Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\MSDCOMClient16] 'Start' = '00000002'
- %WINDIR%\inf\MSLogin64.exe
- <SYSTEM32>\inf\MSLogin64.exe /install g15
- <SYSTEM32>\inf\d03.exe
- <SYSTEM32>\regsvr32.exe /s "%CommonProgramFiles%\CPUSH\cpush.dll"
- <SYSTEM32>\svchost.exe -k netsvcs
- %WINDIR%\Explorer.EXE
- 360tray.exe
- ClassName: 'AVP.AlertDialog' WindowName: '????????'
- %CommonProgramFiles%\CPUSH\cpush.dll
- %CommonProgramFiles%\CPUSH\Uninst.exe
- C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\CJCTQ25G\newup2[1].txt
- %WINDIR%\Temp\~windows.log
- %WINDIR%\inf\UsbDevices.inf
- <SYSTEM32>\inf\d03.exe
- <SYSTEM32>\inf\MSLogin64.exe
- %TEMP%\nsg3.tmp
- %WINDIR%\inf\MSLogin64.exe
- %WINDIR%\inf\UsbDevices.inf
- %WINDIR%\inf\UsbDevices.inf
- 'so##.16990.com':80
- 'localhost':1035
- so##.16990.com/newup2.txt
- DNS ASK so##.16990.com
- ClassName: 'Afx:400000:0' WindowName: ''
- ClassName: '#32770' WindowName: '????360????????'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '#32770' WindowName: '??????????'
- ClassName: '###McAlertWindow###' WindowName: ''
- ClassName: '#32770' WindowName: 'McAfee Personal Firewall Plus ????'