Техническая информация
- '<SYSTEM32>\eyqsftfb.exe'
- '<SYSTEM32>\gcycozcq.exe'
- '<SYSTEM32>\bmwstusw.exe'
- '<SYSTEM32>\rsivgytm.exe'
- '<SYSTEM32>\mqngoemi.exe'
- <SYSTEM32>\bmwstusw.exe
- <SYSTEM32>\mqngoemi.exe
- <SYSTEM32>\gcycozcq.exe
- <SYSTEM32>\eyqsftfb.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mswinsck[1].ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mswinsck[1].ocx
- <SYSTEM32>\rsivgytm.exe
- <SYSTEM32>\MSWINSCK.ocx
- <SYSTEM32>\eyqsftfb.exe
- <SYSTEM32>\gcycozcq.exe
- <SYSTEM32>\bmwstusw.exe
- <SYSTEM32>\rsivgytm.exe
- <SYSTEM32>\mqngoemi.exe
- %TEMP%\~DF1CA0.tmp
- %TEMP%\~DF4155.tmp
- %TEMP%\~DF3954.tmp
- %TEMP%\~DFE81E.tmp
- %TEMP%\~DF13A7.tmp
- %TEMP%\~DF1A53.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mswinsck[1].ocx
- %TEMP%\~DFAA70.tmp
- %TEMP%\~DF97D3.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mswinsck[1].ocx
- %TEMP%\~DF7C34.tmp
- %TEMP%\~DF5EF9.tmp
- 'localhost':1043
- 'localhost':1044
- 'localhost':1045
- 'localhost':1041
- 'localhost':1036
- 'pd###.egloos.com':80
- 'localhost':1039
- pd###.egloos.com/pds/201304/27/64/mswinsck.ocx
- DNS ASK pd###.egloos.com
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'