Техническая информация
- <SYSTEM32>\prtsched.exe
- %TEMP%\msupdsync.exe
- <SYSTEM32>\cmd.exe /c <SYSTEM32>\\rrr.bat
- <SYSTEM32>\spoolsv.exe
- <SYSTEM32>\~90456.tmp
- <SYSTEM32>\rrr.bat
- %WINDIR%\Temp\~28468.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\user[1].html
- %TEMP%\msupdsync.exe
- <SYSTEM32>\prtsched.dll
- <SYSTEM32>\prtsched.exe
- %WINDIR%\Temp\~28468.tmp
- <SYSTEM32>\prtsched.exe
- <SYSTEM32>\~90456.tmp
- <SYSTEM32>\prtsched.dll в <SYSTEM32>\schedsvcsgn.dll
- 'ma##.canton.edu':80
- 'ma##.pacisp.net':80
- ma##.pacisp.net/mail/user.html?p2################
- DNS ASK ma##.canton.edu
- DNS ASK ma##.pacisp.net
- DNS ASK www.microsoft.com
- ClassName: '' WindowName: 'about:blank'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''