Техническая информация
- <SYSTEM32>\cacls.exe "%HOMEPATH%\Desktop\????.url" /p everyone:f
- %APPDATA%\icon\taobao.ico
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\4829458[1].js
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\4829458[1].js
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\CAPGWF1H.asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\4829458[1].js
- 'js.##ers.51.la':80
- 'localhost':1040
- 'localhost':1035
- '2x###l.7moo.com':80
- js.##ers.51.la/4829458.js
- DNS ASK c.###gua.com.cn
- DNS ASK 12#.#dwg.com
- DNS ASK 2x###l.7moo.com
- DNS ASK js.##ers.51.la
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '#32770' WindowName: '????'
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '#32770' WindowName: ''
- ClassName: '' WindowName: ''