Техническая информация
- '<Текущая директория>\7349.928.exe'
- '<Текущая директория>\7349.928.exe' (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\nf45_wg[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\nf45[1]
- <Текущая директория>\7349.928.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ips[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\zg[1].exe
- 'www.nf##.com':80
- 'localhost':1041
- 'www.nc##w.cn':80
- 'localhost':1036
- 'www.ip##8.com':80
- www.nf##.com/nf45_wg.htm
- www.nf##.com/
- www.ip##8.com/ips.asp
- www.nc##w.cn/adminmanage/img/zg.exe
- DNS ASK www.nf##.com
- DNS ASK www.nc##w.cn
- DNS ASK www.ip##8.com
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'