Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\Desktop.bat
- iexplore.exe
- %HOMEPATH%\illusions.dat
- %ALLUSERSPROFILE%\Spectre.dat
- %ALLUSERSPROFILE%\Desktop.exe
- %ALLUSERSPROFILE%\Spectre.dat
- %ALLUSERSPROFILE%\Desktop.exe
- %HOMEPATH%\illusions.dat
- <Полный путь к вирусу>
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\Desktop.bat
- 'www.ta##ed.com':80
- 'tw##ter.com':80
- 'bi#####e987.my3gb.com':80
- 'www.ne##pia.com':80
- www.ta##ed.com/kor7x8a
- tw##ter.com/kokkassom
- bi#####e987.my3gb.com/xcommp.txt
- www.ne##pia.com/users/kor7x8a/
- DNS ASK www.ta##ed.com
- DNS ASK tw##ter.com
- DNS ASK www.ne##pia.com
- DNS ASK bi#####e987.my3gb.com
- '<IP-адрес в локальной сети>':1034