Техническая информация
- '%APPDATA%\2.tmp' /l= /w= /src=115 /sta=000060fc2e066d2d346c1b31fa94548b4ee9e /typ= /wti=
- firefox.exe
- chrome.exe
- iexplore.exe
- %TEMP%\nsk4.tmp\data.dll
- %TEMP%\data.ini
- %TEMP%\nsk4.tmp\Processes.dll
- %TEMP%\nsk4.tmp\System.dll
- %TEMP%\allow.txt
- %TEMP%\nsk4.tmp\inetc.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\prefs.jstmp
- %TEMP%\nsk4.tmp\nsisXML.dll
- C:\onewebsearch
- <Текущая директория>\GeniusXXAddon
- <LS_APPDATA>\iexplorer
- %APPDATA%\1.tmp
- %TEMP%\acf.qrt
- %TEMP%\nsk4.tmp\NSISdl.dll
- %APPDATA%\2.tmp
- %TEMP%\nsk4.tmp\nsisXML.dll
- %TEMP%\nsk4.tmp\NSISdl.dll
- %TEMP%\nsk4.tmp\System.dll
- %TEMP%\nsk4.tmp\Processes.dll
- %TEMP%\nsk4.tmp\data.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\prefs.js
- %TEMP%\nsk4.tmp\inetc.dll
- %TEMP%\data.ini
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\prefs.jstmp в %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\prefs.js
- 'www.ad####ork100.info':80
- www.ad####ork100.info/CH/dsnr.php
- www.ad####ork100.info/DT/gXml.php?wt##################################################
- DNS ASK www.ad####ork100.info
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'Shell_TrayWnd'