Техническая информация
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\success[1].asp
- 'localhost':1041
- '12#.#25.114.144':80
- 'ur#.##55look.com':80
- 12#.#25.114.144/special/time/
- ur#.##55look.com/success.asp
- ur#.##55look.com/url.asp
- ur#.##55look.com/ip.asp
- DNS ASK op##.baidu.com
- DNS ASK ur#.##55look.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '#32770' WindowName: 'Windows ??????????'
- ClassName: '#32770' WindowName: 'Windows ИООс№ЬАнЖч'