Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] '{AEB6717E-7E19-11d0-97EE-00C04FD91972}' = ''
- <SYSTEM32>\cmd.exe /c ""<Текущая директория>\_Ms.bat" "
- ClassName: 'AVP.AlertDialog' WindowName: ''
- <Текущая директория>\_Ms.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Post[1].htm
- %CommonProgramFiles%\360tray.jmp
- %CommonProgramFiles%\360tray.Dat
- %CommonProgramFiles%\360tray.cur
- 'ww###.chuangelm.com':80
- 'www.ha##23.com':80
- ww###.chuangelm.com/cpc/520.txt
- www.ha##23.com/
- ww###.chuangelm.com/cpc/Post.asp
- DNS ASK ww###.chuangelm.com
- DNS ASK www.ha##23.com
- ClassName: 'ScrollBar' WindowName: 'array'
- ClassName: 'aliluya' WindowName: 'hahaha'
- ClassName: 'ScrollBar' WindowName: 'string'
- ClassName: '#32770' WindowName: '???????????????????? - IE??????'
- ClassName: '#32770' WindowName: '??????????????????'
- ClassName: '#32770' WindowName: 'IE ????????'
- ClassName: '#32770' WindowName: 'IE????????'