Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\IEXPL0RE.LNK
- <SYSTEM32>\svchost.exe
- <SYSTEM32>\wscript.exe ""%TEMP%\_tmp.vbs""
- <SYSTEM32>\wscript.exe ""%TEMP%\_tmp1.vbs""
- %TEMP%\25440.dat
- %TEMP%\_tmp.vbs
- %TEMP%\_tmp1.vbs
- %WINDIR%\system\lock.dat
- %APPDATA%\IEXPL0RE.LNK
- %TEMP%\12.tmp
- %TEMP%\STREAM.SYS
- %APPDATA%\LiveUpd36O.dll
- %TEMP%\360tray.exe
- %TEMP%\svchost.exe
- %TEMP%\1ea2c.dat
- %APPDATA%\Microsoft\Internet Explorer\IEXPL0RE.EXE
- %TEMP%\perA.tmp
- %TEMP%\svchost.exe
- %TEMP%\360tray.exe
- %TEMP%\_tmp.vbs
- '22#.#75.13.250':80
- 'localhost':8080
- 22#.#75.13.250/index000000002.asp
- 22#.#75.13.250/index000000001.asp
- ClassName: 'Shell_TrayWnd' WindowName: ''