Техническая информация
- <SYSTEM32>\tbreg.exe
- <SYSTEM32>\onezc.exe
- <SYSTEM32>\nozc.exe
- <SYSTEM32>\ping.exe 127.1 -n 3
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\tb[1].dll
- <SYSTEM32>\tb.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\163[1].css
- <SYSTEM32>\163.dll
- C:\cd.bat
- <SYSTEM32>\onezc.exe
- <SYSTEM32>\tbreg.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\code[1].jpg
- <SYSTEM32>\code.dll
- <SYSTEM32>\nozc.exe
- C:\fw.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\yxxxx[1].jpg
- <SYSTEM32>\yxxxx.CLL
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\y260xxxx[1].dll
- <SYSTEM32>\y260xxxx.CLL
- <SYSTEM32>\nozc.exe
- '22#.#3.45.101':80
- '11#.#26.4.250':80
- 'localhost':1041
- 'localhost':1035
- 'www.pk##.com':80
- '58.##2.17.26':80
- 22#.#3.45.101/test.files/2009120944400.files/163.css
- 11#.#26.4.250/tb.dll
- www.pk##.com/blog/images/images/yxxxx.jpg
- www.pk##.com/blog/images/images/code.jpg
- 58.##2.17.26/y260xxxx.dll
- DNS ASK www.pk##.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''