Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\ERSvc] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\Nwsapagent] 'Start' = '00000002'
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\GLYZWTYV\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\O5QLMHIL\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\I4XPUEZC\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\IVTUGBOV\desktop.ini
- %CommonProgramFiles%\System\msadc\msdapqsr.dll
- <SYSTEM32>\reperrsvc.dll
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\O5QLMHIL\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\I4XPUEZC\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\IVTUGBOV\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\GLYZWTYV\desktop.ini
- '20#.#6.232.182':80
- 20#.#6.232.182/microsoftupdate/v6/default.aspx?ln###
- DNS ASK www.up####.microsoft.com
- '<IP-адрес в локальной сети>':1035