Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Wsinsc tkhowdka] 'Start' = '00000002'
- '%WINDIR%\Zaofppb.exe'
- '<SYSTEM32>\seaven.exe'
- C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\CJCTQ25G\NetSyst59[1].jpg
- %WINDIR%\AppPatch\NetSyst59.dll
- <SYSTEM32>\seaven.exe
- %WINDIR%\Zaofppb.exe
- 'we#####90126.xicp.net':80
- we#####90126.xicp.net/images/NetSyst59.jpg
- DNS ASK we#####90126.xicp.net
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'