Техническая информация
- <SYSTEM32>\regsvr32.exe "%PROGRAM_FILES%\Windows Mail\msoe32.dll" /s
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\relator[1]
- %PROGRAM_FILES%\Windows Mail\wabimpi.dll
- %WINDIR%\infosapi.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\relator[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\netimao[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\netimao[1]
- %PROGRAM_FILES%\Windows Mail\msoe32.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\relator[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\netimao[1]
- 'www.ar###019.com':80
- www.ar###019.com/china/relator
- www.ar###019.com/china/netimao
- DNS ASK www.ar###019.com