Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- %HOMEPATH%\Favorites\Нв№ТЧч·»№Щ·ЅХѕ [www.zuowg.com].url
- %TEMP%\E_4\spec.fne
- %TEMP%\E_4\krnln.fne
- C:\yz.zipb
- %HOMEPATH%\Favorites\Нв№ТЧч·»ЧКФґХѕ [42724920.ys168.com].url
- %TEMP%\E_4\EThread.fne
- %TEMP%\E_4\dp1.fne
- %TEMP%\E_4\krnln.fnr
- %TEMP%\E_4\iext.fnr
- %TEMP%\E_4\twain.fne
- %TEMP%\E_4\shell.fne
- C:\yz.zipb
- 'hu###y2009.cn':80
- 'localhost':1037
- hu###y2009.cn/2009/qq/zcyz/yz0312.dll
- DNS ASK hu###y2009.cn
- ClassName: 'Button' WindowName: '????'
- ClassName: 'Button' WindowName: 'И·¶Ё(&O)'
- ClassName: 'Button' WindowName: 'И·¶Ё'
- ClassName: '#32770' WindowName: 'ИрРЗМбКѕ'
- ClassName: '#32770' WindowName: '????????'
- ClassName: 'Button' WindowName: '????(&O)'
- ClassName: '#32770' WindowName: 'У¦УГіМРтНшВз·ГОКјаїШ'
- ClassName: '#32770' WindowName: '????????????????????'
- ClassName: '#32770' WindowName: ''
- ClassName: 'Button' WindowName: 'ЧЬКЗФКРн'
- ClassName: 'Button' WindowName: '????????'