Техническая информация
- <SYSTEM32>\cmd.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\sms[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\msg.kjkl8[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\rq.kjkl8[1]
- 'ms#.#jkl8.com':80
- 'www.kj##8.com':80
- 'localhost':1038
- 'rq.##kl8.com':80
- www.kj##8.com/sms/
- ms#.#jkl8.com/
- rq.##kl8.com/
- DNS ASK www.kj##8.com
- DNS ASK ms#.#jkl8.com
- DNS ASK rq.##kl8.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''