Техническая информация
- <SYSTEM32>\cmd.exe /c ""%TEMP%\zuhrn0.cmd" "
- firefox.exe
- iexplore.exe
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- %HOMEPATH%\My Documents\My Videos\My Video.url
- %ALLUSERSPROFILE%\Start Menu\Antivirus Scan.url
- %ALLUSERSPROFILE%\Desktop\Antivirus Scan.url
- %ALLUSERSPROFILE%\Desktop\Online Antispyware Test.url
- %PROGRAM_FILES%\WebMediaViewer\browseu.exe
- %TEMP%\zuhrn0.cmd
- %HOMEPATH%\My Documents\My Documents.url
- %HOMEPATH%\My Documents\My Music\My Music.url
- %HOMEPATH%\My Documents\My Pictures\My Pictures.url
- %PROGRAM_FILES%\WebMediaViewer\ot.ico
- %PROGRAM_FILES%\WebMediaViewer\myd.ico
- %PROGRAM_FILES%\WebMediaViewer\ts.ico
- %PROGRAM_FILES%\WebMediaViewer\browseul.dll
- %APPDATA%\Mozilla\Firefox\Profiles\cwdgt0y8.default\searchplugins\search.xml
- %HOMEPATH%\Favorites\Antivirus Scan.url
- %ALLUSERSPROFILE%\Start Menu\Online Antispyware Test.url
- %PROGRAM_FILES%\WebMediaViewer\myv.ico
- %PROGRAM_FILES%\WebMediaViewer\mym.ico
- %PROGRAM_FILES%\WebMediaViewer\myp.ico
- %HOMEPATH%\My Documents\My Videos\Desktop.ini
- %TEMP%\zuhrn0.cmd
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''