Техническая информация
- '%WINDIR%\winlong1.exe'
- '%WINDIR%\winlong3.exe' 0
- '%WINDIR%\winlong3.exe'
- '%WINDIR%\winlong2.exe'
- '%WINDIR%\winlong1.exe' 0
- '%WINDIR%\winlong2.exe' 0
- '%WINDIR%\winlong2.exe' (загружен из сети Интернет)
- '%WINDIR%\winlong1.exe' (загружен из сети Интернет)
- '%WINDIR%\winlong3.exe' (загружен из сети Интернет)
- '%WINDIR%\explorer.exe'
- %WINDIR%\winlong2.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\winlong3[1].exe
- %WINDIR%\winlong3.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\winlong1[1].exe
- %WINDIR%\winlong1.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\winlong2[1].exe
- 'localhost':1038
- 'localhost':1040
- 'localhost':1035
- 'bo##.qyqqt.com':80
- bo##.qyqqt.com/winlong3.exe
- bo##.qyqqt.com/winlong2.exe
- bo##.qyqqt.com/winlong1.exe
- DNS ASK bo##.qyqqt.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'