Техническая информация
- %TEMP%\~nsu.tmp\Au_.exe _?=%TEMP%\
- %TEMP%\uninst.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://cp#.###dcode.meibu.com/down.asp?us################
- %HOMEPATH%\Favorites\јТЧ°ЖµµА.lnk
- %TEMP%\nsn3.tmp\System.dll
- %HOMEPATH%\Favorites\КОЖ·Р¬°ь.lnk
- %HOMEPATH%\Favorites\ГАИЭЖµµА.lnk
- %HOMEPATH%\Favorites\КіЖ·ЖµµА.lnk
- %TEMP%\temp.ini
- %TEMP%\nsm7.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\down[1].asp
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\uninst.exe
- %TEMP%\nsj5.tmp
- %HOMEPATH%\Favorites\ДРИЛЖµµА.lnk
- %HOMEPATH%\Favorites\МФ±¦»К№Ъ.lnk
- %HOMEPATH%\Favorites\ЧЫєПЖµµА.lnk
- %HOMEPATH%\Favorites\МФ±¦ИИВф.lnk
- %TEMP%\nsn2.tmp
- %TEMP%\nsn3.tmp\InetLoad.dll
- %HOMEPATH%\Favorites\МЁНеЖµµА.lnk
- %HOMEPATH%\Favorites\ѕУјТНжѕЯ.lnk
- %HOMEPATH%\Favorites\КэВлЖµµА.lnk
- %HOMEPATH%\Favorites\µзЖчЖµµА.lnk
- %HOMEPATH%\Favorites\ЙМіЗЖµµА.lnk
- %HOMEPATH%\Favorites\Е®ИЛЖµµА.lnk
- %TEMP%\temp.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\down[1].asp
- %TEMP%\uninst.exe
- %TEMP%\nsn3.tmp\InetLoad.dll
- %TEMP%\nsn3.tmp\System.dll
- 'cp#.###dcode.meibu.com':80
- 'localhost':1038
- 'cp######.loadcode.meibu.com':8080
- cp#.###dcode.meibu.com/down.asp?us################
- DNS ASK cp#.###dcode.meibu.com
- DNS ASK cp######.loadcode.meibu.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''