Техническая информация
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- %TEMP%\nsf2.tmp\System.dll
- %TEMP%\nsf2.tmp\Md5dll.dll
- %TEMP%\nsf2.tmp\Inetc.dll
- %TEMP%\nsf2.tmp\NSISdl.dll
- %TEMP%\nsf2.tmp\open.ini
- %TEMP%\nsf2.tmp\xID.dll
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- 'y5.#zgs.org':80
- y5.#zgs.org/open/open.ini?na############################
- DNS ASK y5.#zgs.org
- ClassName: '#32770' WindowName: ''