Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Windows Vista Server] 'Start' = '00000002'
- <SYSTEM32>\vistasrv.exe
- <SYSTEM32>\ping.exe 0.0.0.0
- <SYSTEM32>\ipconfig.exe /flushdns
- <SYSTEM32>\cmd.exe /c ""%TEMP%\temp4785.bat" "
- ClassName: '_Oscar_StatusNotify' WindowName: ''
- ClassName: 'MSBLWindowClass' WindowName: ''
- %TEMP%\temp4785.bat
- <SYSTEM32>\vistasrv.exe
- <SYSTEM32>\vistasrv.exe
- 'ja#####tt.opendns.be':80
- DNS ASK ja#####tt.opendns.be
- ClassName: 'mIRC' WindowName: ''
- ClassName: 'YahooBuddyMain' WindowName: ''
- ClassName: '__oxFrame.class__' WindowName: ''
- ClassName: 'TFrmMain' WindowName: ''
- ClassName: 'tSkMainForm.UnicodeClass' WindowName: ''
- ClassName: 'PuTTY' WindowName: ''
- ClassName: 'TfmRush' WindowName: ''