Техническая информация
- %PROGRAM_FILES%\IE.exe
- %PROGRAM_FILES%\IE.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mx[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\2a[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mx1[1].html
- <SYSTEM32>\superecxhyfR.sys
- <SYSTEM32>\superecvhlv5.sys
- %PROGRAM_FILES%\IE.exe
- %PROGRAM_FILES%\IE.exe
- <SYSTEM32>\superecvhlv5.sys
- <SYSTEM32>\superecxhyfR.sys
- 'www.52##xc.cn':80
- 'p2##.com':80
- 'localhost':1038
- 'www.wm##.net':80
- 'tp.#61wg.cn':80
- www.52##xc.cn/mx.htm
- p2##.com/2a.htm
- www.52##xc.cn/mx1.html
- www.wm##.net/soft/ie.exe
- tp.#61wg.cn/banben.txt
- p2##.com/md1.txt
- DNS ASK p2##.com
- DNS ASK www.p2##.com
- DNS ASK www.52##xc.cn
- DNS ASK www.wm##.net
- DNS ASK tp.#61wg.cn
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''