Техническая информация
- <Полный путь к вирусу>
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\%D1%91%D0%81%D0%A6%D1%8A[1].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\reg[2].html
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\reg[1].html
- 'wu###ofeng.com':80
- 'tg#.#fgame.com':80
- 'localhost':1035
- wu###ofeng.com/%D1%91%D0%81%D0%A6%D1%8A.html
- tg#.#fgame.com/reg.html?sp#######################################
- DNS ASK wu###ofeng.com
- DNS ASK tg#.#fgame.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''