Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\360°ІИ«ОАКї.EXE
- '%WINDIR%\MySQL.exe' install
- '<SYSTEM32>\EXPL0RER.EXE'
- '<SYSTEM32>\360tray.exe'
- '%WINDIR%\MySQL.exe' (загружен из сети Интернет)
- '<SYSTEM32>\EXPL0RER.EXE' (загружен из сети Интернет)
- '<SYSTEM32>\net1.exe' start MySQl4
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\MySQL[1].TXT
- %WINDIR%\MySQL.exe~tmp
- <SYSTEM32>\EXPL0RER.EXE~tmp
- <SYSTEM32>\360tray.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\EXPL0RER[1].TXT
- %WINDIR%\MySQL.exe
- %WINDIR%\MySQL.exe~tmp в %WINDIR%\MySQL.exe
- <SYSTEM32>\EXPL0RER.EXE~tmp в <SYSTEM32>\EXPL0RER.EXE
- 'ta####.lylwc.com':80
- ta####.lylwc.com/mm_14282131_0_0/Updata/MySQL.TXT
- ta####.lylwc.com/mm_14282131_0_0/Updata/EXPL0RER.TXT
- DNS ASK ta####.lylwc.com
- ClassName: '' WindowName: 'Taobao_netking_master_1'