Техническая информация
- %WINDIR%\explorer.exe "http://www.vc###heng.com"
- %WINDIR%\explorer.exe "http://www.9i##n.com/kk/?61#######"
- %TEMP%\SkinH_EL.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\fcgg[1].htm
- %TEMP%\$webpath.txt
- %TEMP%\<Имя вируса>.exe
- %TEMP%\$readtxttemp.txt
- %TEMP%\superec.ProcessMemory.sys
- %TEMP%\SkinH_EL.dll
- %TEMP%\$webpath.txt
- %TEMP%\$readtxttemp.txt
- 'ad.##pc114.cn':80
- 'localhost':1035
- ad.##pc114.cn/ad/fcgg.htm
- DNS ASK ad.##pc114.cn
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''