Техническая информация
- <SYSTEM32>\svchost.exe
- <SYSTEM32>\lsass.exe
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WMKXACLI\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\GQNOGXGK\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\CDA3SHE7\desktop.ini
- %TEMP%\139d2e78
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EXQ3Y5UL\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\GQNOGXGK\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\CDA3SHE7\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EXQ3Y5UL\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WMKXACLI\desktop.ini
- %TEMP%\139d2e78
- 'ka###apet.com':80
- ka###apet.com/fgk.php?dm##
- DNS ASK ka###apet.com
- ClassName: 'Shell_TrayWnd' WindowName: ''