Техническая информация
- '%TEMP%\ncswz5.12'
- '<SYSTEM32>\regsvr32.exe' /s "%CommonProgramFiles%\system\direct405.dll"
- ClassName: 'OLLYDBG' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %TEMP%\ncswz5.12
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\getimage[1]
- %CommonProgramFiles%\System\direct405.dll
- %TEMP%\data.mdb
- %TEMP%\use.edb
- %TEMP%\~DF6AF1.tmp
- 'pt###in2.qq.com':80
- 'localhost':1035
- pt###in2.qq.com/getimage
- DNS ASK 18#e.cn
- DNS ASK www.11#6.cc
- DNS ASK pt###in2.qq.com
- ClassName: 'ComboBox' WindowName: ''
- ClassName: 'ComboBoxEx32' WindowName: ''
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'Edit' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '' WindowName: 'QQ????2.74??? '
- ClassName: '' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- ClassName: '' WindowName: 'QQ????2.74??? ??:www.1156.cc'
- ClassName: 'WorkerW' WindowName: ''
- ClassName: '' WindowName: 'QQ?????V5.12 www.okoknet.net ????:'
- ClassName: '' WindowName: 'QQ?????V5.12'