Техническая информация
- %TEMP%\ґу·Й0128.exe
- %TEMP%\ґу·Й01280.exe
- C:\ґу·Й0128.exe
- <SYSTEM32>\wscript.exe "C:\dafei.vbs"
- %TEMP%\RarSFX0\免费版.exe
- %TEMP%\RarSFX0\免费版.vbs
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\027dj[1]
- <SYSTEM32>\superecQHmUE.sys
- C:\dafei.vbs
- C:\ґу·Й0128.exe
- %TEMP%\ґу·Й0128.exe
- %TEMP%\ґу·Й01280.exe
- <SYSTEM32>\superecQHmUE.sys
- 'localhost':1037
- 'www.02##j.com':80
- www.02##j.com/
- www.02##j.com/edition.txt
- DNS ASK www.02##j.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''