR%\ODBCINST.INI
- %WINDIR%\system.ini
- %WINDIR%\msdfmap.ini
- %WINDIR%\control.ini
- %WINDIR%\desktop.ini
- %WINDIR%\vb.ini
- %WINDIR%\twain_32.dll
- %WINDIR%\vmmreg32.dll
- %WINDIR%\twain.dll
- %WINDIR%\vbaddin.ini
- %WINDIR%\win.ini
- %WINDIR%\regedit.exe
- %WINDIR%\sfk.exe
- %WINDIR%\NOTEPAD.EXE
- %WINDIR%\explorer.exe
- %WINDIR%\hh.exe
- %WINDIR%\sleep.exe
- %WINDIR%\winhelp.exe
- %WINDIR%\winhlp32.exe
- %WINDIR%\twunk_32.exe
- %WINDIR%\TASKMAN.EXE
- %WINDIR%\twunk_16.exe