Техническая информация
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\awer0.bat" "
- firefox.exe
- iexplore.exe
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- %HOMEPATH%\My Documents\My Videos\My Video.url
- %ALLUSERSPROFILE%\Start Menu\Antivirus Scan.url
- %ALLUSERSPROFILE%\Desktop\Antivirus Scan.url
- %ALLUSERSPROFILE%\Desktop\Online Spyware Test.url
- %PROGRAM_FILES%\Web Technologies\iebu.exe
- %TEMP%\awer0.bat
- %HOMEPATH%\My Documents\My Documents.url
- %HOMEPATH%\My Documents\My Music\My Music.url
- %HOMEPATH%\My Documents\My Pictures\My Pictures.url
- %PROGRAM_FILES%\Web Technologies\ot.ico
- %PROGRAM_FILES%\Web Technologies\myd.ico
- %PROGRAM_FILES%\Web Technologies\ts.ico
- %PROGRAM_FILES%\Web Technologies\iebr.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\searchplugins\search.xml
- %HOMEPATH%\Favorites\Antivirus Scan.url
- %ALLUSERSPROFILE%\Start Menu\Online Spyware Test.url
- %PROGRAM_FILES%\Web Technologies\myv.ico
- %PROGRAM_FILES%\Web Technologies\mym.ico
- %PROGRAM_FILES%\Web Technologies\myp.ico
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'