Техническая информация
- <SYSTEM32>\regsvr32.exe /s %WINDIR%\rsph748.dll
- <SYSTEM32>\regsvr32.exe /s <SYSTEM32>\rsph7194.ocx
- %WINDIR%\rsph748.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\newaires[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\hkls32[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\zig10[1].jpg
- <SYSTEM32>\rsph7194.ocx
- 'la####00.cwsurf.de':80
- 'ji####.hdfree.in':80
- 'localhost':1036
- ji####.hdfree.in/eart/hkls32.jpg
- ji####.hdfree.in/eart/zig10.jpg
- la####00.cwsurf.de/newaires.php
- DNS ASK la####00.cwsurf.de
- DNS ASK ji####.hdfree.in