Техническая информация
- '%TEMP%\xjHtHE2zsg.exe'
- '%TEMP%\GmGYy8qoQi.exe'
- '%TEMP%\xjHtHE2zsg.exe' (загружен из сети Интернет)
- '%TEMP%\GmGYy8qoQi.exe' (загружен из сети Интернет)
- %TEMP%\xjHtHE2zsg.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\count[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\arpx[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\win7[1].exe
- %TEMP%\GmGYy8qoQi.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\count[1].asp
- 'na####.jf-dns.com':80
- 'localhost':1035
- na####.jf-dns.com/winx/count.asp?ma###############
- na####.jf-dns.com/arpx.exe
- na####.jf-dns.com/win7.exe
- DNS ASK na####.jf-dns.com
- ClassName: 'Shell_TrayWnd' WindowName: ''