Техническая информация
- <SYSTEM32>\dllcache\explorer.exe
- <SYSTEM32>\dllcache\explorer.exe файлом <SYSTEM32>\dllcache\explorer.exe
- %WINDIR%\explorer.exe файлом <SYSTEM32>\dllcache\explorer.exe
- <SYSTEM32>\dllcache\explorer.exe
- 'C:\№н»р0819A.exe'
- 'C:\rsas.exe'
- '<SYSTEM32>\taskkill.exe' /f /im Ksafetray.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\counter[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\vampire008tw.xxxy[1]
- C:\rsas.exe
- C:\№н»р0819A.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\vampire008tw.xxxy[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\counter[1].php
- %WINDIR%\explorer.exe в %TEMP%\lorer.exe
- C:\rsas.exe в %CommonProgramFiles%\svchtst.exe 2014459553.exe
- 'va#####008tw.xxxy.info':80
- 'c3#.##atcounter.com':80
- 'ch#####8993655.eicp.net':6666
- va#####008tw.xxxy.info/
- c3#.##atcounter.com/counter.php?sc#####################################################
- DNS ASK va#####008tw.xxxy.info
- DNS ASK c3#.##atcounter.com
- DNS ASK ch#####8993655.eicp.net
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'