Техническая информация
- '%HOMEPATH%\Local Settings\Temporary Internet Files\hfoxifkxps.exe'
- '%HOMEPATH%\Local Settings\Temporary Internet Files\ivqtq.exe'
- '%HOMEPATH%\Local Settings\Temporary Internet Files\hfoxifkxps.exe' (загружен из сети Интернет)
- '%HOMEPATH%\Local Settings\Temporary Internet Files\ivqtq.exe' (загружен из сети Интернет)
- '<SYSTEM32>\svchost.exe' -k imgsvc
- '<SYSTEM32>\mspaint.exe' "%HOMEPATH%\Local Settings\Temporary Internet Files\npmuacsxdkudevp.gif"
- %HOMEPATH%\Local Settings\Temporary Internet Files\npmuacsxdkudevp.gif
- %HOMEPATH%\Local Settings\Temporary Internet Files\hfoxifkxps.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\ivqtq.exe
- 'www.cs##h.edu':80
- '93.##.18.211':80
- www.cs##h.edu/alcp/images/Birthday-party.gif
- 93.##.18.211/smart.exe
- 93.##.18.211/av.exe
- DNS ASK www.cs##h.edu
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'