Техническая информация
- <SYSTEM32>\taskkill.exe /f /im thunder5.exe
- <SYSTEM32>\taskkill.exe /f /im Thunder.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://localhost/api.php
- <SYSTEM32>\taskkill.exe /f /im tomcat.exe
- <SYSTEM32>\taskkill.exe /f /im inetinfo.exe
- <SYSTEM32>\taskkill.exe /f /im iisreset.exe
- <SYSTEM32>\taskkill.exe /f /im httpd.exe
- %HOMEPATH%\Start Menu\Programs\НјЖ¬±ајЛжК±ЛжµШ.lnk
- %APPDATA%\НјЖ¬±ајЛжК±ЛжµШ.lnk
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\api[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\api[1].php
- %HOMEPATH%\Start Menu\НјЖ¬±ајЛжК±ЛжµШ.lnk
- %HOMEPATH%\Favorites\НјЖ¬±ајЛжК±ЛжµШ.lnk
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\api[1].php
- 'so##.tuyitu.com':80
- 'localhost':1038
- 'localhost':1034
- 'localhost':80
- so##.tuyitu.com/soft/apiversion.txt
- localhost/api.php
- DNS ASK so##.tuyitu.com
- '10.#.1.1':1036
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''