Техническая информация
- <SYSTEM32>\cscript.exe "%TEMP%\qq2.vbs"
- <SYSTEM32>\rundll32.exe "%PROGRAM_FILES%\Outlook Express\Outlook\msoejf.dll",Install
- <SYSTEM32>\cscript.exe "%TEMP%\qq1.vbs"
- <SYSTEM32>\wbem\mofcomp.exe -N:root\cimv2 <SYSTEM32>\wbem\asecimv2.mof
- <SYSTEM32>\wbem\asecimv2.mof
- %TEMP%\qq2.vbs
- %TEMP%\tmp2.tmp
- %TEMP%\tmp1.tmp
- %TEMP%\wi123765nd.temp
- %PROGRAM_FILES%\Outlook Express\Outlook\msoe.ini
- %TEMP%\qq1.vbs
- %TEMP%\wi129046nd.temp
- %TEMP%\qq2.vbs
- %TEMP%\tmp2.tmp
- %TEMP%\qq1.vbs
- %TEMP%\tmp1.tmp
- <SYSTEM32>\wbem\asecimv2.mof
- 'ya####0620.3322.org':8080
- DNS ASK ya####0620.3322.org