Техническая информация
- <SYSTEM32>\msimg32.dll файлом <SYSTEM32>\systemp
- Cредство проверки системных файлов (SFC)
- <SYSTEM32>\net.exe stop dhcp
- <SYSTEM32>\net1.exe stop dhcp
- <SYSTEM32>\net1.exe start dhcp
- <SYSTEM32>\sfc.exe /REVERT
- <SYSTEM32>\cmd.exe /c c:\del.bat
- <SYSTEM32>\rundll32.exe "%PROGRAM_FILES%\Monday.ime",Runed
- dnf.exe
- <SYSTEM32>\systemp
- %PROGRAM_FILES%\taskmgr.upx
- C:\del.bat
- %PROGRAM_FILES%\Saturday
- %PROGRAM_FILES%\Sunday.ime
- %PROGRAM_FILES%\Monday.ime
- <SYSTEM32>\sfcos.dll
- %PROGRAM_FILES%\Wednesday.ime
- %PROGRAM_FILES%\Tuesday.ime
- <SYSTEM32>\msimg32.dll в <SYSTEM32>\msimg42.dll
- 'www.si##.com.cn':80
- www.si##.com.cn/
- DNS ASK www.si##.com.cn
- 'localhost':1066
- 'localhost':1069
- 'localhost':1070
- '<IP-адрес в локальной сети>':1036
- '23#.#55.255.250':1900
- 'localhost':1065
- ClassName: 'Shell_TrayWnd' WindowName: ''