Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\迅雷免会员 VIP加速.nsd
- '%TEMP%\WeekGame3603.exe' (загружен из сети Интернет)
- '%TEMP%\qq2010.exe' (загружен из сети Интернет)
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -Embedding
- '%TEMP%\WeekGame3603.exe'
- '%TEMP%\qq2010.exe'
- iexplore.exe
- %TEMP%\WeekGame3603.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\2548[1]
- %TEMP%\qq2010.exe
- %TEMP%\data.tmp
- %TEMP%\ff.Dat
- %TEMP%\qq2010.exe
- 'localhost':1045
- 'localhost':1044
- 'localhost':1046
- 'www.25#8.cn':80
- 'localhost':1047
- 'www.96#8.la':80
- 'do##.9688.la':80
- 'www.my##99.info':80
- 'localhost':1043
- 'do##.49558.cn':80
- http://do##.49558.cn/soft/WeekGame3603.exe
- http://www.25#8.cn/?tn#####
- http://www.my##99.info/1/
- http://do##.9688.la/ip/ip.php?ge#####
- http://www.96#8.la/ok.txt
- DNS ASK do##.49558.cn
- DNS ASK www.25#8.cn
- DNS ASK www.my##99.info
- DNS ASK do##.9688.la
- DNS ASK www.96#8.la
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''