Техническая информация
- %TEMP%\Gxfzbjq.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\4[1]
- %TEMP%\nsh2.tmp\start
- %TEMP%\nsh2.tmp\configuration.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\4[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\start[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\start[1].php
- %TEMP%\nsh2.tmp\System.dll
- %TEMP%\Gxfzbjq.exe
- %TEMP%\SkinH.She
- %TEMP%\nsh2.tmp\inetc.dll
- %TEMP%\SkinH_EL.Dll
- %TEMP%\SkinH_EL.Dll
- %TEMP%\SkinH.She
- %TEMP%\nsh2.tmp\start
- %TEMP%\nsh2.tmp\System.dll
- %TEMP%\nsh2.tmp\configuration.ini
- %TEMP%\nsh2.tmp\inetc.dll
- 'www.pp##.net':80
- 'www.pp##.com':80
- www.pp##.net/start.php?id##
- www.pp##.net/4
- www.pp##.com/start.php?id##
- www.pp##.com/4
- DNS ASK www.pp##.net
- DNS ASK www.pp##.com
- ClassName: 'Shell_TrayWnd' WindowName: ''