Техническая информация
- '%PROGRAM_FILES%\MSDN\Thunder7.0.exe'
- '<SYSTEM32>\rundll32.exe' shimgvw.dll,ImageView_Fullscreen %TEMP%\189671.jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\updspapi[1].rar
- %TEMP%\spuninst.jpg
- %TEMP%\updspapi.rar
- %PROGRAM_FILES%\8Ckћ816Љ\updspapi.dll
- %PROGRAM_FILES%\8Ckћ816Љ\niudll.jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\spuninst[1].rar
- %TEMP%\nsj2.tmp\System.dll
- %PROGRAM_FILES%\MSDN\Thunder7.0.exe
- %TEMP%\189671.jpg
- %WINDIR%\vbcfg.ini
- <SYSTEM32>\33CdWE.pic
- %TEMP%\nsj2.tmp\System.dll
- %TEMP%\updspapi.rar в %PROGRAM_FILES%\8Ckћ816Љ\update\updspapi.dll
- %TEMP%\spuninst.jpg в %PROGRAM_FILES%\8Ckћ816Љ\spuninst.exe
- 'wo##.vicp.hk':80
- 'localhost':1035
- wo##.vicp.hk/updspapi.rar
- wo##.vicp.hk/spuninst.rar
- DNS ASK wo##.vicp.hk
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: '(null)'