Техническая информация
- %WINDIR%\Help\yuyanzhe.dat
- %WINDIR%\Help\yuyanzhe.dat (загружен из сети Интернет)
- %WINDIR%\Help\yuyanzhe.dat
- <SYSTEM32>\ecx3Mhp.sys
- %TEMP%\E_N4\downlib.fne
- <SYSTEM32>\SkinH_EL.dll
- C:\System Volume Information\_restore{E7F0F64C-F7E5-4319-8757-E9A20C1C4E14}\drivetable.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\51cfwg[1]
- %APPDATA%\YueG.dll
- %TEMP%\E_N4\shell.fne
- %TEMP%\E_N4\PBShell.fne
- %TEMP%\E_N4\krnln.fnr
- %TEMP%\E_N4\eAPI.fne
- %TEMP%\E_N4\HtmlView.fne
- %TEMP%\E_N4\dp1.fne
- %TEMP%\E_N4\internet.fne
- <SYSTEM32>\Restore\MachineGuid.txt
- <SYSTEM32>\ecx3Mhp.sys
- 'www.51##wg.com':80
- 'localhost':1037
- 'www.97##f.com':80
- www.51##wg.com/
- www.97##f.com/3.txt
- www.97##f.com/fkz/yuyanzhe.exe
- DNS ASK www.51##wg.com
- DNS ASK www.97##f.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''