Техническая информация
- "%TEMP%\fyjrshntjm.tmp" (загружен из сети Интернет)
- <SYSTEM32>\cmd.exe /c ""C:\fyjrshntjm108.bat""
- C:\fyjrshntjm108.bat
- %TEMP%\fyjrshntjm.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\ad0d4cc0deabb8d6a7fc53c6a83f4144[1]
- '11##.#fgrtjer.cn':88
- '83.##9.115.167':80
- 'localhost':1036
- 83.##9.115.167/b/ad0d4cc0deabb8d6a7fc53c6a83f4144.exe?fy#################
- DNS ASK 11##.#fgrtjer.cn
- ClassName: 'Shell_TrayWnd' WindowName: ''