Техническая информация
- %CommonProgramFiles%\System\QQ00Dk.exe
- <SYSTEM32>\rundll32.exe debug.dll,ALL
- <SYSTEM32>\regsvr32.exe ad.obj /s
- <SYSTEM32>\ping.exe -n 2 127.0.0.1
- %CommonProgramFiles%\System\ad.obj
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ad[1].obj
- %CommonProgramFiles%\System\debug.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\debug[1].obj
- %CommonProgramFiles%\System\htrn_jis.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\count[1].asp
- %CommonProgramFiles%\System\QQ00Dk.exebnb
- %CommonProgramFiles%\System\htrn_jis.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\sms[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ad[1].obj
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\debug[1].obj
- %CommonProgramFiles%\System\htrn_jis.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\count[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\sms[1].jpg
- 'www.ba###-002.cn':80
- 'ti###ai777.cn':80
- ti###ai777.cn/ad.obj
- ti###ai777.cn/debug.obj
- ti###ai777.cn/count/count.asp?cm###
- www.ba###-002.cn/sms/sms.jpg
- DNS ASK www.ba###-002.cn
- DNS ASK ti###ai777.cn
- ClassName: 'Shell_TrayWnd' WindowName: ''