Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\360safe.lnk
- %TEMP%\189125.tmp
- '%TEMP%\LiveUpdate360.tmp' %ALLUSERSPROFILE%\Start Menu\Programs\Startup\360safe.lnk
- 'C:\system' %PROGRAM_FILES%\WINDOW~3\CONTRO~1.CPL comdl2
- 'C:\system' %PROGRAM_FILES%\Realtek\EDITOR~1.DLL hime
- %TEMP%\kb-191578.tmp
- %TEMP%\189125.tmp
- %PROGRAM_FILES%\WindowsUpdate\360safe.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\0[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\0[1].jpg
- %TEMP%\kb-187031.tmp
- %TEMP%\kb-181234.tmp
- C:\system
- <SYSTEM32>\kb-x86-anti.xml
- <SYSTEM32>\bak8011252.log
- %TEMP%\LiveUpdate360.tmp
- %PROGRAM_FILES%\WindowsUpdate\360safe.exe
- C:\system
- %PROGRAM_FILES%\WindowsUpdate\ControlPanel.cpl
- %PROGRAM_FILES%\Realtek\EditorsUI.dll
- %TEMP%\kb-191578.tmp в %TEMP%\LiveUpdate360.tmp
- %TEMP%\kb-187031.tmp в %PROGRAM_FILES%\Realtek\EditorsUI.dll
- %TEMP%\kb-181234.tmp в %PROGRAM_FILES%\WindowsUpdate\ControlPanel.cpl
- 'yk.##77888.com':80
- 'jj.##77888.com':80
- 'ok##.3322.org':8003
- yk.##77888.com/temp/0.jpg
- jj.##77888.com/temp/0.jpg
- DNS ASK yk.##77888.com
- DNS ASK jj.##77888.com
- DNS ASK ok##.3322.org