Техническая информация
- %WINDIR%\wg\1011.exe
- <SYSTEM32>\ping.exe -n 5 127.0.0.1
- <SYSTEM32>\cmd.exe /c %WINDIR%\wg\zs.bat
- %PROGRAM_FILES%\safe\somkernl.dll
- %WINDIR%\wg\zs.bat
- %WINDIR%\wg\大飞0529第二版.exe
- %WINDIR%\wg\1011.exe
- %WINDIR%\wg\1011.exe
- 'yu####50.gicp.net':88
- 'localhost':1035
- DNS ASK yu####50.gicp.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''