Техническая информация
- '%WINDIR%\explorer.exe'
- %WINDIR%\explorer.exe
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\·Е·ЕКУЖµ\Website.lnk
- %PROGRAM_FILES%\ffdy\·Е·ЕКУЖµ.url
- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\·Е·ЕКУЖµ\Uninstall.lnk
- %TEMP%\nsmCFB.tmp\SelfDel.dll
- %PROGRAM_FILES%\ffdy\uninst.exe
- %PROGRAM_FILES%\ffdy\install.log
- %TEMP%\nsmCFB.tmp\FindProcDLL.dll
- %TEMP%\nsmCFB.tmp\System.dll
- %TEMP%\nsmCFB.tmp\Inetc.dll
- %TEMP%\nsmCFB.tmp\config.ini
- <LS_APPDATA>\Microsoft\Windows\Temporary Internet Files\Content.IE5\6P5SDOMI\other[1].txt
- %TEMP%\nsmCFB.tmp\SelfDel.dll
- %TEMP%\nsmCFB.tmp\System.dll
- %TEMP%\nsmCFB.tmp\Inetc.dll
- %TEMP%\nsmCFB.tmp\config.ini
- %TEMP%\nsmCFB.tmp\FindProcDLL.dll
- 'to####.lssen.com':443
- 'pc#####.b0.upaiyun.com':80
- pc#####.b0.upaiyun.com/other.txt
- DNS ASK dn#.##ftncsi.com
- DNS ASK to####.lssen.com
- DNS ASK pc#####.b0.upaiyun.com
- ClassName: 'CicLoaderWndClass' WindowName: '(null)'