Техническая информация
- '' (загружен из сети Интернет)
- %TEMP%\nsl2.tmp
- %TEMP%\nsl3.tmp\System.dll
- %TEMP%\nsl3.tmp\Inetc.dll
- %TEMP%\nsl3.tmp\i.rar
- %TEMP%\nsl3.tmp\nsProcess.dll
- %ProgramFiles%\MusicForMac\uninst.exe
- %HOMEPATH%\Start Menu\Programs\MusicForMac\uninst.lnk
- %TEMP%\nsl3.tmp\2.jpg
- %TEMP%\nsl3.tmp\setup_3386.exe
- %TEMP%\nsl3.tmp\BaiduPlayerNetSetup_461.exe
- %TEMP%\nsl3.tmp\9377chiyue_Y_mgaz.exe
- %TEMP%\nsl3.tmp\F0820_s_30841.exe
- %TEMP%\nsl3.tmp\ExecCmd.dll
- 'in#.###ol.sina.com.cn':80
- 't.#n':80
- 'localhost':1039
- 'f.####anshanba.com':80
- http://in#.###ol.sina.com.cn/iplookup/iplookup.php
- http://t.#n/RPVd16s
- http://t.#n/RhLXFUK
- http://t.#n/RPVgvap
- http://t.#n/Rh2JUCT
- http://f.####anshanba.com/b662ef49.exe/20.jpg
- DNS ASK in#.###ol.sina.com.cn
- DNS ASK t.#n
- DNS ASK f.####anshanba.com
- ClassName: '' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- '%TEMP%\nsl3.tmp\setup_3386.exe'
- '%TEMP%\nsl3.tmp\BaiduPlayerNetSetup_461.exe'
- '%TEMP%\nsl3.tmp\9377chiyue_Y_mgaz.exe'
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome
- '<SYSTEM32>\cmd.exe' /C copy /b "%TEMP%\nsl3.tmp\F0820_s_30841.exe" + "<SYSTEM32>\ieframe.dll" "%TEMP%\nsl3.tmp\F0820_s_30841.exe"