Техническая информация
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://tj.#####r.cpadown.com:8080/alltj.html?se###
- %TEMP%\nsr5.tmp
- %TEMP%\uninst.exe
- %TEMP%\nst7.tmp
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsx3.tmp\InetLoad.dll
- %TEMP%\nsw2.tmp
- %TEMP%\temp.ini
- %TEMP%\nsx3.tmp\System.dll
- <Полный путь к файлу>
- %TEMP%\temp.ini
- %TEMP%\uninst.exe
- %TEMP%\nsx3.tmp\InetLoad.dll
- %TEMP%\nsx3.tmp\System.dll
- 'tj.####er.cpadown.com':8080
- 'localhost':1041
- 'dd##.##tup.meibu.com':8080
- DNS ASK tj.####er.cpadown.com
- DNS ASK dd##.##tup.meibu.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- '%TEMP%\~nsu.tmp\Au_.exe' _?=%TEMP%\
- '%TEMP%\uninst.exe'