Техническая информация
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://xc####.sxcsite.info:777/abc41tj.php?4b#######################################################################################################################
- <SYSTEM32>\wscript.exe /nologo "%TEMP%\9013.ick"
- %TEMP%\nsr3.tmp\InetLoad.dll
- %TEMP%\nsr3.tmp\nsRandom.dll
- %TEMP%\nsm2.tmp
- %TEMP%\nsr3.tmp\nsRandom.dll
- %TEMP%\nsr3.tmp\InetLoad.dll
- 'localhost':1036
- 'xc####.sxcsite.info':777
- 'fg####.myokj.info':777
- 'es###.thegab.info':251
- DNS ASK es###.thegab.info
- DNS ASK xc####.sxcsite.info
- DNS ASK fg####.myokj.info
- '<IP-адрес в локальной сети>':1033
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''