Техническая информация
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 2
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\cmd.exe' /c <Текущая директория>\Restart.bat
- '%WINDIR%\regedit.exe' /S "%WINDIR%\1.reg"
- '<SYSTEM32>\regsvr32.exe' "C:\ZCB\ОТИГДгФЩµЇНшХѕ!Ьі...dll" /s
- C:\ZCB\іхКј»ЇК§°ЬУТјьТФ№ЬАнФ±Йн·ЭФЛРРґЛОДјю.bat
- <Текущая директория>\Restart.bat
- C:\ZCB\ОТИГДгФЩµЇНшХѕ!Ьі...dll
- %WINDIR%\1.reg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\376924098.ys168[1]
- '12#.#25.114.144':80
- 'localhost':1040
- 'localhost':1036
- '37####098.ys168.com':80
- 12#.#25.114.144/s/1nt6wXTJ
- 37####098.ys168.com/
- DNS ASK c.##zcb.com
- DNS ASK pa#.#aidu.com
- DNS ASK 37####098.ys168.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''