Техническая информация
- %WINDIR%\Temp\svchost.exe
- %TEMP%\E_4\EThread.fne
- %TEMP%\E_4\sock.fne
- %TEMP%\E_4\internet.fne
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\list1[1].txt
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %WINDIR%\Temp\文件列表.txt
- %WINDIR%\Temp\svchost.exe
- %WINDIR%\Temp\网址列表.txt
- %TEMP%\E_4\shellEx.fne
- %TEMP%\E_4\krnln.fnr
- 'www.ad##nok.net':80
- www.ad##nok.net/Virus/list1.txt
- DNS ASK www.ad##nok.net
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''