Техническая информация
- '<SYSTEM32>\cmd.exe' /c <Текущая директория>\delsin_0.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\dt608[1].txt
- <Текущая директория>\delsin_0.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\dt608[1].txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\dt608[1].txt
- %TEMP%\zswoamuuv.tp
- %TEMP%\zswoamuuv.tp
- 'vc.#dsbj.cn':80
- 'va.#dsbj.cn':80
- 'localhost':1035
- 've.#dsbj.cn':80
- va.#dsbj.cn/new/dt608.txt
- vc.#dsbj.cn/new/dt608.txt
- ve.#dsbj.cn/new/dt608.txt
- DNS ASK va.#dsbj.cn
- DNS ASK vc.#dsbj.cn
- DNS ASK ve.#dsbj.cn
- ClassName: 'MS_WINHELP' WindowName: ''