Техническая информация
- <DRIVERS>\acpiec.sys
- <DRIVERS>\acpiec.sys файлом <DRIVERS>\SET4.tmp
- <SYSTEM32>\taskkill.exe /im egui.exe /f
- <SYSTEM32>\taskkill.exe /im ScanFrm.exe /f
- <SYSTEM32>\rundll32.exe func.dll, droqp
- <SYSTEM32>\taskkill.exe /im ekrn.exe /f
- <SYSTEM32>\cacls.exe %WINDIR% /e /p everyone:f
- <SYSTEM32>\cacls.exe "%TEMP%\" /e /p everyone:f
- <SYSTEM32>\sc.exe config ekrn start= disabled
- ekrn.exe
- <DRIVERS>\SET4.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\main[1].dll
- %WINDIR%\LastGood\TMP2.tmp
- <SYSTEM32>\func.dll
- <DRIVERS>\SET1.tmp
- <DRIVERS>\SET1.tmp
- <DRIVERS>\acpiec.sys в <DRIVERS>\OLD3.tmp
- 'www.df####fgvsfvswe.cn':80
- 'localhost':1035
- www.df####fgvsfvswe.cn/main.dll
- DNS ASK www.df####fgvsfvswe.cn
- ClassName: '' WindowName: ''