Техническая информация
- '%PROGRAM_FILES%\yx_dts.exe'
- '%PROGRAM_FILES%\OfficeAssist.0419.80.1123.exe'
- '%PROGRAM_FILES%\yx_dts.exe' (загружен из сети Интернет)
- '%PROGRAM_FILES%\OfficeAssist.0419.80.1123.exe' (загружен из сети Интернет)
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %PROGRAM_FILES%\OfficeAssist.0419.80.1123.exe
- %PROGRAM_FILES%\1.rar
- %TEMP%\nsm3.tmp\ExecCmd.dll
- %PROGRAM_FILES%\SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.exe
- %PROGRAM_FILES%\yx_dts.exe
- %TEMP%\nsm3.tmp\Inetc.dll
- %TEMP%\nsm3.tmp\FindProcDLL.dll
- %TEMP%\nsr2.tmp
- %TEMP%\nsm3.tmp\System.dll
- %PROGRAM_FILES%\2.ico
- %TEMP%\nsm3.tmp\modern-wizard.bmp
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- 'id#.##--r93a55o.cc':80
- 'do#####.###-cn-hangzhou.aliyuncs.com':443
- 'in#.###ol.sina.com.cn':80
- id#.##--r93a55o.cc/yx_dts.exe
- id#.##--r93a55o.cc/SoHuVA_4.3.0.1-c204900003-ng-nti-s-x.rar
- in#.###ol.sina.com.cn/iplookup/iplookup.php
- id#.##--r93a55o.cc/OfficeAssist.0419.80.1123.exe
- DNS ASK id#.##--r93a55o.cc
- DNS ASK do#####.###-cn-hangzhou.aliyuncs.com
- DNS ASK in#.###ol.sina.com.cn
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''