Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SSDTMon] 'Start' = '00000002'
- <SYSTEM32>\svchost.exe -k SSDTMon
- <SYSTEM32>\cyddlb.dat
- C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\CJCTQ25G\Timesvc[1].dll
- <SYSTEM32>\Timesvc.dll
- <SYSTEM32>\ksix.dat
- <SYSTEM32>\SSDDT.DLL
- <SYSTEM32>\kesix.dat
- <SYSTEM32>\usrouji.dat
- 'www.as###2008.net':80
- 'localhost':1036
- www.as###2008.net/killer/update/Timesvc.dll
- DNS ASK www.as###2008.net