Техническая информация
- '%TEMP%\~nsu.tmp\Au_.exe' _?=<Текущая директория>\
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %TEMP%\nsw3.tmp\System.dll
- %TEMP%\nsw3.tmp\nsDialogs.dll
- %TEMP%\nsw3.tmp\WndProc.dll
- %TEMP%\nsw3.tmp\SkinBtn.dll
- %TEMP%\nsw3.tmp\loading2.bmp
- %TEMP%\nsw3.tmp\loading1.bmp
- %TEMP%\nsw3.tmp\ok.bmp
- %TEMP%\nsw3.tmp\aaa3.txt
- %TEMP%\nsw3.tmp\aaa4.txt
- %TEMP%\nsw3.tmp\aaa5.txt
- %TEMP%\nsw3.tmp\aaa2.txt
- %TEMP%\nsw3.tmp\BgWorker.dll
- %TEMP%\nsw3.tmp\InetLoad.dll
- %TEMP%\nsw3.tmp\aaa1.txt
- %TEMP%\nsw3.tmp\xx_n.bmp
- %TEMP%\nsw3.tmp\xf.bmp
- %TEMP%\nsw3.tmp\xz.bmp
- %TEMP%\nsw3.tmp\Installation_off4.bmp
- %TEMP%\nsw3.tmp\ty.bmp
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsw3.tmp\lj.bmp
- %TEMP%\nsw3.tmp\tj.bmp
- %TEMP%\nsw3.tmp\xz1.bmp
- %TEMP%\nsw3.tmp\sz.bmp
- %TEMP%\nsw3.tmp\sz_2.bmp
- %TEMP%\nsw3.tmp\xz_png_150x42.bmp
- %TEMP%\nsw3.tmp\Installation_bg.bmp
- %TEMP%\nsw3.tmp\Cancel.bmp
- %TEMP%\nsw3.tmp\xz2.bmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\uid1019[1].ac
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\uid1019[1].ac
- 's1.#66.my':80
- s1.#66.my/uid1019.ac
- DNS ASK s1.#66.my
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''