Техническая информация
- %PROGRAM_FILES%\Internet Explorer\FunshionInstall_C12947.exe
- %PROGRAM_FILES%\Internet Explorer\FunshionInstall_C12947.exe (загружен из сети Интернет)
- <SYSTEM32>\net1.exe stop sharedaccess
- <SYSTEM32>\net.exe stop sharedaccess
- %PROGRAM_FILES%\Internet Explorer\FunshionInstall_C12947.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\download[1].php
- 'pa#####.funshion.com':80
- 'localhost':1036
- pa#####.funshion.com/partner/download.php?id##############
- DNS ASK pa#####.funshion.com
- ClassName: '#32770' WindowName: 'Funshion 1.5.1.10 Beta ?? '
- ClassName: '#32770' WindowName: 'Funshion'
- ClassName: '#32770' WindowName: 'Funshion 1.5.1.10 Beta ??'
- ClassName: '#32770' WindowName: 'Funshion 1.5.1.2 Beta ??'
- ClassName: '#32770' WindowName: 'Funshion 1.5.1.2 Beta ?? '