Техническая информация
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ri##09.net/nighteyes/95/4.htm
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ri##09.net/nighteyes/95/5.htm
- '<SYSTEM32>\taskkill.exe' /f /t /im jph.exe
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ri##09.net/nighteyes/95/1.htm
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ri##09.net/nighteyes/95/2.htm
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' http://ri##09.net/nighteyes/95/3.htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\3[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\4[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\1[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\2[1].htm
- 'localhost':1040
- 'localhost':1041
- 'localhost':1043
- 'localhost':1035
- 'localhost':1037
- 'ri##09.net':80
- ri##09.net/nighteyes/95/3.htm
- ri##09.net/nighteyes/95/4.htm
- ri##09.net/nighteyes/95/1.htm
- ri##09.net/nighteyes/95/2.htm
- DNS ASK ri##09.net
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'