Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\AppMgmt] 'Start' = '00000002'
- '%CommonProgramFiles%\ODBC\WUAUCTL.EXE'
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\ping.exe' 0.0.0.0 -n 1
- '<SYSTEM32>\net1.exe' start AppMgmt
- 360tray.exe
- %CommonProgramFiles%\ODBC\ODBC0\appmgmt.def
- %CommonProgramFiles%\ODBC\DBEngin.EXE
- %CommonProgramFiles%\ODBC\WUAUCTL.EXE
- %CommonProgramFiles%\ODBC\ODBC0\config.dat
- %TEMP%\jus1.tmp
- %CommonProgramFiles%\ODBC\ODBC0\tmp864.tmp
- %CommonProgramFiles%\ODBC\ODBC0\AppMgmt.dll
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %CommonProgramFiles%\ODBC\ODBC0\tmp864.tmp
- %CommonProgramFiles%\ODBC\ODBC0\config.dat
- 'www.hy###8818.com':446
- DNS ASK www.hy###8818.com