Техническая информация
- '%TEMP%\is-AHLJG.tmp\2.tmp' /SL5="$10122,53248,53248,%WINDIR%\2.exe"
- '%WINDIR%\2.exe'
- '<SYSTEM32>\ntvdm.exe' -f -i1
- %CommonProgramFiles%\DcomServer\DcomServer.exe
- %TEMP%\is-LNAMP.tmp\2rmQc5oB.dat
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- %TEMP%\is-AHLJG.tmp\2.tmp
- %WINDIR%\2.exe
- %TEMP%\is-LNAMP.tmp\_isetup\_shfoldr.dll
- %TEMP%\is-LNAMP.tmp\_isetup\_RegDLL.tmp
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\84wd[1]
- 'www.84##.com':80
- 'aa.#z19.com':21000
- 'localhost':1040
- 'localhost':1041
- www.84##.com/gx.txt
- www.84##.com/?BT
- DNS ASK aa.#z19.com
- DNS ASK www.84##.com
- '61.#91.63.9':8901
- ClassName: '' WindowName: '????'
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-c28.c2c.380001'
- ClassName: '' WindowName: '°ІЧ°'
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'Microsoft Internet Explorer'
- ClassName: 'IEFrame' WindowName: ''
- ClassName: '' WindowName: ''