Техническая информация
- <SYSTEM32>\regsvr32.exe /s "%TEMP%\~DFA5951.tmp"
- <SYSTEM32>\regsvr32.exe /s "%TEMP%\~DFA3108.tmp"
- <SYSTEM32>\regsvr32.exe /s "<SYSTEM32>\mswinsck.ocx"
- %TEMP%\DFA6802.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\file[1].txt
- %TEMP%\6374.dat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\jxwh[1].ini
- %WINDIR%\sys.dat
- %TEMP%\~DFA3108.tmp
- <SYSTEM32>\mswinsck.ocx
- %TEMP%\6374.dat
- 'us##.yswm.net':80
- 'www.pc##8.net':80
- 'localhost':1037
- us##.yswm.net/yswm/jxwh.ini
- www.pc##8.net/file.txt
- DNS ASK us##.yswm.net
- DNS ASK www.pc##8.net