Техническая информация
- %WINDIR%\Tasks\MediaDownloaderDaily.job
- %WINDIR%\Tasks\MediaDownloaderBoot.job
- '%TEMP%\MediaDownloader.exe' "%TEMP%\config.xml" --mdlauncher
- %APPDATA%\MediaDownloader\<Имя вируса>.exe
- %HOMEPATH%\Desktop\Continue Your File download.lnk
- %APPDATA%\MediaDownloader\config.xml
- %TEMP%\MediaDownloader.exe
- %TEMP%\MediaDownloader_2776.log
- 'www.sy###tion.com':80
- 'wp#d':80
- www.sy###tion.com/api/keywordexecute/9d3a9fa8482140a6864f959399cdb983/2000019/Your%20File
- www.sy###tion.com/api/cc
- wp#d/wpad.dat
- DNS ASK www.sy###tion.com
- DNS ASK wp#d
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'